Security Analyst- Tier 2

1 month ago


Cape Town, South Africa Kocho Full time

JOB PURPOSE

This position will assist the SecOps Tech Lead and Head of Security Operations in enhancing the SOC & SOAR operations within Kocho. The Security Analyst will collaborate closely with other teams to build services and solutions that align with security best practices and client assurance requirements. This includes, but is not limited to, the use of Microsoft Sentinel, Microsoft Defender for Endpoint, Microsoft Defender for Cloud, and all other MS Security Stacks. The primary responsibility of the Security Analyst role is to carry out operational SOC and SOAR activities as directed by the SecOps Tech Lead and Head of Security Operations. This includes monitoring and responding to incidents and alerts
within Microsoft Sentinel.

You will be required to, work with members of the Security Operations Team to ensure all SOC & SOAR operational tasks
are completed on time and work tickets updated / closed with satisfactory technical details included, and where appropriate escalate suspicious / malicious events to senior team members and Kocho or client incident response personnel in order to identify, contain and remediate active threats. You will also be required to develop and update operational documentation, as necessary. Security Analysts will be comfortable engaging at both technical and non-technical levels, contributing as required in technical workshops and client briefings / service reviews. You will be working in an incredibly passionate environment, with great people in which you can actively contribute to develop and deliver our SOC & SOAR capability.

KEY RESPONSIBILITIES OF THE ROLE

Strategy and Leadership:

- This is not a leadership role though you will be expected to mentor and support Junior Colleagues.

Technical Specialism:

- Advanced knowledge and experience with Microsoft Sentinel, Microsoft Defender for Endpoint, and Microsoft Defender

for CloudFamiliarity with other Microsoft Security Stacks and a broad understanding of common corporate technologies.
- Proficient in using KQL (Kusto Query Language) for threat hunting and other security-related investigations.
- Experience in IT administration, preferably within a Security Operations Center (SOC) environment.
- Experience in incident response and handling, including detailed incident reporting and documentation.
- Ability to analyze complex data and security logs to identify cyber security threats.Ability to communicate in

both technical and non-technical terms, tailoring approach to the audience.
- Self-motivated learner of technologies and methodologies to support best practice.
- Actively contributing to knowledge sharing across the business.

Security Operations:

- Act as an operational point of contact during significant cyber security events
- Assist in the support of major incident handling within the SOC, and where applicable for clients
- Provide support and guidance regarding monitoring activities
- Provide “hands on” resource, working to ensure Kocho objectives and client SLA targets are achieved.
- Provide input and support for stakeholder communication.
- Assist and support the implementation of security controls, threat protection etc for both Kocho and it’s clients
- Support other Security Analysts and clients on rules/policies/filters/use cases and SOC tooling.
- Assist with the implementation of improvements as part of on-going service enhancement or “lessons learned” following incident investigation (cause and affect).
- Assist in the review of incident closures, post incident reports and act upon improvements identified
- Undertake Threat Hunting, to include the development of queries to support improvements to the identification of undetected threats on client estates.
- Contribute to team development through knowledge sharing, briefing and production of guides, incident scenarios and playbooks.
- Show flexibility in developing knowledge of supporting areas and performing their responsibilities during times of operational need.
- Maintain currency in relation to security concepts, tools and best practices
- Willingness to work shifts (including unsociable hours and bank holidays) as part of 24x7 team working.

Business Operations:

- Ability to work effectively with internal systems such as Kimble, Teams, SharePoint and Office 365.
- Effective personal resource and time management with a commercial approach to work.
- Working remotely, or on site

Delivery and KPIs:

- Contribute to the full lifecycle of client solutions and service offerings, from proposition through to delivery and support and maintenance
- Communicate technical solutions in a clear, and concise approach for a variety of audiences from both a technical and business background.
- Contribute to well written and professional documentation, performance, and client reports.
- Assist the SecOps lead and Head of Security Operations in development of new service offerings, procedures, techniques, and policies.
- Assist in the recruit


  • Security Analyst

    3 months ago


    Cape Town, South Africa Capital Edge Recruitment Full time

    Join a team of Security Analyst (SOC Tier 2) at an international IT MSP, where you’ll play a pivotal role in enhancing their Security Operations Center (SOC) and Security Orchestration, Automation, and Response (SOAR) operations. Collaborate with talented teams to build services and solutions that align with security best practices and client assurance...

  • T1 Security Analyst

    4 months ago


    Cape Town, South Africa Job Crystal Full time

    A company providing secure cloud transformation by combining Microsoft cloud technology with cyber security, and managed services is looking for a T1 Security Analyst in Cape Town. This role will support the Tier 2 & Tier 3 Security Analysts in developing SOC & SOAR functions within the business, working closely with other teams as required to build...


  • Cape Town, South Africa LRI Invest Full time

    Description L2 SOC/Security Analyst Cape Town Summary of the position Outline of main duties and responsibilities The main responsibilities of the role will be: - Correlating data from various sources to assess the impact on critical systems or data sets. - Providing guidance on remediation and supporting the development of new analytic methods for...

  • IT Support Engineer

    1 week ago


    Cape Town, South Africa RMV Solutions Pty Ltd Full time

    Our client a prominent outsourcing organization in the BPO sector is committed to delivering exceptional service and innovative solutions to clients worldwide. We are seeking a skilled and motivated Tier 2 IT Engineer to join our dynamic team.Position OverviewAs a Tier 2 IT Engineer with our client you will play a vital role in maintaining and enhancing our...

  • IT Support Engineer

    3 months ago


    Cape Town, South Africa RPO Recruitment Full time

    RPO Recruitment is currently seeking a dedicated and experienced IT Support Engineer to join our client's team as a Tier 2 Support Engineer. As a Tier 2 Support Engineer, you will be responsible for providing technical support and troubleshooting services to end-users, resolving complex IT issues, and escalating problems when necessary.Responsibilities:...

