Senior Specialist: Cybersecurity Infrastructure
6 months ago
**ROLE PURPOSE**
As part of the Customer-facing Nexio SOC team, the Senior Specialist: Cybersecurity Infrastructure Support will identify, analyze and react to security incidents, events, and threats using a reliable set of operating processes and SIEM technologies such as Azure Sentinel, or QRadar, or ArcSight. The Senior Specialist: Cybersecurity Infrastructure Support will support the architecture, deployment, management, and maintenance of these SIEM platforms. The Senior Specialist also oversees the extensive work with Security Information and Event Management (SIEM) platforms, ensuring their stability and efficient operation.
**ROLE REQUIREMENT**
- Is familiar with the tactical and long-term vision across the Security function.
- Sets technical platform architectural direction.
- Adheres to the standard operating procedure and playbooks in the SOC
- Direct impact on the SOC performance.
- Impacts on customer satisfaction and confidence in the SOC Service and service level performance.
- Provides Cybersecurity Infrastructure leadership to customers and SOC Team.
- Provides technical guidance and coaching to SOC Teams.
- Gives regular, comprehensive, and constructive feedback to the team.
- Proactively seeks feedback from team members and deals constructively with any criticism.
- Adjusts management style to get the best from the individuals within the team.
- Delegates work to team members taking into account their capacity, level of skill, and exposure to different types of work and complexity; provides clear instructions and direction, with reasonable deadlines.
- SIEM Management: Monitor the environmental stability of the SIEM platform(s), manage the health of log collection methods, facilitate SIEM change requests, and manage the scheduled SIEM platform upgrades.
- SIEM Architecture Support: Support SIEM architecture changes, tool deployments, and advanced content development. Deploy SIEM hardware and software installations, both on-premise and cloud, and perform system patching and upgrades.
- SIEM Configuration: Responsible for configuration, implementation, testing, and performance enhancements for SIEM technologies, with a preference for ArcSight appliances, Azure Sentinel, or QRadar.
- Documentation: Build and maintain operational documentation to support the SIEM platform(s), write and maintain process documentation, and create, maintain, and implement detailed documentation and standard operating procedures.
- Incident Response: Assist in the response to cybersecurity incidents, providing technical expertise and support.
- Policy Enforcement: Ensure that all systems and networks comply with applicable cybersecurity policies
and standards.
- Support: Provide support on a weekday business hours schedule, also responsible for on-call, extended hour, and weekend support as required by mission or emergency situations.
- Be able to work in a rapid-paced security operations environment.
- Work with systems engineers, enterprise architects, systems administrators and other technical staff on the implementation, testing, deployment and integration of computing systems.
- Interact with users and evaluate vendor products.
- Create, maintain, and implement detailed documentation and maintain standard operating procedures.
- Application of security settings and other commercial best practices such as SIEM Analysis services.
- Application of open source and commercial threat intelligence feeds into the SIEM.
Additional Information:
- Individuals at this level have fully developed knowledge of the business, marketplace and clients. Is recognized as an expert in own area within the organization
- Interprets internal or external business issues and recommends best practices. Provides technical guidance to more junior levels of staff
- Able to build strong interpersonal relationships with peers, brand leaders, and other senior management throughout the company
- Excellent verbal and written communication skills
- Able to align multiple strategies and ideas
- Confident in producing and presenting work
- In-depth understanding of the technologies and industry
**TECHNICAL / PROFESSIONAL COMPETENCIES**
- Adhere to operational processes in the MITRE ATT&CK framework.
- Adhere to the technical methods in SIEM platform.
- Responsible for configuration, implementation, testing, and performance enhancements for SIEM technologies with a preference for ArcSight appliances (loggers, smart connectors, forwarders, ArcMC, and ESM), or Azure Sentinel, or QRadar.
- Work with systems engineers, enterprise architects, systems administrators, and other technical staff on the implementation, testing, deployment, and integration of computing systems.
- Application of security settings and other commercial best practices such as SIEM Analysis services.
- Application of open source and commercial threat intelligence feeds into the SIEM.
**QUALIFICATIONS & EXPERIENCE**
- Grade 12
- Bachelor’s Degree in Computer Science or a
-
Senior Specialist: Cybersecurity Analyst
6 months ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Senior Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and...
-
Specialist: Cybersecurity Analyst
5 months ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and...
-
Specialist: Cybersecurity Analyst
6 months ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and provide...
-
Cybersecurity Incident Management Specialist
6 months ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Management Specialist is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Management Specialist is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the...
-
Cybersecurity Threat Hunter
55 minutes ago
Midrand, Gauteng, South Africa Quarphix Full timeAbout the RoleWe are seeking a skilled Cybersecurity Threat Hunter to join our team at Quarphix. The successful candidate will have a strong background in security engineering and experience with threat hunting, intelligence, and incident response.Key ResponsibilitiesVulnerability Assessment and Penetration TestingThe Cybersecurity Threat Hunter will design,...
