Information Security Vulnerability Analyst and

2 weeks ago


Johannesburg, South Africa Performanta Group Full time

**Job Purpose**

The Information Security Vulnerability Analyst and Consultant is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's information systems and infrastructure. This role requires a strong understanding of security principles, risk management, and industry best practices. The analyst will work closely with internal teams and clients to provide recommendations and guidance to strengthen the overall security posture.

**Business Unit - **Consulting

**Location**

Performanta South Africa (Midrand) - Hybrid Remote

**Formal Qualifications**

Bachelor's degree in Computer Science, Information Security, or a related field.

Relevant certifications (e.g., CISSP, CEH, OSCP) are a plus.

**Knowledge & Experience**

3 to 5 years working experience in information security.

Strong knowledge of information security principles, concepts, and best practices.

Familiarity with implementing and managing vulnerability assessment tools (e.g., Nessus, Qualys, Rapid7) and basic penetration testing methodologies.

Experience in conducting vulnerability assessments, basic penetration tests, and security risk analysis.

Understanding of common system and network vulnerabilities and the ability to recommend effective mitigation strategies.

Proficient in interpreting vulnerability scan results and generating comprehensive reports.

Knowledge of industry standards and frameworks such as ISO 27001, NIST, or CIS Controls.

Excellent analytical and problem-solving skills, with the ability to think strategically and identify potential risks.

Strong communication and presentation skills to effectively convey complex security concepts to technical and non-technical audiences.

Experience with incident response procedures and processes is desirable.

R**eporting Structure**

Reporting into the head of Consulting

**Operating Level Requirements (Scope, Responsibilities, Skills and Attributes)**

Vulnerability Assessments:
Conduct regular vulnerability assessments of information systems and infrastructure using automated scanning tools and manual techniques.

vulnerability scan results and identify potential security weaknesses and exposures.

Research and stay updated on the latest vulnerabilities and emerging threats.

Security Risk Analysis:
Evaluate the impact and likelihood of identified vulnerabilities to determine the level of risk they pose.

Provide risk analysis reports to management, highlighting potential security gaps and recommended remediation actions.

Collaborate with stakeholders to develop risk mitigation strategies and prioritize remediation efforts.

Vulnerability Management:
Develop and maintain a vulnerability management program, including the tracking and monitoring of vulnerabilities and their remediation progress.

Assist in the development and implementation of security policies, standards, and procedures.

Collaborate with system administrators and IT teams to ensure timely remediation of identified vulnerabilities.

Security Consulting:
Provide expert advice and guidance to internal teams and clients on information security best practices and vulnerability management.

Assist in the design and implementation of security controls, processes, and technologies to enhance the overall security posture.

Conduct security awareness training and workshops for employees and stakeholders.

Incident Response Support:
Collaborate with incident response teams during security incidents to analyze vulnerabilities and identify potential entry points.

Provide expertise in assessing and remediating vulnerabilities related to security incidents.

Astute knowledge and understanding of the Performanta vision, strategy and customer/member value proposition.

Is creative and innovative and always seeks opportunities for ongoing improvement of the relationship between the team and various stakeholders.

Ability to manage multiple priorities effectively within a fast-paced environment.

Excellent organizational skills and string attention to detail.

Strong ability to communicate effectively with all stakeholders face-to-face or electronically.

Is articulate and communicates in a logical way and structures information to meet the needs and understanding of intended audiences.

Expresses opinions, information and key points of view clearly and assertively

Is confident in conceptualizing, building and presenting plans related presentations

Anticipates and responds appropriately to the needs, reactions and feedback of an audience.

Good networker.

Open, flowing communication is important

Position requires working with and through others, especially in a helping role

There is a need for a persuasive, "selling" (rather than "telling") communication style

Strong knowledge of IT Security Standards and Best Practices.

Good computer skills in Microsoft Word, and Excel is essential.

Strong computer skills to manage and implement security toolsets

Analytical skills

Abi


  • Information Security Analyst

    Found in: Talent ZA C2 - 3 weeks ago


    Johannesburg, South Africa Telebest Full time

    Our client has an opportunity available for an Information Security Analyst.Requirements:5 years’ experience within either an Information Security position or Cybersecurity, which include protection against social engineering, or security vulnerability remediation, of which:2 years’ IT administration experience.2 years’ Ethical Hacking...

  • Information Security Analyst L2

    Found in: Talent ZA C2 - 3 weeks ago


    Johannesburg, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Analyst based in Selby.Requirements:5 years’ experience within either an information security position or in cybersecurity.2 years IT administration experience.2 years ethical hacking experience.Knowledge of:Cloud security platforms.Firewalls and malicious code defense.Cybersecurity...

  • Information Security Analyst L1

    Found in: Talent ZA C2 - 3 weeks ago


    Johannesburg, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Analyst based in Selby.Requirements:Bachelor’s degree in information security or a similar field.Industry certifications.Knowledge of:Cloud security platforms.Firewalls and malicious code defense.Cybersecurity technical assignments, standards, tools and processes.Common attack...


  • Johannesburg, South Africa K2 Human Capital Consultancy Full time

    Job Description **Support Technology Transformation & Innovation in your area of responsibility** - Support with developing and maintaining Cyber Security Road Map and interventions - Support with developing company-wide best practices for Technology security - Support improving the maturity, or efficiency, of the Cyber Security team, by identifying...


  • Johannesburg, South Africa Sabenza Information Technology Full time

    **Requirements**: - Design, implement, and maintain security policies and procedures for our Windows server environment - Conduct regular vulnerability assessments, penetration testing, and security audits to identify and address security risks - Monitor server logs and alerts to identify and respond to security incidents - Investigate and resolve security...


