Security Analyst- Tier 2
4 months ago
JOB PURPOSE
This position will assist the SecOps Tech Lead and Head of Security Operations in enhancing the SOC & SOAR operations within Kocho. The Security Analyst will collaborate closely with other teams to build services and solutions that align with security best practices and client assurance requirements. This includes, but is not limited to, the use of Microsoft Sentinel, Microsoft Defender for Endpoint, Microsoft Defender for Cloud, and all other MS Security Stacks. The primary responsibility of the Security Analyst role is to carry out operational SOC and SOAR activities as directed by the SecOps Tech Lead and Head of Security Operations. This includes monitoring and responding to incidents and alerts
within Microsoft Sentinel.
You will be required to, work with members of the Security Operations Team to ensure all SOC & SOAR operational tasks
are completed on time and work tickets updated / closed with satisfactory technical details included, and where appropriate escalate suspicious / malicious events to senior team members and Kocho or client incident response personnel in order to identify, contain and remediate active threats. You will also be required to develop and update operational documentation, as necessary. Security Analysts will be comfortable engaging at both technical and non-technical levels, contributing as required in technical workshops and client briefings / service reviews. You will be working in an incredibly passionate environment, with great people in which you can actively contribute to develop and deliver our SOC & SOAR capability.
KEY RESPONSIBILITIES OF THE ROLE
Strategy and Leadership:
- This is not a leadership role though you will be expected to mentor and support Junior Colleagues.
Technical Specialism:
- Advanced knowledge and experience with Microsoft Sentinel, Microsoft Defender for Endpoint, and Microsoft Defender
for CloudFamiliarity with other Microsoft Security Stacks and a broad understanding of common corporate technologies.
- Proficient in using KQL (Kusto Query Language) for threat hunting and other security-related investigations.
- Experience in IT administration, preferably within a Security Operations Center (SOC) environment.
- Experience in incident response and handling, including detailed incident reporting and documentation.
- Ability to analyze complex data and security logs to identify cyber security threats.Ability to communicate in
both technical and non-technical terms, tailoring approach to the audience.
- Self-motivated learner of technologies and methodologies to support best practice.
- Actively contributing to knowledge sharing across the business.
Security Operations:
- Act as an operational point of contact during significant cyber security events
- Assist in the support of major incident handling within the SOC, and where applicable for clients
- Provide support and guidance regarding monitoring activities
- Provide “hands on” resource, working to ensure Kocho objectives and client SLA targets are achieved.
- Provide input and support for stakeholder communication.
- Assist and support the implementation of security controls, threat protection etc for both Kocho and it’s clients
- Support other Security Analysts and clients on rules/policies/filters/use cases and SOC tooling.
- Assist with the implementation of improvements as part of on-going service enhancement or “lessons learned” following incident investigation (cause and affect).
- Assist in the review of incident closures, post incident reports and act upon improvements identified
- Undertake Threat Hunting, to include the development of queries to support improvements to the identification of undetected threats on client estates.
- Contribute to team development through knowledge sharing, briefing and production of guides, incident scenarios and playbooks.
- Show flexibility in developing knowledge of supporting areas and performing their responsibilities during times of operational need.
- Maintain currency in relation to security concepts, tools and best practices
- Willingness to work shifts (including unsociable hours and bank holidays) as part of 24x7 team working.
Business Operations:
- Ability to work effectively with internal systems such as Kimble, Teams, SharePoint and Office 365.
- Effective personal resource and time management with a commercial approach to work.
- Working remotely, or on site
Delivery and KPIs:
- Contribute to the full lifecycle of client solutions and service offerings, from proposition through to delivery and support and maintenance
- Communicate technical solutions in a clear, and concise approach for a variety of audiences from both a technical and business background.
- Contribute to well written and professional documentation, performance, and client reports.
- Assist the SecOps lead and Head of Security Operations in development of new service offerings, procedures, techniques, and policies.
