Security Analyst- Tier 2
5 months ago
JOB PURPOSE
This position will assist the SecOps Tech Lead and Head of Security Operations in enhancing the SOC & SOAR operations within Kocho. The Security Analyst will collaborate closely with other teams to build services and solutions that align with security best practices and client assurance requirements. This includes, but is not limited to, the use of Microsoft Sentinel, Microsoft Defender for Endpoint, Microsoft Defender for Cloud, and all other MS Security Stacks. The primary responsibility of the Security Analyst role is to carry out operational SOC and SOAR activities as directed by the SecOps Tech Lead and Head of Security Operations. This includes monitoring and responding to incidents and alerts
within Microsoft Sentinel.
You will be required to, work with members of the Security Operations Team to ensure all SOC & SOAR operational tasks
are completed on time and work tickets updated / closed with satisfactory technical details included, and where appropriate escalate suspicious / malicious events to senior team members and Kocho or client incident response personnel in order to identify, contain and remediate active threats. You will also be required to develop and update operational documentation, as necessary. Security Analysts will be comfortable engaging at both technical and non-technical levels, contributing as required in technical workshops and client briefings / service reviews. You will be working in an incredibly passionate environment, with great people in which you can actively contribute to develop and deliver our SOC & SOAR capability.
KEY RESPONSIBILITIES OF THE ROLE
Strategy and Leadership:
- This is not a leadership role though you will be expected to mentor and support Junior Colleagues.
Technical Specialism:
- Advanced knowledge and experience with Microsoft Sentinel, Microsoft Defender for Endpoint, and Microsoft Defender
for CloudFamiliarity with other Microsoft Security Stacks and a broad understanding of common corporate technologies.
- Proficient in using KQL (Kusto Query Language) for threat hunting and other security-related investigations.
- Experience in IT administration, preferably within a Security Operations Center (SOC) environment.
- Experience in incident response and handling, including detailed incident reporting and documentation.
- Ability to analyze complex data and security logs to identify cyber security threats.Ability to communicate in
both technical and non-technical terms, tailoring approach to the audience.
- Self-motivated learner of technologies and methodologies to support best practice.
- Actively contributing to knowledge sharing across the business.
Security Operations:
- Act as an operational point of contact during significant cyber security events
- Assist in the support of major incident handling within the SOC, and where applicable for clients
- Provide support and guidance regarding monitoring activities
- Provide “hands on” resource, working to ensure Kocho objectives and client SLA targets are achieved.
- Provide input and support for stakeholder communication.
- Assist and support the implementation of security controls, threat protection etc for both Kocho and it’s clients
- Support other Security Analysts and clients on rules/policies/filters/use cases and SOC tooling.
- Assist with the implementation of improvements as part of on-going service enhancement or “lessons learned” following incident investigation (cause and affect).
- Assist in the review of incident closures, post incident reports and act upon improvements identified
- Undertake Threat Hunting, to include the development of queries to support improvements to the identification of undetected threats on client estates.
- Contribute to team development through knowledge sharing, briefing and production of guides, incident scenarios and playbooks.
- Show flexibility in developing knowledge of supporting areas and performing their responsibilities during times of operational need.
- Maintain currency in relation to security concepts, tools and best practices
- Willingness to work shifts (including unsociable hours and bank holidays) as part of 24x7 team working.
Business Operations:
- Ability to work effectively with internal systems such as Kimble, Teams, SharePoint and Office 365.
- Effective personal resource and time management with a commercial approach to work.
- Working remotely, or on site
Delivery and KPIs:
- Contribute to the full lifecycle of client solutions and service offerings, from proposition through to delivery and support and maintenance
- Communicate technical solutions in a clear, and concise approach for a variety of audiences from both a technical and business background.
- Contribute to well written and professional documentation, performance, and client reports.
- Assist the SecOps lead and Head of Security Operations in development of new service offerings, procedures, techniques, and policies.
- Assist in the recruit
-
Security Analyst
7 months ago
Cape Town, South Africa Capital Edge Recruitment Full timeJoin a team of Security Analyst (SOC Tier 2) at an international IT MSP, where you’ll play a pivotal role in enhancing their Security Operations Center (SOC) and Security Orchestration, Automation, and Response (SOAR) operations. Collaborate with talented teams to build services and solutions that align with security best practices and client assurance...
-
Security Analyst
2 months ago
Cape Town, South Africa QCIC group Full timeSecurity Analyst (Consultant Level)– Tier 2 Location: South Africa (Preferably Cape Town) Contract: Permanent About the role Embedded with one of our global clients you will work within the security team to proactively and innovatively prevent or mitigate risk while protecting company assets and be prepared to respond appropriately and professionally...
-
T1 Security Analyst
7 months ago
Cape Town, South Africa Job Crystal Full timeA company providing secure cloud transformation by combining Microsoft cloud technology with cyber security, and managed services is looking for a T1 Security Analyst in Cape Town. This role will support the Tier 2 & Tier 3 Security Analysts in developing SOC & SOAR functions within the business, working closely with other teams as required to build...
-
L2 Soc/security Analyst
7 months ago
Cape Town, South Africa LRI Invest Full timeDescription L2 SOC/Security Analyst Cape Town Summary of the position Outline of main duties and responsibilities The main responsibilities of the role will be: - Correlating data from various sources to assess the impact on critical systems or data sets. - Providing guidance on remediation and supporting the development of new analytic methods for...
-
Information Security Analyst
2 weeks ago
Cape Town, South Africa eSoft Development and Technologies Full timeOne of our clients wants to grow their team and we are looking for an information security analyst. The Information Security Analyst will be responsible for the planning, implementation and execution of daily/weekly/monthly security tasks that ensures that the clients are compliant with the required standards by providing analysis, administration, and...
