Senior Specialist: Cybersecurity Threat Analyst
2 weeks ago
**ROLE PURPOSE**
As part of the Customer-facing Nexio SOC team, the Cybersecurity Threat Analyst will be responsible for monitoring enterprise networks and systems, deterring, identifying, investigating, and mitigating, any and all threats that are directed against those systems regardless of their classification level or type. The Cybersecurity Threat Analyst is expected to collaborate with leadership to develop metrics based on situational awareness and provide support for incident response, surveillance, vulnerability identification, secure network design, and threat monitoring at an enterprise level that will be reported based on the approved plan and supporting checklists. The Cybersecurity Threat Analyst must be able to conduct research on emerging threats, maintains proficiency in exploitation tools, and develops threat profiles to rapidly address security incidents alerted primarily by industry-recognized Security tools and technology.
The incumbent should ideally have advanced security incident handling analysis experience in an established SOC environment and contribute to risk management, lead Red Team/Blue Team exercises, mentor junior analysts, and develop playbooks for incident scenarios. The Cybersecurity Threat Analyst monitors network traffic, investigates incidents, and collaborates with the SOC team to enhance the organization's security posture.
**ROLE REQUIREMENT**
- Is familiar with the tactical and long-term vision across the Cyber Security function.****:
- Adheres to the standard operating procedure and playbooks in the SOC.
- Direct impact on the SOC performance.
- Impacts on team’s runbooks and operational processes in the SOC Service.
- Provides security incident handling and technical guidance to SOC Teams.
- Gives regular, comprehensive, and constructive feedback, and coaching and mentoring to the team.
- Mentor junior analysts to enhance their effectiveness in their roles.
- Proactively hunt for advanced threats and conduct in-depth research and analysis.
- Monitor network traffic, analyze data, and identify suspicious activity.
- Investigate incidents, determine root causes, and provide incident response support.
- Develop secure network designs, protection strategies, and audits for information security infrastructure.
- Research and maintain proficiency in computer exploitation tools, attack techniques, and emerging threat sources.
- Contribute to a comprehensive risk management program, identifying critical processes, threats, and vulnerabilities.
- Lead Red Team/Blue Team exercises and identify gaps in monitoring tools and processes.
- Develop playbooks for various incident scenarios and possess knowledge of automation processes.
- Analyze incidents from various sources, combined with threat intelligence feeds into the SIEM.
- Assist in coordinating, validating, and managing all-source collection requirements and intelligence activities.
- Conduct nodal analysis, evaluate threat decision-making processes, and identify intelligence gaps.
- Monitor and report changes in threat activities, tactics, capabilities, and objectives.
- Produce timely and fused cyber operations intelligence products, threat assessments, and briefings.
- Provide intelligence analysis and support for exercises, planning activities, and time-sensitive operations.
- Report significant network events, intrusions, and intelligence-derived information.
- Collaborate with stakeholders, analysts, and managers to ensure accurate intelligence requirements and collection plans.
Additional Information:
- Individuals at this level have fully developed knowledge of best practices in security incident handling in an established SOC.
- Able to build strong interpersonal relationships with the SOC team and customer stakeholders.
- Excellent communication skills and communication of complex information to non-technical stakeholders.
- Confident in producing and presenting work.
- In-depth understanding of best security incident analysis and incident handling practices, Strong knowledge of networking protocols, operating systems, and security architecture in an established SOC.
- Proficiency in security tools such as SIEM, IDS/IPS, EDR, and network analyzers.
**TECHNICAL / PROFESSIONAL COMPETENCIES**
- Adhere to operational processes in the NIST CSF and MITRE ATT&CK framework
- Prior experience to advise, plan, deploy, configure, manage, and monitoring large-scale and complex cyber defence and IT risk management and information or cybersecurity solutions.
**QUALIFICATIONS & EXPERIENCE**
- Grade 12
- Bachelor’s Degree in Computer Science or a related technical discipline, or the equivalent combination of education, technical certifications
- One or more of these industry Cybersecurity Certifications: CISSP-ISSEP, CISSP-ISSAP, GIAC Certified Incident Handler (GCIH), Certified Computer Security Incident Handler (CSIH), CEH, OSCP, CompTIA
- Minimum of seven (7) years of work experience, and three (3) years of re
-
Senior Specialist: Cybersecurity Analyst
2 weeks ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Senior Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and...
-
Cybersecurity Threat Analyst
1 day ago
Midrand, Gauteng, South Africa Fidelity Services Group Full timeAbout the RoleWe are seeking a skilled and dedicated Cybersecurity Analyst to join our Cybersecurity team in the physical security industry.Key Accountabilities:Monitor and analyze security events to identify potential threats and vulnerabilities.Conduct regular vulnerability assessments to identify weaknesses in systems, applications, and...
-
Specialist: Cybersecurity Analyst
2 weeks ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and provide...
-
Threat Intelligence Analyst
6 days ago
Midrand, Gauteng, South Africa Merafong ICT Full timeThreat Intelligence AnalystThe Threat Intelligence Analyst will be responsible for utilizing threat intelligence feeds to stay updated on the latest threats and vulnerabilities. This includes integrating relevant information into incident response strategies and collaborating with IT teams to ensure a unified approach to cybersecurity.This position requires...
-
Cybersecurity Specialist
7 days ago
Midrand, Gauteng, South Africa Merafong ICT Full timeAbout the RoleWe are seeking a highly skilled Cybersecurity Specialist to join our team at Merafong ICT. As a key member of our cybersecurity team, you will be responsible for identifying and analyzing sophisticated threats and vulnerabilities using advanced tools and techniques.Key Responsibilities:Advanced Threat Detection: Identify and analyze...
