Information Security Vulnerability Analyst and

3 weeks ago


Johannesburg, South Africa Performanta Group Full time

**Job Purpose**

The Information Security Vulnerability Analyst and Consultant is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's information systems and infrastructure. This role requires a strong understanding of security principles, risk management, and industry best practices. The analyst will work closely with internal teams and clients to provide recommendations and guidance to strengthen the overall security posture.

**Business Unit - **Consulting

**Location**

Performanta South Africa (Midrand) - Hybrid Remote

**Formal Qualifications**

Bachelor's degree in Computer Science, Information Security, or a related field.

Relevant certifications (e.g., CISSP, CEH, OSCP) are a plus.

**Knowledge & Experience**

3 to 5 years working experience in information security.

Strong knowledge of information security principles, concepts, and best practices.

Familiarity with implementing and managing vulnerability assessment tools (e.g., Nessus, Qualys, Rapid7) and basic penetration testing methodologies.

Experience in conducting vulnerability assessments, basic penetration tests, and security risk analysis.

Understanding of common system and network vulnerabilities and the ability to recommend effective mitigation strategies.

Proficient in interpreting vulnerability scan results and generating comprehensive reports.

Knowledge of industry standards and frameworks such as ISO 27001, NIST, or CIS Controls.

Excellent analytical and problem-solving skills, with the ability to think strategically and identify potential risks.

Strong communication and presentation skills to effectively convey complex security concepts to technical and non-technical audiences.

Experience with incident response procedures and processes is desirable.

R**eporting Structure**

Reporting into the head of Consulting

**Operating Level Requirements (Scope, Responsibilities, Skills and Attributes)**

Vulnerability Assessments:
Conduct regular vulnerability assessments of information systems and infrastructure using automated scanning tools and manual techniques.

vulnerability scan results and identify potential security weaknesses and exposures.

Research and stay updated on the latest vulnerabilities and emerging threats.

Security Risk Analysis:
Evaluate the impact and likelihood of identified vulnerabilities to determine the level of risk they pose.

Provide risk analysis reports to management, highlighting potential security gaps and recommended remediation actions.

Collaborate with stakeholders to develop risk mitigation strategies and prioritize remediation efforts.

Vulnerability Management:
Develop and maintain a vulnerability management program, including the tracking and monitoring of vulnerabilities and their remediation progress.

Assist in the development and implementation of security policies, standards, and procedures.

Collaborate with system administrators and IT teams to ensure timely remediation of identified vulnerabilities.

Security Consulting:
Provide expert advice and guidance to internal teams and clients on information security best practices and vulnerability management.

Assist in the design and implementation of security controls, processes, and technologies to enhance the overall security posture.

Conduct security awareness training and workshops for employees and stakeholders.

Incident Response Support:
Collaborate with incident response teams during security incidents to analyze vulnerabilities and identify potential entry points.

Provide expertise in assessing and remediating vulnerabilities related to security incidents.

Astute knowledge and understanding of the Performanta vision, strategy and customer/member value proposition.

Is creative and innovative and always seeks opportunities for ongoing improvement of the relationship between the team and various stakeholders.

Ability to manage multiple priorities effectively within a fast-paced environment.

Excellent organizational skills and string attention to detail.

Strong ability to communicate effectively with all stakeholders face-to-face or electronically.

Is articulate and communicates in a logical way and structures information to meet the needs and understanding of intended audiences.

Expresses opinions, information and key points of view clearly and assertively

Is confident in conceptualizing, building and presenting plans related presentations

Anticipates and responds appropriately to the needs, reactions and feedback of an audience.

Good networker.

Open, flowing communication is important

Position requires working with and through others, especially in a helping role

There is a need for a persuasive, "selling" (rather than "telling") communication style

Strong knowledge of IT Security Standards and Best Practices.

Good computer skills in Microsoft Word, and Excel is essential.

Strong computer skills to manage and implement security toolsets

Analytical skills

Abi



  • Johannesburg, South Africa Telebest Full time

    Our client has an opportunity available for an Information Security Analyst.Requirements:5 years’ experience within either an Information Security position or Cybersecurity, which include protection against social engineering, or security vulnerability remediation, of which:2 years’ IT administration experience.2 years’ Ethical Hacking...


  • Johannesburg, South Africa Doxim Inc. Full time

    Doxim is the customer communications and engagement technology leader serving financial and regulated industries. Our platform with its suite of integrated, SaaS software and document technology solutions helps clients digitize operations, improve efficiency, and modernize customer experience. With Doxim, clients can communicate reliably and effectively,...


  • Johannesburg, Gauteng, South Africa F & G Sourcing Specialist Full time

    Our reputable Security Services client is seeking an Information Security Analyst to join their team in Johannesburg.Salary: R per annum CTC Employer contributes 100% towards Medical aid (CTC) Employer contributes 100% towards Provident Fund Performance bonus: not guaranteed based on the performance of the organisation as well as the individual. Spouse...


