Information Security Vulnerability Analyst and

7 months ago


Johannesburg, South Africa Performanta Group Full time

**Job Purpose**

The Information Security Vulnerability Analyst and Consultant is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's information systems and infrastructure. This role requires a strong understanding of security principles, risk management, and industry best practices. The analyst will work closely with internal teams and clients to provide recommendations and guidance to strengthen the overall security posture.

**Business Unit - **Consulting

**Location**

Performanta South Africa (Midrand) - Hybrid Remote

**Formal Qualifications**

Bachelor's degree in Computer Science, Information Security, or a related field.

Relevant certifications (e.g., CISSP, CEH, OSCP) are a plus.

**Knowledge & Experience**

3 to 5 years working experience in information security.

Strong knowledge of information security principles, concepts, and best practices.

Familiarity with implementing and managing vulnerability assessment tools (e.g., Nessus, Qualys, Rapid7) and basic penetration testing methodologies.

Experience in conducting vulnerability assessments, basic penetration tests, and security risk analysis.

Understanding of common system and network vulnerabilities and the ability to recommend effective mitigation strategies.

Proficient in interpreting vulnerability scan results and generating comprehensive reports.

Knowledge of industry standards and frameworks such as ISO 27001, NIST, or CIS Controls.

Excellent analytical and problem-solving skills, with the ability to think strategically and identify potential risks.

Strong communication and presentation skills to effectively convey complex security concepts to technical and non-technical audiences.

Experience with incident response procedures and processes is desirable.

R**eporting Structure**

Reporting into the head of Consulting

**Operating Level Requirements (Scope, Responsibilities, Skills and Attributes)**

Vulnerability Assessments:
Conduct regular vulnerability assessments of information systems and infrastructure using automated scanning tools and manual techniques.

vulnerability scan results and identify potential security weaknesses and exposures.

Research and stay updated on the latest vulnerabilities and emerging threats.

Security Risk Analysis:
Evaluate the impact and likelihood of identified vulnerabilities to determine the level of risk they pose.

Provide risk analysis reports to management, highlighting potential security gaps and recommended remediation actions.

Collaborate with stakeholders to develop risk mitigation strategies and prioritize remediation efforts.

Vulnerability Management:
Develop and maintain a vulnerability management program, including the tracking and monitoring of vulnerabilities and their remediation progress.

Assist in the development and implementation of security policies, standards, and procedures.

Collaborate with system administrators and IT teams to ensure timely remediation of identified vulnerabilities.

Security Consulting:
Provide expert advice and guidance to internal teams and clients on information security best practices and vulnerability management.

Assist in the design and implementation of security controls, processes, and technologies to enhance the overall security posture.

Conduct security awareness training and workshops for employees and stakeholders.

Incident Response Support:
Collaborate with incident response teams during security incidents to analyze vulnerabilities and identify potential entry points.

Provide expertise in assessing and remediating vulnerabilities related to security incidents.

Astute knowledge and understanding of the Performanta vision, strategy and customer/member value proposition.

Is creative and innovative and always seeks opportunities for ongoing improvement of the relationship between the team and various stakeholders.

Ability to manage multiple priorities effectively within a fast-paced environment.

Excellent organizational skills and string attention to detail.

Strong ability to communicate effectively with all stakeholders face-to-face or electronically.

Is articulate and communicates in a logical way and structures information to meet the needs and understanding of intended audiences.

Expresses opinions, information and key points of view clearly and assertively

Is confident in conceptualizing, building and presenting plans related presentations

Anticipates and responds appropriately to the needs, reactions and feedback of an audience.

Good networker.

Open, flowing communication is important

Position requires working with and through others, especially in a helping role

There is a need for a persuasive, "selling" (rather than "telling") communication style

Strong knowledge of IT Security Standards and Best Practices.

Good computer skills in Microsoft Word, and Excel is essential.

Strong computer skills to manage and implement security toolsets

Analytical skills

Abi



  • Johannesburg, Gauteng, South Africa African Ambition Full time

    Job Title: Cybersecurity AnalystAt African Ambition, we are committed to protecting our organization from cyber threats by having a skilled Cybersecurity Analyst on board.Key Responsibilities:Document security breaches and assess the damage they cause.Work with the security team to perform tests and uncover network vulnerabilities.Fix detected...


  • Johannesburg, Gauteng, South Africa African Ambition Full time

    Cybersecurity Analyst PositionAfrican Ambition seeks an Information Security Specialist to protect our organization from cyber threats by monitoring systems and evaluating potential risks.Responsibilities include:Documenting security breaches and assessing their impactCollaborating with the security team to perform vulnerability tests and identify network...


  • Johannesburg, South Africa F & G Sourcing Specialist Full time

    Our reputable Security Services client is seeking an **Information Security Analyst** to join their team in Johannesburg. **Salary**: R564 000 per annum **Requirements**: - Bachelor’s degree in Information Security or similar. - 5 Years’ experience within either an Information Security position or Cybersecurity, which include protection against social...

  • IT Security Analyst

    2 months ago


    Johannesburg, South Africa FirstRand Full time

    Job Description Hello future IT Security Analyst/Architect. Welcome to FNB, the home of the #changeables. We design for the shapeshifters and deliver products and services that make us incredibly proud of people that make it happen. As part of our Core Banking Team, you will be surrounded by unique talents, diverse minds, and an adaptable environment that...