-
Information Security Analyst
2 weeks ago
Cape Town, South Africa Boardroom Appointments Full time**Key purpose**: The role will require the Information Security Analyst to work closely with clients displaying good client engagement skills with a high level of professionalism. **Duties and responsibilities**: - Complies to all mandated policies, laws and audit requirements - Managed environment is safe and secure Security patch management -...
-
Information Security Analyst
2 weeks ago
Cape Town, South Africa Dimension Data Full timeThe Information Security Analyst will be responsible for the planning, implementation and execution of daily/weekly/monthly security tasks that ensures that the clients are compliant with the required standards by providing analysis, administration, and advisory input. The focus will be on the maintenance of compliance, security, and risk functions in...
-
Tier 1&2 Ict Support Specialist
21 hours ago
Cape Town, South Africa Recruitmentmatters Full timeOur client is looking for a Tier 1&2 ICT Support Specialist to join their team. Resolve user and client issues within SLA. Offer remote and potentially onsite support. Install and configure hardware and software components. Assist with user acceptance testing. Troubleshoot hardware and software issues. Perform root cause analysis. Repair or replace damaged...
-
Information Security Analyst
2 weeks ago
Cape Town, South Africa Maxwell Bett Consulting Full timeThe Information Security Analyst will be responsible for the planning, implementation and execution of daily/weekly/monthly security tasks that ensures that the clients are compliant with the required standards by providing analysis, administration, and advisory input. The focus will be on the maintenance of compliance, security, and risk functions in...
-
Lead Research Analyst
2 days ago
Cape Town, South Africa Black Pen Recruitment Full time**Lead Research Analyst** **(Top Tier Investment Banking/Management Consulting Firm/Cryptocurrency)** Our client is Africa’s portal into the crypto economy. They are building a financial structure that is centralised in crypto exchange, a lending platform, an NFT marketplace, and other products to fully bring Sub-Saharan Africa into the new world of...
-
Senior Mid Tier Technician
7 months ago
Cape Town, South Africa RMV Solutions Pty Ltd Full timeWoodstock R20000 - R30000 **Responsibilities**: Design, develop, and implement customized mid-tier solutions that meet clients security needs Lead and participate in technical discussions and presentations with clients and internal teams Provide technical guidance and mentorship to junior consultants in the team Stay up-to-date with the latest trends...
-
Technical Support Analyst
2 weeks ago
Cape Town, South Africa BVNK Full time**About us**: Headquartered in London, BVNK is on a mission to make banking and payments work for crypto - the crypto market has evolved fast, and traditional finance is yet to catch up. Operating a business in both crypto and fiat today is incredibly difficult, so we've built a business account specifically for crypto businesses, focussing on bridging the...
-
Security Analyst
2 weeks ago
Cape Town, South Africa Qualip Solutions Full timeTechnically focused security analyst as an embedded member of the CIB Security Engineering team Provide security analysis and design input as a member of the CIB Security Engineering team with a focus on establishing the security enablers required by the CIB product engineering community as well as tactical support for teams when needed.The CIB Security...
-
Security Analyst
7 months ago
Cape Town, South Africa Impact.com Full time**Our Company**: If you are looking to join a team where your opinion is valued, your contributions are noticed, and enjoy working with fun and talented people from all over the world then this is the place for you. If you have a desire to work in an organisation that is: - Passionate about its people - Focused on delivering the very best tech to our...
-
IT Security Analyst
7 months ago
Cape Town, South Africa Electrum Payments Full time**About Electrum**: Electrum is an exciting B2B tech company. We partner with some of South Africa’s biggest household names, enabling them to open up their customers’ access to payments and digital goods and services. We love that the projects we work on touch the lives of millions of South Africans every day, making a real difference. - We hire the...
-
Security Operations Analyst
7 months ago
Cape Town, South Africa DigiCert, Inc. Full timeat DigiCert Cape Town ABOUT DIGICERT We’re a leading, global security authority that’s disrupting our own category. Our encryption is trusted by the major ecommerce brands, the world’s largest companies, the major cloud providers, entire country financial systems, entire internets of things and even down to little things like surgically embedded...
-
Security Operations Analyst
7 months ago
Cape Town, South Africa DigiCert Full time**ABOUT DIGICERT** We're a leading, global security authority that's disrupting our own category. Our encryption is trusted by the major ecommerce brands, the world's largest companies, the major cloud providers, entire country financial systems, entire internets of things and even down to little things like surgically embedded pacemakers. We help companies...
-
Tier 2 Desk Top Support
7 months ago
Cape Town, South Africa RMV Solutions Pty Ltd Full timeIT Support - Tier 2 Desktop Support Engineer Cape Town - Southern Suburbs Salary R14,000 to R18,000 per month based on experience. **Job Description**: **Duties & Responsibilities**: Ensure that all calls and tickets are answered and resolved within the Company SLA agreement. Regularly check and update all calls and tickets. Act on reassigned calls and...
-
Security Analyst 1
2 months ago
Cape Town, South Africa Jhpiego Full timeOverview: Jhpiego is seeking a Security Analyst to support its enterprise network systems. The Security Analyst is responsible for monitoring security platforms; triaging and assisting with remediating security incidents; monitoring, analysis, and reporting of the network infrastructure at Jhpiego offices; ensuring systems are up-to-date; documenting...
-
Tier 2 Desk Top Support
7 months ago
Cape Town, South Africa RMV Solutions Pty Ltd Full timeIT Support - Tier 2 Desktop Support Engineer Cape Town - Southern Suburbs Salary R14,000 to R20,000 per month based on experience. **Job Description**: **Duties & Responsibilities**: Ensure that all calls and tickets are answered and resolved within the Company SLA agreement. Regularly check and update all calls and tickets. Act on reassigned calls and...