  • Johannesburg, Gauteng, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Analyst based in Selby.Requirements:5 years' experience within either an information security position or in cybersecurity.2 years IT administration experience.2 years ethical hacking experience.Knowledge of:Cloud security platforms.Firewalls and malicious code defense.Cybersecurity...


  • Johannesburg, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Analyst based in Selby.Requirements:5 years’ experience within either an information security position or in cybersecurity.2 years IT administration experience.2 years ethical hacking experience.Knowledge of:Cloud security platforms.Firewalls and malicious code defense.Cybersecurity...


  • Johannesburg, Gauteng, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Analyst based in Selby.Requirements:Bachelor's degree in information security or a similar field.Industry certifications.Knowledge of:Cloud security platforms.Firewalls and malicious code defense.Cybersecurity technical assignments, standards, tools and processes.Common attack...


  • Johannesburg, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Analyst based in Selby.Requirements:Bachelor’s degree in information security or a similar field.Industry certifications.Knowledge of:Cloud security platforms.Firewalls and malicious code defense.Cybersecurity technical assignments, standards, tools and processes.Common attack...


  • Johannesburg, South Africa Boikago Group Full time

    **Job Details**: - Department Information Technology- Minimum experience Associate- Company primary industry Security and Investigations- Job functional area Other- Salary R658 680 - R933 180 per annum**Introduction** Our client seeks an Information Security Analyst L2 who will Conduct all activities related to technology risks and remediation's to protect...


  • Johannesburg, South Africa TransUnion Full time

    TransUnion's Job Applicant Privacy Notice **What We'll Bring**: TransUnion is a global information and insights company which provides solutions that help create economic opportunity, great experiences, and personal empowerment for hundreds of millions of people in more than 30 countries. We call this Information for Good®. TransUnion is a major credit...


  • Johannesburg, South Africa NTT Ltd. Full time

    NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...


  • Johannesburg, South Africa BASHR Consulting Full time

    **Job Details**: **Department** **other** **Minimum experience** **Mid-Senior** **Company primary industry** **Information Technology and Services** **Job functional area** **Information Technology** **Salary** **R400 000 - R600 000 per annum** Job Specification: Cyber Security Analyst Position Overview: **Responsibilities**: 3. Develop and...


  • Johannesburg, South Africa PPS Recruitment Full time

    **Job Advert Summary**: The Intermediate Information Security Analyst will be responsible for managing the organisation’s security posture to ensure the protection of systems, networks and sensitive data against security threats, computer viruses and other related cyber-security attacks. **Minimum Requirements**: **Education**: - BSc / B.Tech or...


  • Johannesburg, South Africa Boardroom Appointments Full time

    **Minimum requirements**: - A degree in Information Technology - 5-7 years Experience in risk management and identifying mitigating strategies and plans - 5-7 years Strong IT understanding, gaining insight into digital and platform operating models and cyber security trends and solutions - 8-10 years Experience in technical and business management;...


  • Johannesburg, South Africa Afro Miaki Group Full time

    Support Technology Transformation & Innovation in your area of responsibility Support with developing and maintaining Cyber Security Road Map and interventions Support with developing company-wide best practices for Technology security Support improving the maturity, or efficiency, of the Cyber Security team, by identifying innovative, problem-solving...


  • Johannesburg, Gauteng, South Africa MECS Africa Full time

    South Africa, Gauteng - Jhb Eastern SuburbsOur leading Heavy Equipment Manufacturing client is currently recruiting for an IT Security and Compliance Analyst to improve security monitoring capabilities and respond to security incidents proactively while improving audit compliance and governance.Responsibilities: Ensure security audits are conducted and drive...


  • Johannesburg, South Africa South African Bankers Services Company Pty Ltd Full time

    **Job Description**: We are looking to appoint a Information Security Specialist in our IT Security business reporting into the Manager IT Security Operations. You will be responsible for supporting the Cyber Defence Centre in its daily operations. This includes ensuring the defence and alerting capabilities are performing adequately, events raised by the...


  • Johannesburg, Gauteng, South Africa Boardroom Appointments Full time

    Minimum requirements: A degree in Information Technology 57 years Experience in risk management and identifying mitigating strategies and plans 57 years Strong IT understanding, gaining insight into digital and platform operating models and cyber security trends and solutions 810 years Experience in technical and business management; databases, operating...


  • Johannesburg, South Africa TransUnion Full time

    TransUnion's Job Applicant Privacy Notice **What We'll Bring**: As a Senior Consultant, you should have 6-8 years of hands-on information security experience, and a Bachelor’s Degree in a related technical field. **What You'll Bring**: You should have expertise and experience in the following technical and professional areas: - Experience with...


  • Johannesburg, South Africa NTT Ltd. Full time

    NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...


  • Johannesburg, Gauteng, South Africa BASHR Consulting Full time

    As a Senior Security Analyst, you will be responsible for producing intelligence outputs, threat, vulnerability reports, data, actionable intelligence, and situational awareness to facilitate decision making. You will be required to research, identify potential threats, vulnerabilities and develop action plans to counter emerging cyber intelligence...