Cyber Threat Hunt Analyst

6 months ago


Cape Town, South Africa Surgo HR & Training Full time

Surgo (PTY) Ltd. has partnered with a global analytics and digital solutions company serving industries including insurance, healthcare, banking and financial services, media, retail, and others. They aim to bridge the gap between digital expectations and real outcomes for international companies with Digital Intelligence.

Our client is recruiting for a Cyber Threat Hunt Analyst to join their team based in Cape Town.

**Job purpose**:
The role will support and advise on product assessments, policy adjustments, and architectural transformation that will impact regional and global locations. The position requires someone with technical expertise and will provide influence on the design of detective, preventive, and proactive controls.

**Responsibilities**:
Identify and track threat actor groups and their TTPs while maintaining current knowledge of tools and best practices of APT groups

Perform cyber threat hunting activity using threat intelligence, analysis of anomalous log data, and related tools

Collect, enrich, and disseminate IOCs - Indicators of Compromise

Use the MITRE ATT&CK framework to analyze malicious campaigns and evaluate the effectiveness of security technologies and controls

Determine true threats, false positives, and network system misconfigurations and provide recommendations and solutions to issues detected

Monitor the organization’s attack surface against the current threat landscape

Support the Cyber Threat Intelligence team to provide threat informed defenses that will improve prioritization of preventative controls and mitigations to improve defense posture

Engage and collaborate with Red Team to analyze and evaluate the effectiveness of existing security controls

Support Cyber Threat DFIR for internal incidents by performing cyber threat hunting activities during investigations and building a common understanding of threat activities

**Qualification & Experience**:
Direct experience performing threat hunting in an active corporate environment

2+ years of experience in a technical role in the areas of Security Operation, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat Intelligence

Security certification or working towards certification (e.g., SANS, SEC+, CompTIA, Security+, OSCP, or CEH), equivalent experience will be considered

Direct experience working with large datasets, log review and bulk analysis tools

Experience consuming and analyzing Cyber Threat Intelligence for actionable takeaways

Familiarity with offensive security strategies and assessment methodologies

Knowledge of threat actors, including malware families, intrusion techniques, and associated criminal entities

Experience explaining threat hunt objectives and ability to communicate associated risks

Ability to understand requirements and needs from across the organization in order to build consensus and drive results

Ability to navigate and work effectively across a complex, geographically dispersed organization

Able to perform proactive threat hunting using multiple toolsets, suggesting, and testing hypotheses, pivoting and reporting on investigation results

Ability to work on-side

**Beneficial**:
Experience with more than one more enterprise scale EDR and SIEM tool

Experience using Internet and network scanning tools for malicious host discovery

Basic understanding of building threat hunting queries using KQL, SIGMA, or Yara

Previous experience using a Threat Intelligence platform or CTI vendor

Demonstrated ability to self-direct, with mínimal supervision to achieve assigned goals

Knowledge of basic Data Science concepts and processes

Experience with offensive security tools and technical and the methods used to compromise large networks

Previous experience performing digital forensics or incident response on major security incidents

**Salary**: Market Related

**Working Hours**: Monday to Friday - 08:00am to 17:00pm



  • Cape Town, South Africa Surgo Full time

    Surgo (PTY) Ltd. has partnered with a global analytics and digital solutions company serving industries including insurance, healthcare, banking and financial services, media, retail, and others. They aim to bridge the gap between digital expectations and real outcomes for international companies with Digital Intelligence. Our client is recruiting for...


  • Cape Town, Western Cape, South Africa Collinson Full time

    Cyber Security Threat AnalystAt Collinson, we are looking for a skilled Cyber Security Threat Analyst to join our team. This role will be responsible for monitoring, analyzing, and responding to cyber threats and incidents that affect our network and systems. You will also co-ordinate vulnerability assessments, penetration tests, to identify and mitigate...


  • Cape Town, South Africa Endeavour Recruitment Solutions Full time

    Cyber Security Specialist / Penetration Tester - Country: South Africa - Location: Cape Town or Gauteng - Sector: Security Engineers / Consultants - Salary: Rand Negotiable - Job Type: Contract - Technologies: Cyber Security, Penetration Testing, Ethical Hacker Posted Thursday, 16 September 2021 Endeavour Recruitment has an excellent permanent opportunity...

  • Cyber Security Analyst

    6 months ago


    Cape Town, South Africa Exclusively Remote Full time

    One of our US based clients are looking for experienced Cyber Security Analyst/Specialist with a strong background in Cyber Security and prior experience working for a Managed Service Provider (MSP). Responsibilities: - **Cyber Security**: Implement and manage cyber security solutions to safeguard clients' IT environments from potential threats,...

  • T2 Security Analyst

    6 months ago


    Cape Town, South Africa Job Crystal Full time

    A company providing secure cloud transformation by combining Microsoft cloud technology with cyber security, and managed services is looking for a T2 Security Analyst in Cape Town to assist the SecOps Tech Lead and Head of Security Operations in enhancing the SOC & SOAR operations within the company. The Security Analyst will collaborate closely with other...

  • Security Analyst

    6 months ago


    Cape Town, South Africa Capital Edge Recruitment Full time

    Join a team of Security Analyst (SOC Tier 2) at an international IT MSP, where you’ll play a pivotal role in enhancing their Security Operations Center (SOC) and Security Orchestration, Automation, and Response (SOAR) operations. Collaborate with talented teams to build services and solutions that align with security best practices and client assurance...


