Security Specialist

3 weeks ago


Johannesburg, South Africa All Jobs Full time

Why choose Logicalis? It's not just IT solutions, It's IT global know-how Logicalis is an international multi-skilled solution provider providing digital enablement services to help customers harness digital technology and innovative services to deliver powerful business outcomes. Our customers span industries and geographical regions; and our focus is to engage in the dynamics of our customers' vertical markets; including financial services, TMT (telecommunications, media and technology), education, healthcare, retail, government, manufacturing and professional services, and apply the skills of our 4, employees in modernising key digital pillars; data centre and cloud services, security and network infrastructure, workspace communications and collaboration, data and information strategies, and IT operation modernisation. We are the advocates for our customers for some of the world's leading technology companies including Cisco, HPE, IBM, CA Technologies, NetApp, Microsoft, Oracle, VMware and ServiceNow. Logicalis employees are innovative, smart, entrepreneurial and customer centric, with a shared ambition of making Logicalis the worlds leading IT Solutions provider We offer speedy decision-making, opportunities for personal development, and a supportive, inclusive environment that celebrates our diversity. ROLE PURPOSE The Security Operations Centre will provide defence against security breaches and actively isolate and mitigate security risks. The Security Specialist forms part of the security operations centre SOC team. ROLE AND DELIVERY RESPONSIBILITIES Possesses in-depth knowledge of network, endpoint, threat intelligence, forensics and malware reverse Analysis, as well as the functioning of specific applications or underlying IT infrastructure. Acts as an incident "hunter," not waiting for escalated incidents. Closely involved in developing, tuning, and implementing threat detection analytics. Acts as the escalation for Tier 1 and 2 SOC Analysts. Responds to and oversees the remediation of a declared security incident. Completes the Root Cause Analysis Report for P1 to P4. Provides guidance to Tier 1 and 2 SOC Analysts. Uses threat intelligence such as updated rules and Indicators of Compromise (IOCs) to pinpoint affected systems and the extent of the attack. Monitors shift-related metrics ensuring applicable reporting is gathered and disseminated to the SOC Manager. Make recommendations to the SOC Manager. Oversees the analysis on running processes and configs on affected systems. Undertakes in-depth threat intelligence analysis to find the perpetrator, the type of attack, and the data or systems impacted. Oversees the containment and recovery. Oversees the deep-dive incident analysis by correlating data from various sources. Validates if a critical system or data set has been impacted. Provides support for analytic methods for detecting threats. Conducts advanced triage based on defined run books of alerts. Undertakes threat intelligence research if need be. Validates false positives, policy violations, intrusion attempts, security threats and potential compromises. Undertakes security incident triage to provide necessary context prior to escalating to relevant Security Specialists to perform deeper analysis when necessary. Further analyses alarms by method e.g. credentials compromised and by asset class. Based on the correlation rules and alarms within the SIEM and run books, further analyses anomaly tactic using the MITRE ATT&CK framework. Analyses event and process metadata in real-time or retrospectively, and identify suspicious files / scripts seen for the first time. Closes tickets in the SIEM platform – this would be automatically created into Service Now. Manages security incidents using the SIEM platform and defined operational procedures. Performs a further investigation of potential incidents, and escalates or closes events as applicable. Validates investigation results, ensuring relevant details are passed on to Tier 2 SOC Level 2 for further event analysis. Closes out deeper analysis and review activities. Assist senior SOC staff with operational responsibilities. PERSON REQUIREMENTS Experience: Strong knowledge and experience working with SIEM Solutions, QRadar, McAfee ESM, Azure Sentinel. Proven experience with Office, Active Directory, Azure and Microsoft Exchange. Strong knowledge and experience working with Linux Operating systems. Good experience working with Nessus or Qualys. Good understanding of the MITRE ATT&CK framework. Good understanding of the ITIL Framework. Brilliant with a support ticketing system and experience in meeting SLA targets. Familiarity with risk management and quality assurance control. Excellent interpersonal skills and professional demeanor. Excellent verbal and written communication skills. Candidate must be eligible to obtain National Security Clearance. QUALIFICATIONS Grade 12. SIEM Technology certification. AZ, SC. ITIL Foundation qualification. Degree or Diploma in Computer Technology. CompTIA A+, N+ S+. CompTIA CySa, CISSP and CASP+ advantageous. ADDITIONAL SKILLS / ATTRIBUTES Advanced Microsoft Excel experience, specifically data interpretation. Good understanding of IT infrastructure. A high command of the English language both written and verbal is essential. Self-motivated with the ability to work unsupervised. Attention to detail. Punctuality. Excellent verbal and written communication skills. Ability to remain flexible and adapt to changing priorities with promptness, efficiency, and ease. Possess proficient analytical and decision-making skills. Demonstrated capacity for gathering and scrutinizing data to identify issues, opportunities, and patterns. Proficient relationship building skills – predict customer behavior and respond accordingly. A strong service-oriented ('can-do') culture, with a strong focus on the 'internal customer' approach, committed to exceeding customer expectations. Good communicator with the customer environment. Dynamic but aware of the views and feelings of others. Able to operate as a good team player. Drive and Energy. Demonstrate clear purpose, enthusiasm, and commitment. #J-18808-Ljbffr



