Cyber Security

1 week ago


Johannesburg, South Africa Performanta Group Full time

**Position Title**

**CSOC Lead Analyst (Level 2)**

**Main purpose of the role**

To lead the team in the daily operation of our Real-time Threat Management activities. This includes operational security tasks such as performance and availability, monitoring, log monitoring, security incident detection and response, security event reporting, and content maintenance (tuning).

To mentor and coach team to ensure service is effectively delivered and at the required level of services.

**Job level**

Level 2

**Reports to [role]**

CSOC Manager

**Required minimum education and work experience**
- Matric / University Degree in Information Security and/ or a minimum of 5 years
related practical SOC experience.
- Industry Certifications: CISSP, CISM, CISA, CEH, CHFI (desired)
- Prior experience working in a SOC/CSIRT for at least 5years
- Product Certifications in SIEM, Security Analytics, AV, Log Management
- Strong knowledge of security standards including ISO27001, ASD, PCI DSS
- Proven skills in improving SIEM alerting rules
- Must have the ability to understand large, complex systems and be able to focus
on specific details or subsystems, their vulnerabilities and linkages
- Extensive experience dealing with malware, attack vectors and the ability to
perform pattern analysis
- Requires basic knowledge of hardware / software architecture and domains in IT
operations with a focus on governance, risk and compliance.

**Internal contacts**
- Head of Cyber Security Operations Centre CSOC.
- CSIRT team.
- Other functional peers.
- Account manager.
- Service delivery manager.
- Technical delivery manager.

**External contacts**
- Client.
- Vendor.

**Key performance areas**

1. Delivery of quality security monitoring service.

2. Reporting and documentation.

3. Mentoring and coaching.

4. Personal development.

5. Deliver according to Statement of Work.

**Technical knowledge / competencies**
- Be familiar will current SOC operational methodologies
- Knowledge of NIST 800 - (any SP in the 800 range)
- Knowledge of firewalls, IDS, IPS, VLANS, AD, LDAP, routers and switches
- Knowledge of SIEM technologies
- Knowledge of root cause analysis and escalation procedures
- Knowledge of CVE, Google Hacking and threat intelligence
- Knowledge of MITRE Att&ck Framework
- Knowledge of ISO 27001
- Reporting skills, being able to articulate technical reports into business language in
order to provide situational awareness and specialist advisory.
- CISSP
- OSCP
- SANS Cyber Threat Intelligence
- Project and process management

**Behavioural competencies**
- Leadership and climate setting
- Team player and Team building (creation of a cohesive division)
- Must be capable of setting goals and priorities for others and prioritization for
self
- Adopting and accepting the organization's professional standards
- Awareness and consistency in own self-awareness and basic managerial style
- Structured thinking
- Teachability - (having a positive attitude and a willingness to learn)
- Individual thinking within the current role
- Collaboration - willingness and ability to collaborate with other Team Leaders/
Supervisors
- Action oriented - production of desired outcomes within the required timeframes
- Work pro-actively - both independently and with peers
- Assertive and confident.
- Ability to handle conflict.
- Ability to plan and organize work tasks.
- Strong sense of accountability and responsibility.

**Description of key performance areas**

**Key performance area**

**1. Delivery of quality security monitoring service**
- Makes customers and their needs a primary focus of one’s actions and attention,
while developing/maintaining productive customer relationships.
- Seeks to understand customer environment to ensure realistic and effective
recommendations and/or solutions.
- Seeks to understand customer circumstances, problems, expectations and needs,
while resolving problems quickly.
- Responsible for ensuring divisional policies, procedures and standards are
documented, approved, communicated and adhered to.
- Act as an advisor to internal and external customers regarding CSOC related
matters.
- Meeting customer expectations/deliverables in line with SOW.
- Number of complaints/compliments from customers.

**2. Reporting and Documentation**
- Manage and report on the team’s performance, including mentoring and coaching
- Develop and deliver timely reports to management
- Log and report all customer interactions
- Drive the effective service delivery at the required level of services
- Actively support technology and product adoption within the department to ensure
it is best of breed (discerning), in order to provide quality services at scale
- Implement automation of processes and technology management wherever
possible to eliminate human error and effort, and to facilitate faster incident
alerting and response times.

Level of cooperative reliability in working with other functional Peers

Quality of products and service



  • Johannesburg, South Africa A 1L Realization (Pty) Ltd Full time

    Key Tasks & Accountabilities Architect IT Security solutions and supporting infrastructure (physical / virtual infrastructure / cloud, operating systems and supporting software) in alignment with organizational goals and constraints - Create a modernisation roadmap and architect solutions to meet Cyber Security needs. - Ensure technical viability of new...


  • Johannesburg, South Africa RJPersonnel Full time

    6years - Provide SME skills and mentorship to the Cyber Security Analysts as well as collaboration with the business and technology teams. - Day to day management of the Cyber Security Analysts. - Responsible for the day-to-day security operations. - Manage the relationship with 3rd party security vendors to improve and maintain security within the...


  • Johannesburg, South Africa SNG GrantThornton Full time

    **Job Purpose** Will be responsible to manage timeous delivery of Cyber Security related audit components of the integrated IT audit of the client, within the Digitech Assurance audit team. - Perform Cyber Security related reviews covering the typical four audit phases i.e. planning, execution, reporting and quality assurance. - Implement and manage...


  • Johannesburg, South Africa Specd Full time

    **The Job Requirements**: - Develop and implement comprehensive cyber security strategies, policies, and procedures that align with business objectives and comply with regulatory requirements. - Monitor network traffic and system logs to identify and respond to security incidents and breaches in a timely and effective manner. - Develop and maintain incident...