  • Tier 2 IT Technician

    4 months ago


    Cape Town, South Africa Westech Systems Full time

    **Tier 2 IT Technician** We are seeking someone who is willing to go the extra mile and that is not a clock watcher as there will be times that you may be required to work outside of standard operating hours. Own reliable transport is a must. Needs to be available immediately! **Salary**: R15,000.00 - R20,000.00 per month Application Question(s): - Are...


  • Cape Town, South Africa Recru-it Full time

    Position Overview: As a Tier 2 IT Engineer at the company, you will play a crucial role in maintaining and improving the company IT infrastructure. You will be responsible for diagnosing and resolving technical issues, supporting end- users, and collaborating with other IT professionals to ensure smooth operations. Purpose: Support the IT Site Leader to...


  • Cape Town, South Africa Recru-it Full time

    Position Overview:As a Tier 2 IT Engineer at the company, you will play a crucial role in maintaining and improving the company IT infrastructure. You will be responsible for diagnosing and resolving technical issues, supporting end- users, and collaborating with other IT professionals to ensure smooth operations. Purpose: Support the IT Site Leader to...

  • Security Analyst

    4 months ago


    Cape Town, South Africa Flexis Full time

    **SIEM And XDR SOC** Act as a point of escalation for Level 1 and 2 security analysts on incident resolution and containment techniques. - Define, create and maintain SIEM correlation rules, customer build documents, security process and procedures. - Manage, tune, and optimize SIEM tool which includes evaluating existing rules, filters, events and use...


  • Cape Town, South Africa Netsurit Full time

    Tier 2 Technical Support Engineer Location: Cape Town Model: On-Site Requirements: The IT Services Consultant must have at least 3-5+ years' experience in the IT & Networkingenvironment and must have formal IT qualifications, ideally Microsoft roll-based certifications.A candidate with both the attitude and aptitude to succeed in Server/Network Support,...


  • Cape Town, South Africa RMV Solutions Pty Ltd Full time

    Woodstock R20000 - R30000 **Responsibilities**: Design, develop, and implement customized mid-tier solutions that meet clients security needs Lead and participate in technical discussions and presentations with clients and internal teams Provide technical guidance and mentorship to junior consultants in the team Stay up-to-date with the latest trends...


  • Cape Town, Western Cape, South Africa Parvana Full time

    Job Opportunity:Parvana is seeking a talented Cyber Security Analyst to join their team. As a member of the Parvana team, you will have the opportunity to work with a reputable provider offering cyber security consulting, technology integration, and managed security services.About the Role:This is an exciting opportunity for a motivated and detail-oriented...

  • Security Analyst

    3 months ago


    Cape Town, South Africa Impact.com Full time

    **Our Company**: If you are looking to join a team where your opinion is valued, your contributions are noticed, and enjoy working with fun and talented people from all over the world then this is the place for you. If you have a desire to work in an organisation that is: - Passionate about its people - Focused on delivering the very best tech to our...

  • IT Security Analyst

    4 months ago


    Cape Town, South Africa Electrum Payments Full time

    **About Electrum**: Electrum is an exciting B2B tech company. We partner with some of South Africa’s biggest household names, enabling them to open up their customers’ access to payments and digital goods and services. We love that the projects we work on touch the lives of millions of South Africans every day, making a real difference. - We hire the...


  • Cape Town, South Africa DigiCert, Inc. Full time

    at DigiCert Cape Town ABOUT DIGICERT We’re a leading, global security authority that’s disrupting our own category. Our encryption is trusted by the major ecommerce brands, the world’s largest companies, the major cloud providers, entire country financial systems, entire internets of things and even down to little things like surgically embedded...


  • Cape Town, South Africa DigiCert Full time

    **ABOUT DIGICERT** We're a leading, global security authority that's disrupting our own category. Our encryption is trusted by the major ecommerce brands, the world's largest companies, the major cloud providers, entire country financial systems, entire internets of things and even down to little things like surgically embedded pacemakers. We help companies...


  • Cape Town, South Africa Achievement Awards Group (Pty) Ltd Full time

    Description **Purpose of the role**: The information security analyst, a dedicated and skilled professional, collaborates with teams to design and implement security systems that protect the computer network. With a keen eye for detail, they ensure that the security systems are effective in safeguarding against cyber-attacks. As an information analyst for...


  • Cape Town, South Africa RMV Solutions Pty Ltd Full time

    IT Support - Tier 2 Desktop Support Engineer Cape Town - Southern Suburbs Salary R14,000 to R18,000 per month based on experience. **Job Description**: **Duties & Responsibilities**: Ensure that all calls and tickets are answered and resolved within the Company SLA agreement. Regularly check and update all calls and tickets. Act on reassigned calls and...


  • Cape Town, South Africa RMV Solutions Pty Ltd Full time

    IT Support - Tier 2 Desktop Support Engineer Cape Town - Southern Suburbs Salary R14,000 to R20,000 per month based on experience. **Job Description**: **Duties & Responsibilities**: Ensure that all calls and tickets are answered and resolved within the Company SLA agreement. Regularly check and update all calls and tickets. Act on reassigned calls and...


  • Cape Town, South Africa Hamilton Barnes Associates Full time

    700,000 Cape Town or Johannesburg Permanent Do you aspire to lead as a Vulnerability Analyst? You'll find compelling benefits with this role: - You'll become an integral part of a large Cyber Security Consultancy as they expand their Vulnerability Management team. - Join a dynamic, growing team of analysts across three tiers. - You'll receive...