Senior Specialist: Cybersecurity Infrastructure
2 weeks ago
**ROLE PURPOSE**
As part of the Customer-facing Nexio SOC team, the Senior Specialist: Cybersecurity Infrastructure Support will identify, analyze and react to security incidents, events, and threats using a reliable set of operating processes and SIEM technologies such as Azure Sentinel, or QRadar, or ArcSight. The Senior Specialist: Cybersecurity Infrastructure Support will support the architecture, deployment, management, and maintenance of these SIEM platforms. The Senior Specialist also oversees the extensive work with Security Information and Event Management (SIEM) platforms, ensuring their stability and efficient operation.
**ROLE REQUIREMENT**
- Is familiar with the tactical and long-term vision across the Security function.
- Sets technical platform architectural direction.
- Adheres to the standard operating procedure and playbooks in the SOC
- Direct impact on the SOC performance.
- Impacts on customer satisfaction and confidence in the SOC Service and service level performance.
- Provides Cybersecurity Infrastructure leadership to customers and SOC Team.
- Provides technical guidance and coaching to SOC Teams.
- Gives regular, comprehensive, and constructive feedback to the team.
- Proactively seeks feedback from team members and deals constructively with any criticism.
- Adjusts management style to get the best from the individuals within the team.
- Delegates work to team members taking into account their capacity, level of skill, and exposure to different types of work and complexity; provides clear instructions and direction, with reasonable deadlines.
- SIEM Management: Monitor the environmental stability of the SIEM platform(s), manage the health of log collection methods, facilitate SIEM change requests, and manage the scheduled SIEM platform upgrades.
- SIEM Architecture Support: Support SIEM architecture changes, tool deployments, and advanced content development. Deploy SIEM hardware and software installations, both on-premise and cloud, and perform system patching and upgrades.
- SIEM Configuration: Responsible for configuration, implementation, testing, and performance enhancements for SIEM technologies, with a preference for ArcSight appliances, Azure Sentinel, or QRadar.
- Documentation: Build and maintain operational documentation to support the SIEM platform(s), write and maintain process documentation, and create, maintain, and implement detailed documentation and standard operating procedures.
- Incident Response: Assist in the response to cybersecurity incidents, providing technical expertise and support.
- Policy Enforcement: Ensure that all systems and networks comply with applicable cybersecurity policies
and standards.
- Support: Provide support on a weekday business hours schedule, also responsible for on-call, extended hour, and weekend support as required by mission or emergency situations.
- Be able to work in a rapid-paced security operations environment.
- Work with systems engineers, enterprise architects, systems administrators and other technical staff on the implementation, testing, deployment and integration of computing systems.
- Interact with users and evaluate vendor products.
- Create, maintain, and implement detailed documentation and maintain standard operating procedures.
- Application of security settings and other commercial best practices such as SIEM Analysis services.
- Application of open source and commercial threat intelligence feeds into the SIEM.
Additional Information:
- Individuals at this level have fully developed knowledge of the business, marketplace and clients. Is recognized as an expert in own area within the organization
- Interprets internal or external business issues and recommends best practices. Provides technical guidance to more junior levels of staff
- Able to build strong interpersonal relationships with peers, brand leaders, and other senior management throughout the company
- Excellent verbal and written communication skills
- Able to align multiple strategies and ideas
- Confident in producing and presenting work
- In-depth understanding of the technologies and industry
**TECHNICAL / PROFESSIONAL COMPETENCIES**
- Adhere to operational processes in the MITRE ATT&CK framework.
- Adhere to the technical methods in SIEM platform.
- Responsible for configuration, implementation, testing, and performance enhancements for SIEM technologies with a preference for ArcSight appliances (loggers, smart connectors, forwarders, ArcMC, and ESM), or Azure Sentinel, or QRadar.
- Work with systems engineers, enterprise architects, systems administrators, and other technical staff on the implementation, testing, deployment, and integration of computing systems.
- Application of security settings and other commercial best practices such as SIEM Analysis services.
- Application of open source and commercial threat intelligence feeds into the SIEM.
**QUALIFICATIONS & EXPERIENCE**
- Grade 12
- Bachelor’s Degree in Computer Science or a
-
Senior Cybersecurity Specialist
1 day ago
Midrand, Gauteng, South Africa Profile Personnel Full timeProfile Personnel is a dynamic company that requires a Senior Cybersecurity Specialist to join our team. The successful candidate will have a proven track record in designing and implementing robust cybersecurity solutions.This is an exciting opportunity to work with a talented team of IT professionals who share your passion for cybersecurity. You will have...
-
Senior Specialist: Cybersecurity Analyst
1 week ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Senior Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and...
-
Cybersecurity Specialist
6 days ago
Midrand, Gauteng, South Africa Careers at DLK Group Full timeMidrand, South Africa | Posted on 19/12/2024The Cybersecurity Specialist is responsible for safeguarding the organization's digital assets, networks, systems, and data. The role ensures robust security measures are in place to protect against threats, vulnerabilities, and unauthorized access while ensuring compliance with governance and regulatory...
-
Infrastructure Management Specialist
6 days ago
Midrand, Gauteng, South Africa Network Recruitment - Finance Corporate Full timeSenior IT Services Manager Job SummaryWe are seeking a highly skilled and experienced IT professional to join our team as a Senior IT Services Manager. The successful candidate will be responsible for leading our IT services and infrastructure, ensuring the security and stability of our network, and developing and implementing IT strategies to align with...
