Cyber Security Analyst

2 weeks ago


Johannesburg, South Africa Cloudtrace Pty Ltd Full time

**The Role**

We are looking for a SOC Analyst to become part of our rapidly expanding team protecting our clients from cyber security threats. This is primarily a blue team role with additional exposure and involvement to penetration testing techniques and tools in order to validate security exposures detected by our attack surface management platform.

Our philosophy is that solid defence requires intimate knowledge of offensive tactics, with our managed security service designed to ensure our analysts are across the latest attack techniques. This approach, combined with our cloud security expertise allows us to provide our clients with the highest level of protection for their digital assets.

You will get the opportunity to work with government, start-up and enterprise clients as part of a passionate and experienced security team; You will also be provided with training and support for Offensive Security Certified Professional (OSCP) certification if that is not yet held.

**Your Responsibilities**

We monitor our client’s systems both internally and externally to ensure we provide proactive response to potential security issues and detect any threats that have breached security controls.

A best of breed cloud-based SIEM is used to ingest and analyse events from client environments, in which we use our cloud security knowledge in conjunction with the MITRE ATT&CK® Cloud Matrix to detect attacks from highly skilled adversaries. In this roll you will respond to alerts within our established SLAs and investigate complex attack chains to ensure breaches are rapidly discovered and contained.

Our attack surface management service includes hourly reconnaissance and exposure testing across our client internet attack surface. Using penetration testing techniques, you will also review new endpoints discovered by our platform and validate any security exposures as soon as they are detected.

Your average day will include the following activities:
**Investigation and response to client SIEM alerts**
- Ownership through to resolution of managed SIEM alerts
- Liaison with clients to provide updates on investigation status
- Incident closure once appropriate action has been taken
- Tuning of client SIEM rules to reduce false positive rate

**Monitoring of client digital attack surface exposures**
- Ownership through to resolution of customer impacting exposures
- Liaison with clients to provide updates on exposure status
- Escalation to senior resources for complex exposures
- Closure of exposures once appropriate action has been taken
- Review of new assets discovered by the attack surface management platform

**Client report writing**
- Issuing of periodic cyber security reports for managed service clients

**Managed security service projects**
- Onboarding of new clients to managed services platforms
- Integration of new log sources for existing managed SIEM clients
- Development of managed incident response playbooks
- Other cyber security project work as required

**Your Experience**

3+ years’ experience as a SOC analyst, Penetration Tester, or relevant field

**Your Skills**

The following technical skills are required to fulfil the responsibilities of the role:

- Understanding of common internet protocols (e.g. TCP/IP, DNS, HTTP, TLS)
- Ability to analyse intercepted HTTP requests and identify basic security issues
- Familiarity with public cloud environments (e.g. AWS, Azure and GCP)
- Familiarity and demonstrated understanding of the Cyber Kill Chain and/or MITRE ATT&CK Framework
- Understanding and experience working with SIEM and Vulnerability management tools
- Proficiency with common penetration testing tools (e.g. Burp Suite, Kali Linux, Metasploit)
- Strong understanding of Windows, UNIX, and Linux Operating Systems
- Formal training and certification in an IT security related area, OSCP, SANS, CompTIA is desired but not essential

The role requires strong written communication skills for reporting on test findings and liaising with clients on validated exposures. The ability to manage time effectively is essential as testing engagements are typically delivered within a set timeframe and our CST service provides service level agreements for validating detected security exposures. The most important requirement however is a passion for learning about how systems are compromised, and security exploits are developed.

**Job Types**: Full-time, Permanent

Ability to commute/relocate:

- Johannesburg, Gauteng: Reliably commute or planning to relocate before starting work (required)

**Experience**:

- Security Analyst: 3 years (required)

**Language**:

- English (required)

Shift availability:

- Day Shift (required)
- Night Shift (required)



  • Johannesburg, South Africa BASHR Consulting Full time

    **Job Details**: **Department** **other** **Minimum experience** **Mid-Senior** **Company primary industry** **Information Technology and Services** **Job functional area** **Information Technology** **Salary** **R400 000 - R600 000 per annum** Job Specification: Cyber Security Analyst Position Overview: **Responsibilities**: 3. Develop and...


  • Johannesburg, South Africa BASHR Consulting Full time

    A fantastic opportunity has come up for an experienced Cyber Information Security Analyst to join a dynamic team in Johannesburg. As a Cyber Information Security Analyst, you will need to be hands-on management, guidance, and recommendations for all operational Information Security platforms. The role will be a liaison between Operations and IT Governance...


  • Johannesburg, South Africa BASHR Consulting Full time

    **Job Details**: **Department** **IT Security Engineer** **Minimum experience** **Mid-Senior** **Company primary industry** **Information Technology and Services** **Job functional area** **Information Technology** **Salary** **R936 000 - R1 248 000 per annum** A fantastic opportunity has come up for an experienced Cyber Information Security...


  • Johannesburg, South Africa BASHR Consulting Full time

    A fantastic opportunity has come up for an experienced Cyber Information Security Analyst to join a dynamic team in Johannesburg. As a Cyber Information Security Analyst, you will need to be hands-on management, guidance, and recommendations for all operational Information Security platforms. The role will be a liaison between Operations and IT Governance...


  • City of Johannesburg, Gauteng, South Africa BASHR Consulting Full time

    **Job Details**: **Department** **Information Technology** **Minimum experience** **Mid-Senior** **Company primary industry** **Information Technology and Services** **Job functional area** **Information Technology** **Salary** **R900 000 - R960 000 per annum** A fantastic opportunity has come up for an experienced Cyber Information Security...


