Cyber Security Analyst

3 weeks ago


Johannesburg, South Africa Cloudtrace Pty Ltd Full time

**The Role**

We are looking for a SOC Analyst to become part of our rapidly expanding team protecting our clients from cyber security threats. This is primarily a blue team role with additional exposure and involvement to penetration testing techniques and tools in order to validate security exposures detected by our attack surface management platform.

Our philosophy is that solid defence requires intimate knowledge of offensive tactics, with our managed security service designed to ensure our analysts are across the latest attack techniques. This approach, combined with our cloud security expertise allows us to provide our clients with the highest level of protection for their digital assets.

You will get the opportunity to work with government, start-up and enterprise clients as part of a passionate and experienced security team; You will also be provided with training and support for Offensive Security Certified Professional (OSCP) certification if that is not yet held.

**Your Responsibilities**

We monitor our client’s systems both internally and externally to ensure we provide proactive response to potential security issues and detect any threats that have breached security controls.

A best of breed cloud-based SIEM is used to ingest and analyse events from client environments, in which we use our cloud security knowledge in conjunction with the MITRE ATT&CK® Cloud Matrix to detect attacks from highly skilled adversaries. In this roll you will respond to alerts within our established SLAs and investigate complex attack chains to ensure breaches are rapidly discovered and contained.

Our attack surface management service includes hourly reconnaissance and exposure testing across our client internet attack surface. Using penetration testing techniques, you will also review new endpoints discovered by our platform and validate any security exposures as soon as they are detected.

Your average day will include the following activities:
**Investigation and response to client SIEM alerts**
- Ownership through to resolution of managed SIEM alerts
- Liaison with clients to provide updates on investigation status
- Incident closure once appropriate action has been taken
- Tuning of client SIEM rules to reduce false positive rate

**Monitoring of client digital attack surface exposures**
- Ownership through to resolution of customer impacting exposures
- Liaison with clients to provide updates on exposure status
- Escalation to senior resources for complex exposures
- Closure of exposures once appropriate action has been taken
- Review of new assets discovered by the attack surface management platform

**Client report writing**
- Issuing of periodic cyber security reports for managed service clients

**Managed security service projects**
- Onboarding of new clients to managed services platforms
- Integration of new log sources for existing managed SIEM clients
- Development of managed incident response playbooks
- Other cyber security project work as required

**Your Experience**

3+ years’ experience as a SOC analyst, Penetration Tester, or relevant field

**Your Skills**

The following technical skills are required to fulfil the responsibilities of the role:

- Understanding of common internet protocols (e.g. TCP/IP, DNS, HTTP, TLS)
- Ability to analyse intercepted HTTP requests and identify basic security issues
- Familiarity with public cloud environments (e.g. AWS, Azure and GCP)
- Familiarity and demonstrated understanding of the Cyber Kill Chain and/or MITRE ATT&CK Framework
- Understanding and experience working with SIEM and Vulnerability management tools
- Proficiency with common penetration testing tools (e.g. Burp Suite, Kali Linux, Metasploit)
- Strong understanding of Windows, UNIX, and Linux Operating Systems
- Formal training and certification in an IT security related area, OSCP, SANS, CompTIA is desired but not essential

The role requires strong written communication skills for reporting on test findings and liaising with clients on validated exposures. The ability to manage time effectively is essential as testing engagements are typically delivered within a set timeframe and our CST service provides service level agreements for validating detected security exposures. The most important requirement however is a passion for learning about how systems are compromised, and security exploits are developed.

**Job Types**: Full-time, Permanent

Ability to commute/relocate:

- Johannesburg, Gauteng: Reliably commute or planning to relocate before starting work (required)

**Experience**:

- Security Analyst: 3 years (required)

**Language**:

- English (required)

Shift availability:

- Day Shift (required)
- Night Shift (required)



  • Johannesburg, South Africa Numata Business IT Full time

    Service Desk Engineers provide IT end-user support on variouscomponents of an IT environment, including but not limited to, hardwaresupport, software support and network support. Being the first point of contactfor clients, you are expected to be professional, helpful, and to provideassistance with a sense of urgency, regardless of the level of incident....


  • Johannesburg, South Africa Telebest Full time

    Requirements:5 years of experience in Cybersecurity, engineering, or security vulnerability remediationIn-depth knowledge of MS Azure security platform (MS Intune / DRM / O365 Security)In-depth knowledge of Firewalls and Malicious Code Defence including APTKnowledge of Cybersecurity technical assessments, standards, tools, and processesExtensive knowledge of...


  • Johannesburg, South Africa SNG GrantThornton Full time

    **Responsibilities**: - Manage and lead a team of cyber security professionals; - Undertake project planning, execution and management of cyber security assignments; - Manage and or perform cybersecurity managed services assignments; - Form partnerships with cybersecurity third parties and OEMs - Manage Third Parties and OEMs and partnerships; - Manage and...

  • Cyber Security

    5 days ago


    Johannesburg, South Africa Recruitment Matters Africa Full time

    Our client is looking for a Cyber Security To play a pivotal role in ensuring the delivery of a high quality, accurate and timely professional service to the company by ensuring successful completion of assigned Cyber Security related audit engagements from start to finish, inclusive of preplanning and wrap up activities. **Responsibilities**: - Manage the...


  • Johannesburg, South Africa Exclusively Remote Full time

    Experienced IT Support Specialists skilled Cyber SecurityWe are seeking skilled Cyber Security Support Specialists to join our clients dynamic team. As a Cyber Security Support Specialist, you will be responsible for providing technical support and assistance to ensure then integrity, confidentiality, and availability of our organization's information...