-
Cybersecurity Operations Specialist
3 days ago
Midrand, Gauteng, South Africa Merafong ICT Full timeCybersecurity Operations SpecialistThe ideal candidate for this role will have 3-5 years of experience in a SOC environment and prior work in IT or cybersecurity. You will be responsible for overseeing security systems and alerts to detect unusual activity, reviewing and investigating alerts generated by security tools, and implementing strategies to contain...
-
Specialist: Cybersecurity Analyst
2 weeks ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and provide...
-
Cybersecurity Specialist
4 days ago
Midrand, Gauteng, South Africa Merafong ICT Full timeAbout the RoleWe are seeking a highly skilled Cybersecurity Specialist to join our team at Merafong ICT. As a key member of our cybersecurity team, you will be responsible for identifying and analyzing sophisticated threats and vulnerabilities using advanced tools and techniques.Key Responsibilities:Advanced Threat Detection: Identify and analyze...
-
Cybersecurity Expert
6 days ago
Midrand, Gauteng, South Africa Careers at DLK Group Full timeAt Careers at DLK Group, we are seeking a Cybersecurity Expert to safeguard our digital assets and protect against threats. The role ensures robust security measures are in place to shield our networks, systems, and data from unauthorized access while maintaining compliance with governance and regulatory frameworks.Key ResponsibilitiesNetwork Security:Design...
-
Senior Specialist: Cybersecurity Threat Analyst
2 weeks ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Threat Analyst will be responsible for monitoring enterprise networks and systems, deterring, identifying, investigating, and mitigating, any and all threats that are directed against those systems regardless of their classification level or type. The Cybersecurity Threat...
-
Cybersecurity Specialist
11 hours ago
Midrand, Gauteng, South Africa Chosen Talent Full timeJob OverviewThe Cybersecurity Specialist role at Chosen Talent involves working in a dynamic security team, reporting to the Operations Manager and COO. This position requires a strong understanding of offensive and defensive security concepts, with a focus on either defensive or offensive components.Key ResponsibilitiesEscalation point for L1...
-
Specialist: Cybersecurity Incident Manager
1 week ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Manager is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Manager is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the organization's network and...
-
Specialist IT Cybersecurity
6 days ago
Midrand, South Africa Nexio Full time**ROLE PURPOSE** **PRIMARY DUTIES AND RESPONSBILITIES- JOB SPECIFIC REQUIREMENTS** Vulnerability Management**: - Oversee regular vulnerability assessments and penetration tests. - Identify, analyse, and prioritise vulnerabilities in the IT environment. - Develop and implement remediation plans to address identified vulnerabilities. **Patch...
-
Infrastructure Development Specialist
1 day ago
Midrand, Gauteng, South Africa Conexus MedStaff Full timeConexus MedStaff invites applications for the position of Infrastructure Development Specialist. The successful candidate will work closely with the African Union Development Agency (AUDA-NEPAD) to develop a Digitalisation Strategy and advise on digital topics within the Infrastructure & Connectivity Division.About the RoleDevelop and implement strategies to...
-
Midrand, South Africa Nexio Full time**ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Manager is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Manager is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the organization's network and...
-
Cloud Infrastructure Security Specialist
1 day ago
Midrand, Gauteng, South Africa Gijima Holdings HR Full timeGijima Holdings HR seeks a highly skilled Cloud Infrastructure Security Specialist to lead our team in delivering cutting-edge IT solutions.Job Description:This role involves the management and maintenance of our global Active Directory cloud infrastructure. You will be responsible for ensuring high availability and highest state-of-the-art security, driving...
-
Information Security Specialist
6 days ago
Midrand, Gauteng, South Africa Careers at DLK Group Full timeCareers at DLK Group is seeking an Information Security Specialist to join our team. As an Information Security Specialist, you will be responsible for protecting our organization's digital assets and networks from threats and unauthorized access.Key ResponsibilitiesNetwork Security:Implement and maintain a robust security posture across our network...
-
Ict Infrastructure Specialist
3 weeks ago
Midrand, South Africa DBSA Full timeThe role of the Infrastructure Specialist is to ensure that the Banks’ Information Communication and Technology infrastructure services are available in line with the Service Level Agreement between the Information Communication and Technology Unit and business. **Key Responsibilities**: - Contribute to the formulation of Request for Proposals, Service...
-
Senior Network Administrator
6 days ago
Midrand, Gauteng, South Africa Network Recruitment - Finance Corporate Full timeIT Services Manager PositionWe are seeking a highly skilled and experienced IT professional to join our team as an IT Services Manager. The successful candidate will be responsible for leading our IT services and infrastructure, ensuring the security and stability of our network, and developing and implementing IT strategies to align with business...
-
Chief Technology Officer
6 days ago
Midrand, Gauteng, South Africa Network Recruitment - Finance Corporate Full timeJob Description: Senior IT Services ManagerWe are seeking a highly skilled and experienced IT professional to join our team as a Senior IT Services Manager. The successful candidate will be responsible for leading our IT services and infrastructure, ensuring the security and stability of our network, and developing and implementing IT strategies to align...
-
Senior IT Infrastructure Manager
3 days ago
Midrand, Gauteng, South Africa American International School of Johannesburg Full timeJob SummaryWe are seeking a highly skilled Senior IT Infrastructure Manager to join our IT team at the American International School of Johannesburg. As a key member of the team, you will be responsible for designing, implementing, and managing IT infrastructure solutions that meet the needs of the school's users.Main ResponsibilitiesDesign and implement IT...