  • Johannesburg, South Africa RJPersonnel Full time

    6years - Provide SME skills and mentorship to the Cyber Security Analysts as well as collaboration with the business and technology teams. - Day to day management of the Cyber Security Analysts. - Responsible for the day-to-day security operations. - Manage the relationship with 3rd party security vendors to improve and maintain security within the...


  • Johannesburg, South Africa Secured Enterprise Full time

    Secured Enterprise is looking for a strategic, detail-oriented individual to join our team as a Cyber Security Analyst. The following is required: - Minimum 2 years’ experience - Helpdesk / Desktop Support - Ability to troubleshoot connectivity issues - Ability to research and solve problems / challenges on a day to day basis - Must be able to adapt to...


  • Johannesburg, South Africa Secured Enterprise Full time

    We are currently looking for Cyber Security Analysts that are strategic, detail-oriented and has a passion for the industry to join our team. **Requirements**: - Ability to troubleshoot connectivity issues - Ability to research and solve problems / challenges on a day to day basis - Must be able to adapt to change (Infrastructure and Environment) -...


  • Johannesburg, Gauteng, South Africa Standard Bank of South Africa Limited Full time

    Our company seeks a highly skilled and experienced Cyber Security Threat Hunter to lead our threat hunting programme within the Cyber Security Operations Centre (CSOC). The ideal candidate will have deep technical knowledge of security monitoring, security operations, network and systems analysis, threat modelling and threat detection.The successful...


  • Johannesburg, Gauteng, South Africa Optim-G Sourcing Full time

    About the JobWe are seeking an experienced Cyber Security Leadership Position to join our team at Optim-G Sourcing.The successful candidate will have a solid engineering background with a focus on proficiency in the Linux operating system, including system management, security, and troubleshooting.This role requires deep technical knowledge of security...


  • Johannesburg, Gauteng, South Africa Hire Resolve Full time

    Hire Resolve is currently seeking a highly skilled Cyber Security Engineer for our client, a leading independent power producer. This is an exceptional opportunity to join a dynamic and innovative company at the forefront of the energy sector. The successful candidate will play a crucial role in safeguarding critical infrastructure, ensuring the security of...


  • Johannesburg, Gauteng, South Africa Optim-G Sourcing Full time

    Job DescriptionDevelop, lead and mature the implementation of a threat hunting programme within the Cyber Security Operations Centre (CSOC) in line with the InfoSec strategy and roadmap. Guide, support and direct threat hypothesis, information assimilation and the designing, scoping and executing of threat hunts, reviewing and guiding the remediation...


  • Johannesburg, Gauteng, South Africa Optim-G Sourcing Full time

    Job DescriptionDevelop, lead and mature the implementation of a threat hunting programme within the Cyber Security Operations Centre (CSOC) in line with the InfoSec strategy and roadmap. Guide, support and direct threat hypothesis, information assimilation and the designing, scoping and executing of threat hunts, reviewing and guiding the remediation...


  • Johannesburg, Gauteng, South Africa Standard Bank Group Full time

    Job title : Manager, Information Cyber SecurityJob Location : Gauteng, JohannesburgDeadline : April 28, 2025Quick Recommended LinksJobs by Location Job by industries Job DescriptionDevelop, lead and mature the implementation of a threat hunting programme within the Cyber Security Operations Centre (CSOC) in line with the InfoSec strategy and roadmap....


  • Johannesburg, Gauteng, South Africa Optim-G Sourcing Full time

    Seeking a Manager, Information Cyber SecurityLocation: Rosebank, Permanent positionJob DescriptionDevelop, lead, and mature the implementation of a threat hunting programme within the Cyber Security Operations Centre (CSOC) in line with the InfoSec strategy and roadmap. Guide, support, and direct threat hypothesis, information assimilation, and the...


  • Johannesburg, South Africa BASHR Consulting Full time

    **Job Details**: **Department** **Information Technology** **Minimum experience** **Mid-Senior** **Company primary industry** **Information Technology and Services** **Job functional area** **Information Technology** **Salary** **R900 000 - R1 344 000 per annum** Our client with a well-established Global Tech firm is seeking for an attention to...


  • Johannesburg, South Africa A 1L Realization (Pty) Ltd Full time

    Key Tasks & Accountabilities Architect IT Security solutions and supporting infrastructure (physical / virtual infrastructure / cloud, operating systems and supporting software) in alignment with organizational goals and constraints - Create a modernisation roadmap and architect solutions to meet Cyber Security needs. - Ensure technical viability of new...


  • Johannesburg, South Africa SNG GrantThornton Full time

    **Job Purpose** Will be responsible to manage timeous delivery of Cyber Security related audit components of the integrated IT audit of the client, within the Digitech Assurance audit team. - Perform Cyber Security related reviews covering the typical four audit phases i.e. planning, execution, reporting and quality assurance. - Implement and manage...


  • Johannesburg, South Africa K2 Human Capital Consultancy Full time

    **Duties and Responsibilities** - Monitor, analyse, and detect Cyber events and incidents within information systems and networks. - Consult on integrated, dynamic Cyber defence and leverage Cybersecurity solutions - Administer Cybersecurity operational services, including intrusion detection and prevention, situational awareness of: - o network...


  • Johannesburg, South Africa Specd Full time

    **The Job Requirements**: - Develop and implement comprehensive cyber security strategies, policies, and procedures that align with business objectives and comply with regulatory requirements. - Monitor network traffic and system logs to identify and respond to security incidents and breaches in a timely and effective manner. - Develop and maintain incident...