  • Johannesburg, South Africa HR Genie Full time

    The role of the Cybersecurity Consultant includes contribution to technical insights relevant to client engagements and internal projects. Actively establish, maintain and strengthen internal and external relationships. Execution of cybersecurity engagements. The Cybersecurity Senior Consultant will be responsible for the following key activities to achieve...


  • Johannesburg, South Africa Isilumko Staffing Full time

    A top company in the Energy and Chemical Industry is seeking a highly skilled and experienced Senior IT Auditor with a strong background in Cyber Security to join their dynamic team. As a Senior IT Auditor - Cyber Security, you will play a key role in evaluating and enhancing the security of our IT systems and processes. Key Responsibilities:Cyber Security...

  • Cyber Security

    24 hours ago


    Johannesburg, South Africa The Vocation Station Full time

    **Cyber Security (SOC) Analyst (mid & senior level)** **_ **_We do have a great company culture with a hybrid / remote work policy_** The Nclose MDR (Managed, Detection & Response) Team is growing at a rapid rate and we are looking to add some more awesome, **experienced **team players! This is to build our mid and senior level to assist with the juniors...


  • Johannesburg, South Africa Tower Group Full time

    **Cyber Security Specialist **required for a **Contract opportunity** in Midrand. This role will provide security assurance, guidance and support to high profile projects according to company defined policies and requirements, best practice and local/international standards (PCI, SOX, ISO27001, GDPR, POPIA and Cyber Crime Bill of 2015) relevant to the...


  • City of Johannesburg, Gauteng, South Africa Redherd Full time

    Our client is a South African established **Cyber Security Company**, who specialises in **Evaluating security structure**, **Revealing threat vectors** and Constructing powerful defensive frameworks/structures against ongoing cyber attacks. In this role you will work as a **Junior Cyber Security Consultant**, not only attacking but also defending systems,...

  • Cyber Security Pm

    5 days ago


    Johannesburg, South Africa Control Risks Full time

    This role will be responsible for the implementation of Control Risks Cyber Transformation Program acting as the primary Project Manager and Program Lead. This program consists of 8 key projects including Cyber Compliance, Security Incident Management, Asset Management, Cyber Recovery, Identity Access Management, Crisis Management and Network...


  • City of Johannesburg, Gauteng, South Africa Redherd Full time

    Our client is a South African established **Cyber Security Company**, who specialises in **Evaluating security structure**, **Revealing threat vectors** and Constructing powerful defensive frameworks/structures against ongoing cyber attacks. As a **Senior Consultant** in the field of cyber security, you will take on various roles. Consultants in this field...


  • Johannesburg, South Africa Boardroom Appointments Full time

    **Key purpose**: As a member of the Global IT Team**, **you will help develop and maintain the cyber security program and serve as the de facto technical security expert. This role is responsible to provide support and oversight to internal and external teams to ensure incidents and threats are properly handled. **Duties and responsibilities**: - Support...


  • Johannesburg, South Africa Telebest Full time

    Our client has an opportunity available for an Information Security Analyst.Requirements:5 years’ experience within either an Information Security position or Cybersecurity, which include protection against social engineering, or security vulnerability remediation, of which:2 years’ IT administration experience.2 years’ Ethical Hacking...


  • Johannesburg, South Africa Isilumko Staffing Full time

    Manage and execute IT audits with a specific focus on information and cyber security in order to mitigate information management and cyber security risks impacting operations and to provide subject matter expertise. Manage audit budgets and resource allocations on assigned audit tasks and ensure timely reporting. Monitor the quality of executed audits.


  • Johannesburg, South Africa HR Genie Full time

    The role of the Cybersecurity Consultant includes contribution to technical insights relevant to client engagements and internal projects. Actively establish, maintain and strengthen internal and external relationships. Execution of cybersecurity engagements. The Cybersecurity Senior Consultant will be responsible for the following key activities to achieve...


  • Johannesburg, South Africa Nedbank Full time

    **Job Classification** - **REQ: 131922 - Refilwe Falatsi**: - **Closing Date: 15 March 2024**: - **Division: Wealth Centre | Risk**: - **Employment Equity Statement: Preference will be given to Individuals from Underrepresented Groups.** - Job Family- Information Technology - Career Stream- It Risk - Leadership Pipeline- Manage Self: Expert - FAIS...


  • Johannesburg, South Africa Absa Bank Limited Full time

    Bring your possibility to life! Define your career with us - With over 100 years of rich history and strongly positioned as a local bank with regional and international expertise, a career with our family offers the opportunity to be part of this exciting growth journey, to reset our future and shape our destiny as a proudly African group.Job Summary The...


  • Johannesburg, South Africa Nedbank Full time

    **Requisition Details & Talent Acquisition Contact** - REQ 132809- Tshego Semenya- Location: Johannesburg- Closing date: 15 March 2024**Cluster** - Group Risk**Career Stream** - It Risk **Leadership Pipeline** - Manage Self: Technical **Position** - Cyber Security Awareness Co-ordinator**Job Purpose** - To provide a support function to the Cybersecurity...

  • Project Manager

    7 days ago


    Johannesburg, South Africa Boardroom Appointments Full time

    **Key purpose**: The role provides monitoring and reporting support during the project management lifecycle, including project scheduling, budgeting, planning and control. The role is also required to manage the project scope, the project team and resources, the project budget, and the success or failure of key projects when required. **Duties and...