-
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Manager is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Manager is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the organization's network and...
-
Senior Cybersecurity Specialist
4 days ago
Midrand, Gauteng, South Africa Profile Personnel Full timeProfile Personnel is a dynamic company that requires a Senior Cybersecurity Specialist to join our team. The successful candidate will have a proven track record in designing and implementing robust cybersecurity solutions.This is an exciting opportunity to work with a talented team of IT professionals who share your passion for cybersecurity. You will have...
-
Cybersecurity Analyst
1 day ago
Midrand, Gauteng, South Africa Fidelity Services Group Full timeJob Title : Cybersecurity Analyst Location: Ulwazi Campus Midrand/Helderkruin Reports to: Information Security Manager Job Summary: We are seeking a skilled and dedicated Cybersecurity Analyst to join our Cybersecurity team in the physical security industry. As a Cybersecurity Analyst, you will play a crucial role in ensuring the security of our diverse...
-
Cybersecurity Analyst- Midrand
3 weeks ago
Midrand, South Africa Fidelity Services Group Full time**Job Title**:Cybersecurity Analyst** **Location**: Ulwazi Campus Midrand/Helderkruin **Reports to**: Information Security Manager** **Job Summary**: We are seeking a skilled and dedicated Cybersecurity Analyst to join our Cybersecurity team in the physical security industry. As a Cybersecurity Analyst, you will play a crucial role in ensuring the...
-
Cybersecurity Analyst
2 weeks ago
Midrand, South Africa Fidelity Services Group Full time**Job Title**: Cybersecurity Analyst **Location**: Ulwazi Campus Midrand/Helderkruin **Reports to**: Information Security Manager** **Job Summary**: We are seeking a skilled and dedicated Cybersecurity Analyst to join our Cybersecurity team in the physical security industry. As a Cybersecurity Analyst, you will play a crucial role in ensuring the security...
-
Specialist: Cybersecurity Incident Manager
2 weeks ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Manager is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Manager is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the organization's network and...
-
Senior Specialist: Cybersecurity Infrastructure
2 weeks ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Senior Specialist: Cybersecurity Infrastructure Support will identify, analyze and react to security incidents, events, and threats using a reliable set of operating processes and SIEM technologies such as Azure Sentinel, or QRadar, or ArcSight. The Senior Specialist: Cybersecurity...
-
Threat Intelligence Lead
7 days ago
Midrand, Gauteng, South Africa Merafong ICT Full timeAbout the TeamOur team at Merafong ICT is made up of experienced professionals who are passionate about cybersecurity. We are dedicated to helping our clients protect their networks and systems from cyber threats. As a Threat Intelligence Lead with Merafong ICT, you will have the opportunity to work on a wide range of challenging projects and develop your...
-
Cybersecurity Specialist
1 week ago
Midrand, Gauteng, South Africa Careers at DLK Group Full timeMidrand, South Africa | Posted on 19/12/2024The Cybersecurity Specialist is responsible for safeguarding the organization's digital assets, networks, systems, and data. The role ensures robust security measures are in place to protect against threats, vulnerabilities, and unauthorized access while ensuring compliance with governance and regulatory...
-
Cybersecurity Operations Specialist
6 days ago
Midrand, Gauteng, South Africa Merafong ICT Full timeCybersecurity Operations SpecialistThe ideal candidate for this role will have 3-5 years of experience in a SOC environment and prior work in IT or cybersecurity. You will be responsible for overseeing security systems and alerts to detect unusual activity, reviewing and investigating alerts generated by security tools, and implementing strategies to contain...
-
Cybersecurity Operations Specialist
2 days ago
Midrand, Gauteng, South Africa Merafong ICT Full timeMerafong ICT is a dynamic company seeking a skilled Cybersecurity Operations Specialist to join our team.About the Role:This is a unique opportunity for a motivated individual to take on the challenge of protecting our digital assets from various threats.About You:You have 3 to 5 years of experience in the SOC environment, with a strong understanding of...
-
Chief Cybersecurity Officer
4 days ago
Midrand, Gauteng, South Africa iOCO Full timeCybersecurity Leadership OpportunityWe are seeking a seasoned leader to manage our cybersecurity services, ensuring seamless operations and compliance with industry standards.Responsibilities:Oversee the performance and operations of the SOC, ensuring SLA and KPI adherence.Supervise security analysts, shift leads, and third-party service providers.Maintain a...
-
Senior Network Security Professional
7 days ago
Midrand, Gauteng, South Africa Merafong ICT Full timeAbout Our CompanyMerafong ICT is a leading provider of cybersecurity solutions. We are committed to helping our clients protect their networks and systems from cyber threats. As a Senior Network Security Professional with Merafong ICT, you will have the opportunity to work on a wide range of challenging projects and develop your skills and expertise in the...
-
Security Operations Center Analyst Level 2
6 days ago
Midrand, Gauteng, South Africa Merafong ICT Full timeSecurity Operations Center Analyst Level 2Job ResponsibilitiesIncident Response and ManagementIncident Triage: Assessing incoming security alerts and determining the appropriate response based on the severity and nature of the threat. This includes prioritizing incidents that require immediate attention.Investigation: Conducting in-depth analysis of...
-
Information Security Analyst
6 days ago
Midrand, Gauteng, South Africa Merafong ICT Full timeMerafong ICT seeks an Information Security Analyst to join its team. As a critical member of the organization, you will play a key role in ensuring the security and integrity of our systems and data.Key Responsibilities:Conduct incident response and management activities to identify, contain, and remediate security incidents.Develop and maintain threat...