  • Johannesburg South, South Africa GRC Security Full time

    **Local Security Sales Representatives** **Package**: Commission structure. **Place of work**: Edenvale, East Rand, Gauteng. **Interviews**: Successful Applicants who meet the criteria and interview requirements will be invited to attend a two-day induction and training program prior to commencement. Pay: R5 500,00 - R15 500,00 per month

  • Security Analyst

    1 week ago


    Johannesburg, Gauteng, South Africa Information Security Architects (ISA) Full time R400 000 - R800 000 per year

    Information Security Architects – Security AnalystInformation Security Architects (ISA) is a leading and trusted Managed Security Services Provider (MSSP) on the African continent. Established in the 1990s, ISA has evolved from a focus on firewall and anti-virus technologies to delivering a full suite of cutting-edge security services. We support our...

  • Security Specialist

    2 days ago


    Johannesburg, South Africa Nexio Full time

    **ROLE PURPOSE** As part of the Customer-facing Nexio Cyber Security team, the Security Specialist will be responsible for the Security Operations as per the agreed Statement of Work for Managed Security Services with Customers. **ROLE REQUIREMENT** - Adheres to the standard operating procedure and playbooks in the Nexio Security Operations Team. The...

  • Security Specialist

    3 days ago


    Johannesburg, South Africa Logicalis Group (DE) Full time

    Security Specialist in Johannesburg at Logicalis It’s not just IT solutions, It’s IT global know-how! Logicalis is an international multi-skilled solution provider providing digital enablement services to help customers harness digital technology and innovative services to deliver powerful business outcomes. Our customers span industries and geographical...


  • Johannesburg, South Africa Unique Personnel Full time

    **Job Number** - 72229 **Job Type** - Permanent **Job Title** - Information Security Specialist **Computer Skills** - CompTIA Security+,CISSP,CISM **Industry** - Web Hosting **City** - Johannesburg **Province** - Gauteng- **Security Infrastructure Management**: - Implement, configure, and manage security infrastructure, including firewalls, intrusion...


  • Johannesburg, South Africa HeadHunters Full time

    **Reference** - PE002262/VD**Location** - Gauteng, JHB - Central**Salary Interval** - Monthly**Package** - None-negotiable**Description** **Our client, a market leader in the IT Industry, based Bryanston, Johannesburg, is currently looking to employ an experienced IT Security Specialist.** **An exciting new job opportunity awaits...


  • Johannesburg, South Africa BankservAfrica Full time

    Job Title - Information Security Specialist - Location - Selby - Johannesburg, GP 2001 ZA (Primary) - Occupational Level - Senior Management - Job Category - IT Security - Job Type - Permanent - Description **PURPOSE** The main purpose of the Security Specialist is to enhance the organization's overall security posture by driving cyber maturity for security...


  • Johannesburg, South Africa Skill Select Africa Full time

    **Job Overview**: **Date Posted**: Posted 2 hours ago- **Location**: Johannesburg, Gauteng- **Job Title**: Security and Networking Systems Specialist- **Salary**: R20,000- **Education Level**: Diploma- **Job Level**: Intermediate- **Minimum Experience**: 3 - 5 Years**Security and Networking Systems Specialist - Johannesburg.**: My client is committed to...

  • Security Specialist

    6 days ago


    Johannesburg, South Africa Doxim Full time

    Security Operations - Day-to-day operational tasks as assigned. - Security Incident management - Monitor, investigate and report on incidents. - Be able to be a part of an incident response team and triage. - Assess security incidents quickly and effectively and communicate a course of action to departmental Security SMEs. - Compile and maintain information...


  • Johannesburg, South Africa BankservAfrica Full time

    **Do you see a future that includes more?** **More exposure to innovative technologies, more personal growth, more experience?** **Look at the position we have available and see how, together we can shape your future, so that you can give more and include more.**: - Job Title- Information Security Specialist- Location- Selby - Johannesburg, GP 2001 ZA...