  • Cape Town, South Africa Kocho Full time

    JOB PURPOSE This position will assist the SecOps Tech Lead and Head of Security Operations in enhancing the SOC & SOAR operations within Kocho. The Security Analyst will collaborate closely with other teams to build services and solutions that align with security best practices and client assurance requirements. This includes, but is not limited to, the use...


  • Cape Town, South Africa LRI Invest Full time

    Description L3 SOC/Security Analyst Cape Town Summary of the position Outline of main duties and responsibilities The SME/Expert Security Analyst L3 performs penetration tests, threat hunting, and optimising security monitoring tools. Key responsibilities include: - Review asset discovery and vulnerability assessment data to identify and prioritize...


  • Cape Town, South Africa City of Cape Town Full time

    ELIGIBILITY CLOSING DATE 15.11.2024 REFERENCE NUMBER CS 187/24 ext SALARY R1533805.00 - R1899481.00 DEPARTMENT Information Systems and Technology DIRECTORATE CORPORATE SERVICES Manager - Cyber Security **Requirements**: - A relevant three-year tertiary qualification, preferable a Bachelor’s degree in Information Systems or Computer Science - Information...

  • Cyber Security Lead

    2 months ago


    Cape Town, South Africa Clicks Group Limited Full time

    To elevate the Group’s security posture through proactive analysis and mitigation of cyber security threats and risks, especially in cloud platforms and web applications. This position plays a pivotal role in leading a team to implement security assessments, measures and processes through security engineering, penetration testing and other assessment...


  • Cape Town, Western Cape, South Africa Parvana Full time

    About Our Client: Parvana is a renowned international software development house specialising in telecommunications and payment gateways. With a proven track record of remarkable growth, they offer an exceptional training and mentorship program. What You Will Be Doing: As a Cyber Security Architect, you will be responsible for developing and maintaining...

  • Cyber Grc Consultant

    6 months ago


    Cape Town, South Africa Strategic Placements CC Full time

    **Requirements**: - Relevant qualification (CISM / GRCP / CISSP / B.Com Information Systems or similar) - Minimum 3 years’ experience as a Cyber Security practitioner with relevant knowledge in GRC - Experience in assessing and/or implementing security and risk standards (NIST, ISO 27001, PCI DSS, ITIL, COBIT) - Experience in writing risk assessment...


  • Cape Town, Western Cape, South Africa Surgo PTY Ltd Full time

    We are seeking a highly motivated and enthusiastic Cybersecurity Threat Hunter to join our Cybersecurity division. As a valued member of our team, you will play a crucial role in protecting our clients from security threats.The Role:You will be responsible for conducting a range of security assessments including infrastructure, web application and red team...

  • Security Analyst

    6 months ago


    Cape Town, South Africa Impact.com Full time

    **Our Company**: If you are looking to join a team where your opinion is valued, your contributions are noticed, and enjoy working with fun and talented people from all over the world then this is the place for you. If you have a desire to work in an organisation that is: - Passionate about its people - Focused on delivering the very best tech to our...

  • Head of Cyber Security

    8 months ago


    Cape Town, South Africa CyberPro Consulting Full time

    CyberPro Consulting merges a fervor for technology with a sincere interest in our customers' business and success. Boasting more than two decades of experience in the IT and software development industry, CyberPro Consulting serves a diverse clientele, spanning from large-scale enterprises to SME businesses. As Head of Cyber Security in our Cape Town...

  • Cyber Security Lead

    4 months ago


    Cape Town, South Africa Clicks Group Limited Full time

    **Listing reference**: 017709**Listing status**: Online- **Position summary** **Industry**:IT & Internet - **Job category**:IT and Telecommunications**Location**:Cape Town - **Contract**:Permanent**EE position**:No**Introduction**Job description** **JOB OBJECTIVES**Lead, mentor, and manage a team of cyber security specialists in performing security...

  • Cyber Security Lead

    6 months ago


    Cape Town, South Africa Clicks Group Limited Full time

    **Listing reference**: 016940**Listing status**: Online- **Position summary** **Industry**:IT & Internet - **Job category**:IT and Telecommunications**Location**:Cape Town - **Contract**:Permanent**EE position**:No**Introduction**Job description** **JOB OBJECTIVES**- - Lead, mentor, and manage a team of cyber security specialists in performing security...

  • Cyber Security Analyst

    4 months ago


    Cape Town, South Africa Collinson Full time

    PermanentCape Town, HybridCollinson Group is a global leader in driving loyalty and engagement for many of the world’s largest companies. Predominantly through the provision of travel related benefits within a market leading digital travel ecosystem. The group offers a unique blend of industry and sector specialists who together provide market-leading...


  • Cape Town, South Africa Black Pen Recruitment Full time

    Our Client is the largest and only licensed on/off-ramp platform for stablecoins in Africa. They are dedicated to offering innovative solutions in the African stablecoins space. Our client is committed to making stablecoins accessible and understandable for everyone, providing their customers with secure and user-friendly platforms for their financial...

  • Cyber Security Manager

    6 months ago


    Cape Town, South Africa Clicks Group Limited Full time

    **Listing reference**: 016939**Listing status**: Online- **Position summary** **Industry**:IT & Internet - **Job category**:IT and Telecommunications**Location**:Cape Town - **Contract**:Permanent**EE position**:No**Introduction** - We are seeking a proficient and experienced Cyber Security Manager to shape, design and manage the implementation of the...