-
Senior Specialist: Cybersecurity Threat Analyst
6 months ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Threat Analyst will be responsible for monitoring enterprise networks and systems, deterring, identifying, investigating, and mitigating, any and all threats that are directed against those systems regardless of their classification level or type. The Cybersecurity Threat...
-
Midrand, Gauteng, South Africa Nexio Full time**Job Summary:**We are seeking an experienced Cybersecurity Specialist to join our team at Nexio. As a key member of our Cybersecurity team, you will be responsible for detecting, responding to, investigating, and mitigating cyber threats and incidents that occur within our organization's network and information systems.Responsibilities:Detect and respond to...
-
Specialist: Cybersecurity Threat Analyst
5 months ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Threat Analyst will be responsible for monitoring enterprise networks and systems, deterring, identifying, investigating, and mitigating, any and all threats that are directed against those systems regardless of their classification level or type. The Cybersecurity Threat...
-
Senior Network Infrastructure Specialist
4 weeks ago
Midrand, Gauteng, South Africa IOCO Full timeWe are seeking a highly skilled Senior Network Infrastructure Specialist to join our team at IOCO. This role will play a critical part in ensuring the reliability, security, and performance of our network infrastructure.Key Responsibilities:Design, implement, and maintain high-performance network solutions to meet customer requirements.Collaborate with...
-
Senior Specialist â Cyber Security
1 week ago
Midrand, South Africa A 1L Realization (Pty) Ltd Full timeJob DescriptionAs a Senior Specialist in Cyber Security, you will play a key role in safeguarding our organization's digital assets. Your expertise will be vital in ensuring the confidentiality, integrity, and availability of our information systems. This role requires a deep understanding of security operations, solutions, and architectural principles...
-
Senior Specialist â Cyber Security
1 week ago
Midrand, South Africa A 1L Realization (Pty) Ltd Full timeJob Description As a Senior Specialist in Cyber Security, you will play a key role in safeguarding our organization's digital assets. Your expertise will be vital in ensuring the confidentiality, integrity, and availability of our information systems. This role requires a deep understanding of security operations, solutions, and architectural principles...
-
Specialist: Cybersecurity Incident Manager
6 months ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Manager is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Manager is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the organization's network and...
-
Midrand, Gauteng, South Africa Nexio Full timeJob Summary:We are seeking a highly skilled Cybersecurity Threat Response Specialist to join our team at Nexio. This role plays a critical part in protecting our organization's network and information systems from cyber threats.Key Responsibilities:Develop and implement effective incident response plans to mitigate the impact of security breaches.Analyze...
-
Midrand, South Africa Jobted ZA C2 Full timeJob DescriptionAs a Senior Specialist in Cyber Security, you will play a key role in safeguarding our organization's digital assets. Your expertise will be vital in ensuring the confidentiality, integrity, and availability of our information systems. This role requires a deep understanding of security operations, solutions, and architectural principles...
-
Cybersecurity Professional
3 weeks ago
Midrand, Gauteng, South Africa Carlysle Human Capital Full timeAbout the RoleCarlysle Human Capital is seeking a highly skilled Cybersecurity Professional to join our team. As an Information Security Analyst, you will play a crucial role in protecting our clients' infrastructure and data from emerging threats.Key ResponsibilitiesMonitor and manage network, endpoint, and security operations within the SANRAL Data...
-
Specialist: Cybersecurity Incident Handling Analyst
5 months ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Manager is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Manager is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the organization's network and...
-
Cybersecurity Specialist
4 weeks ago
Midrand, Gauteng, South Africa DPT Recruitment Full timeDPT Recruitment is seeking a highly skilled Cybersecurity Specialist to join our team. As our ICT Security Administrator, you will play a crucial role in safeguarding our organization's digital assets.Key Responsibilities:Security System Management:Configure, monitor, and fine-tune security tools (firewalls, antivirus software, intrusion detection/prevention...
-
Senior Data Centre Infrastructure Specialist
2 days ago
Midrand, Gauteng, South Africa Quarphix Full timeJob DescriptionWe are seeking a highly skilled Senior Data Centre Infrastructure Specialist to join our team at Quarphix. As a key member of our IT department, you will be responsible for ensuring the smooth operation and management of our data centre infrastructure.About YouA minimum of 10 years of experience in data centre operations, server management, or...
-
Network Infrastructure Specialist
1 month ago
Midrand, Gauteng, South Africa Data Centrix Full timeCritical RequirementsWe are seeking a highly skilled Network Infrastructure Specialist to join our team at Data Centrix.Key Skills and QualificationsA bachelor's degree or equivalent IT qualification is preferred.Hold a network certification, such as CCNP or HPE ACE.Security certification in Cisco Fortinet or SOPHOS is a must.Technical certifications in...
-
Network Infrastructure Specialist
4 weeks ago
Midrand, Gauteng, South Africa Manpower Group SA (Pty) Ltd Full timeJob Title: Network Infrastructure SpecialistJob Summary:We are seeking a highly skilled Network Infrastructure Specialist to join our team. The ideal candidate will have a strong background in software-defined networking, routing, and switching.Key Responsibilities:Provide day-to-day network support for branch, ATM, and 3rd party links and...