  • Johannesburg, South Africa Specd Full time

    **The Job Requirements**: - Lead and manage the Cyber Security team. - Provide technical expertise and support to the team as needed. - Develop and implement security policies and procedures. - Manage incident response and investigate potential security breaches. - Monitor and develop robust security controls and protocols. - Collaborate with internal and...


  • Johannesburg, South Africa SNG GrantThornton Full time

    **Job Purpose** Will be responsible to manage timeous delivery of Cyber Security related audit components of the integrated IT audit of the client, within the Digitech Assurance audit team. - Perform Cyber Security related reviews covering the typical four audit phases i.e. planning, execution, reporting and quality assurance. - Implement and manage...


  • Johannesburg, South Africa IBC Solutions Full time

    Understand all IT security risks - Administer IT security information of company - Develop awareness campaigns around IT cyber risk and security - Administering information and cyber security incidents - Report - Defending systems against unauthorized access, modification and/or destruction - Custodian of all IT security information - Collect incidents,...


  • Johannesburg, South Africa SNG GrantThornton Full time

    **Responsibilities**: - Manage and lead a team of cyber security professionals; - Undertake project planning, execution and management of cyber security assignments; - Manage and or perform cybersecurity managed services assignments; - Form partnerships with cybersecurity third parties and OEMs - Manage Third Parties and OEMs and partnerships; - Manage and...


  • Johannesburg, Gauteng, South Africa Cyber Factor Full time

    We are looking for passionate and driven individuals to join our Cyber & Information Technology Trainee Program. This role offers a unique opportunity to gain hands-on experience, participate in structured training and development, and engage in experimental work in cybersecurity and IT.As a trainee, you will work alongside experienced professionals, gaining...


  • Johannesburg, Gauteng, South Africa Cyber Factor Full time

    Job DescriptionWe are seeking a talented individual to join our Cyber & Information Technology Trainee Program. As a trainee, you will gain hands-on experience in endpoint and network security, IT support, and cybersecurity best practices.


  • Johannesburg, South Africa BASHR Consulting Full time

    **Job Details**: **Department** **other** **Minimum experience** **Mid-Senior** **Company primary industry** **Information Technology and Services** **Job functional area** **Information Technology** **Salary** **R400 000 - R600 000 per annum** Job Specification: Cyber Security Analyst Position Overview: **Responsibilities**: 3. Develop and...


  • Johannesburg, Gauteng, South Africa Standard Bank of South Africa Limited Full time

    Job OverviewWe are seeking a highly skilled Cyber Security Strategist to join our team at Standard Bank of South Africa Limited. The ideal candidate will have 5-7 years of experience in information cyber security or audit roles within the banking and/or financial services sector.The successful candidate will be responsible for implementing the Group Cyber...


  • Johannesburg, South Africa SNG GrantThornton Full time

    **Job Purpose** Cyber Security is one of the most important risks facing businesses today. Systems and processes are becoming increasingly interconnected and automated and many organizations are now reliant upon technology to drive business strategy and growth. Our clients are overwhelmingly turning to SNG-Grant Thornton for help and guidance on how to...


  • Johannesburg, Gauteng, South Africa Liquid Intelligent Technologies Full time

    Job title : Cyber Security Solution ArchitectJob Location : Gauteng, JohannesburgDeadline : March 19, 2025Quick Recommended LinksJobs by Location Job by industries Role DescriptionWorking within the Liquid Sales & Cyber Security team members to create and drive engagements, opportunities, and pipeline. Work with the broader business unit teams when...


  • Johannesburg, South Africa HR Genie Full time

    The role of the Cybersecurity Consultant includes contribution to technical insights relevant to client engagements and internal projects. Actively establish, maintain and strengthen internal and external relationships. Execution of cybersecurity engagements. The Cybersecurity Senior Consultant will be responsible for the following key activities to achieve...


  • Johannesburg, South Africa NTT Full time

    NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...


  • Johannesburg, Gauteng, South Africa Standard Bank of South Africa Limited Full time

    Job DescriptionWe are seeking a highly skilled Cyber Security Threat Analyst to join our team at the Standard Bank of South Africa Limited. The ideal candidate will have a strong background in IT security and experience in developing threat models, threat analysis, cyber and incident management.The successful candidate will be responsible for analysing and...


  • Johannesburg, South Africa BASHR Consulting Full time

    A fantastic opportunity has come up for an experienced Cyber Information Security Analyst to join a dynamic team in Johannesburg. As a Cyber Information Security Analyst, you will need to be hands-on management, guidance, and recommendations for all operational Information Security platforms. The role will be a liaison between Operations and IT Governance...


  • Johannesburg, South Africa BASHR Consulting Full time

    **Job Details**: **Department** **IT Security Engineer** **Minimum experience** **Mid-Senior** **Company primary industry** **Information Technology and Services** **Job functional area** **Information Technology** **Salary** **R936 000 - R1 248 000 per annum** A fantastic opportunity has come up for an experienced Cyber Information Security...


  • Johannesburg, Gauteng, South Africa Ntice Sourcing Solutions Full time

    Job title : Cyber Security Specialist (41414)Job Location : Gauteng, JohannesburgDeadline : April 17, 2025Quick Recommended LinksJobs by Location Job by industries Job DescriptionAre you a skilled Cyber Security Specialist looking for a challenging role in a dynamic environment? We are seeking a highly motivated professional to lead and implement cyber...