- Assist in the recruit
-
Security Analyst
6 months ago
Cape Town, South Africa Capital Edge Recruitment Full timeJoin a team of Security Analyst (SOC Tier 2) at an international IT MSP, where you’ll play a pivotal role in enhancing their Security Operations Center (SOC) and Security Orchestration, Automation, and Response (SOAR) operations. Collaborate with talented teams to build services and solutions that align with security best practices and client assurance...
-
Security Analyst
4 weeks ago
Cape Town, South Africa QCIC group Full timeSecurity Analyst (Consultant Level)– Tier 2 Location: South Africa (Preferably Cape Town) Contract: Permanent About the role Embedded with one of our global clients you will work within the security team to proactively and innovatively prevent or mitigate risk while protecting company assets and be prepared to respond appropriately and professionally...
-
T1 Security Analyst
6 months ago
Cape Town, South Africa Job Crystal Full timeA company providing secure cloud transformation by combining Microsoft cloud technology with cyber security, and managed services is looking for a T1 Security Analyst in Cape Town. This role will support the Tier 2 & Tier 3 Security Analysts in developing SOC & SOAR functions within the business, working closely with other teams as required to build...
-
L2 Soc/security Analyst
6 months ago
Cape Town, South Africa LRI Invest Full timeDescription L2 SOC/Security Analyst Cape Town Summary of the position Outline of main duties and responsibilities The main responsibilities of the role will be: - Correlating data from various sources to assess the impact on critical systems or data sets. - Providing guidance on remediation and supporting the development of new analytic methods for...
-
Tier 2 IT Technician
6 months ago
Cape Town, South Africa Westech Systems Full time**Tier 2 IT Technician** We are seeking someone who is willing to go the extra mile and that is not a clock watcher as there will be times that you may be required to work outside of standard operating hours. Own reliable transport is a must. Needs to be available immediately! **Salary**: R15,000.00 - R20,000.00 per month Application Question(s): - Are...
-
Security Analyst
6 months ago
Cape Town, South Africa Flexis Full time**SIEM And XDR SOC** Act as a point of escalation for Level 1 and 2 security analysts on incident resolution and containment techniques. - Define, create and maintain SIEM correlation rules, customer build documents, security process and procedures. - Manage, tune, and optimize SIEM tool which includes evaluating existing rules, filters, events and use...
-
Tier 2 PP Technical Support Engineer
3 months ago
Cape Town, South Africa Netsurit Full timeTier 2 Technical Support Engineer Location: Cape Town Model: On-Site Requirements: The IT Services Consultant must have at least 3-5+ years' experience in the IT & Networkingenvironment and must have formal IT qualifications, ideally Microsoft roll-based certifications.A candidate with both the attitude and aptitude to succeed in Server/Network Support,...
-
Senior Mid Tier Technician
6 months ago
Cape Town, South Africa RMV Solutions Pty Ltd Full timeWoodstock R20000 - R30000 **Responsibilities**: Design, develop, and implement customized mid-tier solutions that meet clients security needs Lead and participate in technical discussions and presentations with clients and internal teams Provide technical guidance and mentorship to junior consultants in the team Stay up-to-date with the latest trends...
-
Security Analyst
6 months ago
Cape Town, South Africa Impact.com Full time**Our Company**: If you are looking to join a team where your opinion is valued, your contributions are noticed, and enjoy working with fun and talented people from all over the world then this is the place for you. If you have a desire to work in an organisation that is: - Passionate about its people - Focused on delivering the very best tech to our...
-
Security Operations Analyst
6 months ago
Cape Town, South Africa DigiCert, Inc. Full timeat DigiCert Cape Town ABOUT DIGICERT We’re a leading, global security authority that’s disrupting our own category. Our encryption is trusted by the major ecommerce brands, the world’s largest companies, the major cloud providers, entire country financial systems, entire internets of things and even down to little things like surgically embedded...