  • Johannesburg, South Africa BASHR Consulting Full time

    As a Senior Security Analyst, you will be responsible for producing intelligence outputs, threat, vulnerability reports, data, actionable intelligence, and situational awareness to facilitate decision making. You will be required to research, identify potential threats, vulnerabilities and develop action plans to counter emerging cyber intelligence...

  • Information Security Engineer

    Found in: Talent ZA C2 - 3 weeks ago


    Johannesburg, South Africa Level-Up Full time

    Information Security Engineer will be responsible for ensuring the security of our information systems and protecting them against unauthorised access, modification, or destruction. The role involves hands-on operations with various security tools and platforms, as well as the development and implementation of secure networks and systems.Key...


  • Johannesburg, South Africa WePlace Full time

    Gauteng, JHB - Northern Suburbs - Market - Related Annually Basic Salary - We have an exciting opportunity as an Information Security Officer based at our client in the Commercial Banking sector which is located in Sandton. **Role Description**: - The focus of the role will be to assess, identify and address the cyber and information security risks in the...


  • Johannesburg, South Africa Nedbank Full time

    **Job Classification** - **REQ: 131922 - Refilwe Falatsi**: - **Closing Date: 15 March 2024**: - **Division: Wealth Centre | Risk**: - **Employment Equity Statement: Preference will be given to Individuals from Underrepresented Groups.** - Job Family- Information Technology - Career Stream- It Risk - Leadership Pipeline- Manage Self: Expert - FAIS...


  • Johannesburg, South Africa PPS Recruitment Full time

    **Job Advert Summary**: The incumbent will direct, develop, maintain and implement an enterprise information security architecture aligned with the strategic and business objectives of the PPS, as well as regulatory and technical context The role will involve working with other teams in the organisation as a non-technical resource in all matters, such as...


  • Johannesburg, South Africa Numata Business IT Full time

    Service Desk Engineers provide IT end-user support on variouscomponents of an IT environment, including but not limited to, hardwaresupport, software support and network support. Being the first point of contactfor clients, you are expected to be professional, helpful, and to provideassistance with a sense of urgency, regardless of the level of incident....

  • Security Analyst

    6 days ago


    Johannesburg, South Africa Transnet Full time

    **_ Equity Statement :Preference will be given to suitably qualified Applicants who are members of the_** **_designated groups in line with the Employment Equity Plan and Targets of the Organisation/Operating_** **_Division._** **_ Alternative Application Methods: (Completed Curriculum Vitae to be submitted)_** Post: E-mail: Fax: before the closing date of...


  • Johannesburg, South Africa Business Capital Group Full time

    Assist the Head of Technology Services to develop and implement a robust security monitoring strategy by establishing a capability for continuous management of correlated business and technology rules to detect common and advanced information security threats. The strategy would include the collection and reporting of intelligent security operational metrics...


  • Johannesburg, South Africa LENOHLAHLA CONSULTING Full time

    **KEY PERFORMANCE AREAS (DUTIES & RESPONSIBILITIES)**: 1. Cyber Security Program Understand Sasrias strategy and the cybersecurity implications to enable digital trust within Sasrias operations and platforms. Design, configure, deploy, and maintain security controls to safeguard Sasrias infrastructure. Actively protect the organizations information...


  • Johannesburg, South Africa Tipp Focus Full time

    **Introduction** A vacancy exists for an **IT Security Operations **Manager, **reporting to the **Head: Technology **Services.** The IT Security Operations Manager manages the day-to-day operational aspects of the Information Security environment. This involves managing the activities of the information security team to ensure that daily activities...

  • Senior Cyber Security Analyst

    Found in: Talent ZA C2 - 3 weeks ago


    Johannesburg, South Africa Telebest Full time

    Requirements:5 years of experience in Cybersecurity, engineering, or security vulnerability remediationIn-depth knowledge of MS Azure security platform (MS Intune / DRM / O365 Security)In-depth knowledge of Firewalls and Malicious Code Defence including APTKnowledge of Cybersecurity technical assessments, standards, tools, and processesExtensive knowledge of...


  • Johannesburg, South Africa My It Crew Full time

    **This is an in-office position.** Ready to get off the IT machine and come be part of a team where you are more than a cog in the wheel? My IT Crew is the place where everyone gets a voice and new ideas are welcomed. Sound like this could be your new home? Keep reading. My IT Crew has been a leader in the Managed Service provider space since 2016. We...

  • IT Security Operations Manager

    Found in: Talent ZA C2 - 3 weeks ago


    Johannesburg, South Africa Tipp Focus Full time

    IntroductionA vacancy exists for an IT Security Operations Manager, reporting to the Head: Technology Services. The IT Security Operations Manager manages the day-to-day operational aspects of the Information Security environment. This involves managing the activities of the information security team to ensure that daily activities associated with...


  • Johannesburg, South Africa Khomeliwa Consulting Full time

    Our client is a financial institution focusing on Insurance and based in Sandton. They seek the services of the IT SECURIRITY SPECIALIST. **JOB PURPOSE** To actively protect the organisations information technology assets and infrastructure from external or internal threats and ensuring compliance with statutory and regulatory requirements regarding...


  • Johannesburg, South Africa THE SKILLS MINE (PTY) LTD Full time

    **Requirements**: - Bachelor’s or Master’s degree in Information Technology or Computer Science - 5-6 years of experience in Information security Management - Minimum Certified ISO 27001 Lead Auditor/ Lead Implementer - Background in technical security roles or operations, with a clear and abiding interest in security **Responsibilities**: - Develop...