  • Johannesburg, Gauteng, South Africa African Ambition Full time

    **Job Summary**African Ambition is seeking an experienced Cybersecurity Analyst to protect our organization from cyber threats by monitoring systems and evaluating potential risks.**Key Responsibilities:**Document security breaches and assess the damage causedWork with the security team to identify vulnerabilities and develop solutionsMaintain a...


  • Johannesburg, Gauteng, South Africa African Ambition Full time

    African Ambition is seeking a highly skilled Cybersecurity Analyst to join our team and help us protect our organization from cyber threats.**Key Responsibilities:**Documenting security breaches and assessing the damage causedWorking with the security team to perform tests and uncover network vulnerabilitiesMaintaining a high-security standard by fixing...

  • Cyber Security Analyst

    7 months ago


    Johannesburg, South Africa BASHR Consulting Full time

    **Job Details**: **Department** **other** **Minimum experience** **Mid-Senior** **Company primary industry** **Information Technology and Services** **Job functional area** **Information Technology** **Salary** **R400 000 - R600 000 per annum** Job Specification: Cyber Security Analyst Position Overview: **Responsibilities**: 3. Develop and...


  • Johannesburg, South Africa PPS Recruitment Full time

    **Job Advert Summary**: The Intermediate Information Security Analyst will be responsible for managing the organisation’s security posture to ensure the protection of systems, networks and sensitive data against security threats, computer viruses and other related cyber-security attacks. **Minimum Requirements**: **Education**: - BSc / B.Tech or...


  • Johannesburg, South Africa MECS Africa Full time

    South Africa, Gauteng - Jhb Eastern Suburbs Our leading Heavy Equipment Manufacturing client is currently recruiting for an IT Security and Compliance Analyst to improve security monitoring capabilities and respond to security incidents proactively while improving audit compliance and governance. **Responsibilities**: - Ensure security audits are...


  • Johannesburg, South Africa Sabenza Information Technology Full time

    **Requirements**: - Design, implement, and maintain security policies and procedures for our Windows server environment - Conduct regular vulnerability assessments, penetration testing, and security audits to identify and address security risks - Monitor server logs and alerts to identify and respond to security incidents - Investigate and resolve security...


  • Johannesburg, South Africa Afro Miaki Group Full time

    Support Technology Transformation & Innovation in your area of responsibility Support with developing and maintaining Cyber Security Road Map and interventions Support with developing company-wide best practices for Technology security Support improving the maturity, or efficiency, of the Cyber Security team, by identifying innovative, problem-solving...


  • Johannesburg, South Africa TransUnion Full time

    TransUnion's Job Applicant Privacy Notice **What We'll Bring**: As a Senior Consultant, you should have 6-8 years of hands-on information security experience, and a Bachelor’s Degree in a related technical field. **What You'll Bring**: You should have expertise and experience in the following technical and professional areas: - Experience with...


  • Johannesburg, Gauteng, South Africa African Ambition Full time

    African Ambition Seeks Information Security ExpertAfrican Ambition is committed to maintaining the highest level of security for our systems and data. To achieve this goal, we are looking for an experienced information security expert to join our team.The ideal candidate will have extensive knowledge of computer network penetration testing techniques,...


  • Johannesburg, South Africa Boardroom Appointments Full time

    **Minimum requirements**: - A degree in Information Technology - 5-7 years Experience in risk management and identifying mitigating strategies and plans - 5-7 years Strong IT understanding, gaining insight into digital and platform operating models and cyber security trends and solutions - 8-10 years Experience in technical and business management;...

  • Security Controller

    7 months ago


    Johannesburg, South Africa Kallvest Cleaning and Security Full time

    Monitor Security Systems: Operate and monitor various security systems, to detect and respond to potential security breaches or incidents. Surveillance and Reporting: Continuously observe and analyze live surveillance feeds, recorded footage, to identify suspicious activities, security breaches, or policy violations. Maintain accurate incident logs and...


  • Johannesburg, South Africa South African Bankers Services Company Pty Ltd Full time

    **Job Description**: We are looking to appoint a Information Security Specialist in our IT Security business reporting into the Manager IT Security Operations. You will be responsible for supporting the Cyber Defence Centre in its daily operations. This includes ensuring the defence and alerting capabilities are performing adequately, events raised by the...

  • Cybersecurity Analyst

    2 months ago


    Johannesburg, South Africa Jobted ZA C2 Full time

    Cybersecurity Analyst Location: JHB Basic: R850 000 PA We are looking for a Cybersecurity Analyst to join our team to protect our organization from cyberattacks by monitoring our systems and evaluating threats as they arise. Responsibilities  Document security breaches and assess the damage they cause  Work with the security team to perform tests and...


  • Johannesburg, South Africa NTT Ltd. Full time

    NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...

  • Security Analyst

    6 months ago


    Johannesburg, South Africa NTT Full time

    NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...


  • Johannesburg, South Africa Digital Spaces Allegiance Full time

    The purpose of the job is to plan, manage, and administer the organisation network security. Ensure all network components are managed in accordance with approved guidelines and processes to ensure compliance. As an Information Security Specialist, you will be responsible to: - Design, install, and manage security mechanisms that protect the organisation...