-
Security Operations Analyst
6 months ago
Cape Town, South Africa DigiCert Full time**ABOUT DIGICERT** We're a leading, global security authority that's disrupting our own category. Our encryption is trusted by the major ecommerce brands, the world's largest companies, the major cloud providers, entire country financial systems, entire internets of things and even down to little things like surgically embedded pacemakers. We help companies...
-
IT Security Analyst
6 months ago
Cape Town, South Africa Electrum Payments Full time**About Electrum**: Electrum is an exciting B2B tech company. We partner with some of South Africa’s biggest household names, enabling them to open up their customers’ access to payments and digital goods and services. We love that the projects we work on touch the lives of millions of South Africans every day, making a real difference. - We hire the...
-
Bookkeeper Financial Analyst
3 weeks ago
Cape Town, Western Cape, South Africa Forum Security Solutions Full timeWe are seeking a skilled Bookkeeper Financial Analyst to join our team at Forum Security Solutions.About the RoleThis is a dynamic position that requires strong bookkeeping principles and analytical skills. The ideal candidate will have 1-2 years of experience in a similar role and be proficient in Pastel Sage, with certification.Key ResponsibilitiesMaintain...
-
Financial Data Analyst Position
2 weeks ago
Cape Town, Western Cape, South Africa Forum Security Solutions Full timeForum Security Solutions is seeking a highly skilled Financial Data Analyst to contribute to the success of our financial operations. Estimated salary: $45,000 - $60,000 per year.About UsWe are a dynamic company that provides innovative security solutions to various industries. Our team is dedicated to delivering exceptional results and building strong...
-
Tier 2 Desk Top Support
6 months ago
Cape Town, South Africa RMV Solutions Pty Ltd Full timeIT Support - Tier 2 Desktop Support Engineer Cape Town - Southern Suburbs Salary R14,000 to R18,000 per month based on experience. **Job Description**: **Duties & Responsibilities**: Ensure that all calls and tickets are answered and resolved within the Company SLA agreement. Regularly check and update all calls and tickets. Act on reassigned calls and...
-
Tier 2 Desk Top Support
6 months ago
Cape Town, South Africa RMV Solutions Pty Ltd Full timeIT Support - Tier 2 Desktop Support Engineer Cape Town - Southern Suburbs Salary R14,000 to R20,000 per month based on experience. **Job Description**: **Duties & Responsibilities**: Ensure that all calls and tickets are answered and resolved within the Company SLA agreement. Regularly check and update all calls and tickets. Act on reassigned calls and...
-
Security Analyst 1
3 weeks ago
Cape Town, South Africa Jhpiego Full timeOverview: Jhpiego is seeking a Security Analyst to support its enterprise network systems. The Security Analyst is responsible for monitoring security platforms; triaging and assisting with remediating security incidents; monitoring, analysis, and reporting of the network infrastructure at Jhpiego offices; ensuring systems are up-to-date; documenting...
-
T2 Security Analyst
6 months ago
Cape Town, South Africa Job Crystal Full timeA company providing secure cloud transformation by combining Microsoft cloud technology with cyber security, and managed services is looking for a T2 Security Analyst in Cape Town to assist the SecOps Tech Lead and Head of Security Operations in enhancing the SOC & SOAR operations within the company. The Security Analyst will collaborate closely with other...
-
Cyber Security Analyst
6 months ago
Cape Town, South Africa Exclusively Remote Full timeOne of our US based clients are looking for experienced Cyber Security Analyst/Specialist with a strong background in Cyber Security and prior experience working for a Managed Service Provider (MSP). Responsibilities: - **Cyber Security**: Implement and manage cyber security solutions to safeguard clients' IT environments from potential threats,...
-
Senior Vulnerability Analyst
6 months ago
Cape Town, South Africa Hamilton Barnes Associates Full time700,000 Cape Town or Johannesburg Permanent Do you aspire to lead as a Vulnerability Analyst? You'll find compelling benefits with this role: - You'll become an integral part of a large Cyber Security Consultancy as they expand their Vulnerability Management team. - Join a dynamic, growing team of analysts across three tiers. - You'll receive...