Principal Offensive Security Specialist

3 weeks ago


Midrand, South Africa Nexio Full time

**ROLE REQUIREMENT**
- To increase security threat detection capability and defence effectiveness in the Security Assessment Team, and SOC Team in their engagements with customers.
- Provides support for Nexio Offensive Security capabilities for the Security Assessment Team, and SOC Team for customers’ engagements.
- Direct impact on business resilience and functionality against cyber security threats facing customers.
- As an advanced threat hunter, the Principal Offensive Security Specialist continuously detects, analyzes and combats advanced threats. The job role includes detecting vulnerabilities and mitigating the associated cybersecurity risk before it affects customers.

Provides threat hunting technical and thought leadership to customers executive stakeholders, SOC teams, and blue/red teams.

Provides coaching and mentoring to relevant cyber security team members.

Adjusts management style to get the best from the individuals within the team.

Delegates work to team members taking into account their capacity, level of skill and exposure to different types of work and complexity; provides clear instructions and direction, with reasonable deadlines.
- Responsible for day to day threat hunting and cyber intelligence monitoring and threat analysis in the Nexio SOCs.

Manage threat hunting and security monitoring staff and activities.

Proactively finds vulnerabilities in the customers’ estate. He/She has an overview of the endpoints on the system such as all the IoT devices, phones, IP addresses and desktops, and they help IT teams use the right tools to detect and mitigate threats.

Understands what normal behaviour and patterns look like on the customers’ network.

Formulates and develops logical theories on how threat actos could access a network or exploit a system to gain access to specific critical information.

Oversees breach and attack simulations.

Responsible for proactively discovering new attacks, or attacks currently underway, and then working with other expert cyber security resolver teams to contain and remediate the impact as quickly as possible.

Uses advanced security monitoring techniques and advanced cyber systems/tools.

Should a breach occur, he/she helps minimize damage, recover compromised data and preserve evidence for legal action.

Lead Purple Teaming, hence perform threat hunting with customers to proactively reduce attack surface.

Success will rely on the rapid development and deployment of new ‘data hunting’ use cases and the use of big data analytics.

Responsible for proactively discovering new attacks, or attacks currently underway through the use of advanced security monitoring techniques and advanced cyber systems/tools.

Complex Active Monitoring & Triage - observation, triage, correlation analysis/investigation and closure of real time of information complex security events including false positive identification.

Data Hunting Technology Management - advanced configuration and development of high end data hunting technologies.

Participates in the response, triage and escalation of security events affecting the customers’ information assets and activities with the Incident Response team.

Provides input into fine tuning of operational runbooks to improve the efficiency of cyber security team’s detection and response capabilities.

Co-ordinates with stakeholders, build and maintain positive working relationships between various service towers of the business and customers.

Provide threat hunting technical leadership and support during high severity security incidents and investigations.

Optimizes the processes to respond to and investigate detected attacks.

Additional Information:
Individuals at this level have fully developed knowledge of the threat landscape and TTPs. Is recognized as an expert in threat intelligence and threat hunting with special focus and emphasis on SOC, or Advanced Cyber Defence Centre operations.

Interprets internal or external business issues and recommends best practices. Provides technical guidance to SOC Teams and Pen Testing, and Security Assessment Teams.

Able to build strong interpersonal relationships with key customer stakeholders.

Excellent verbal and written communication skills.

Able to align multiple strategies and ideas.

Confident in producing and presenting work.

In-depth understanding of cyber incident response and digital forensics.

Working technical knowledge of SOC tools and SIEM technologies e.g., Azure Sentinel, QRadar, ArcSight.

Advanced technical knowledge in working with threat intelligence feeds for monitoring and analysing indicators or compromise e.g., Bromium, OTX, Talos, Digital Shadows, RiskIQ, etc.

Advanced penetration testing, and red teaming experience across sectors and certification.

**QUALIFICATIONS &B EXPERIENCE**
Grade 12

BSc/ B Tech /Comps / BEng or equivalent IT Security Diploma

Additionally, one more certifications in the following information security and domains.

CISS



  • Midrand, Gauteng, South Africa Chosen Talent Full time

    Company OverviewChosen Talent is a dynamic company that values innovation and expertise. We are seeking a skilled Cybersecurity Specialist to join our security team, working closely with the Operations Manager and COO. This role requires a strong understanding of offensive and defensive security concepts, with a focus on either defensive or offensive...


  • Midrand, Gauteng, South Africa Chosen Talent Full time

    Job OverviewThe Cybersecurity Specialist role at Chosen Talent involves working in a dynamic security team, reporting to the Operations Manager and COO. This position requires a strong understanding of offensive and defensive security concepts, with a focus on either defensive or offensive components.Key ResponsibilitiesEscalation point for L1...


  • Midrand, South Africa A 1L Realization (Pty) Ltd Full time

    Role purpose: The primary purpose of the role is to work within a team of Secure by Design and Security Architecture specialists, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Clients policies and standards. In performing this role you will: - Identify potential cyber security risks for new...

  • IT Security Expert

    1 day ago


    Midrand, Gauteng, South Africa Chosen Talent Full time

    About the RoleThis is an exciting opportunity to join the security team at Chosen Talent, where you will be working closely with the Operations Manager and COO. As a Network Defender, you will be responsible for ensuring the security of our network infrastructure, including firewalling and UTM, endpoint security, and security frameworks and...


  • Midrand, Gauteng, South Africa Chosen Talent Full time

    Get AI-powered advice on this job and more exclusive features.HYBRID ROLEEscalation point for L1 engineersDirect support for SLA customersTelephonic supportRemote hands supportRemote installation / racking / stackingUpskilling according to certification path and company requirementsAssistance for other technical teams as neededUpdate and maintain...


  • Midrand, South Africa Six Sense Full time

    A well-established business is seeking to appoint a Principal Deal Originator The Principal Deal Originator is responsible for formulating and executing the strategic objectives of the business in collaboration with the Head Coverage whilst being accountable for deal origination, building and owning client and partnerships and developing...


  • Midrand, South Africa Vodafone Full time

    **Role Purpose/Business Unit**: Are you ready to join Vodacom’s exciting world of Digital IT and become part of a high performing, dynamic technology team? With our customers at the heart of our purpose, you will be part of the evolution of our IT technology landscape, harnessing the latest technical innovations available.The role of a Principal Specialist...


  • Midrand, Gauteng, South Africa Careers at DLK Group Full time

    Careers at DLK Group is seeking an Information Security Specialist to join our team. As an Information Security Specialist, you will be responsible for protecting our organization's digital assets and networks from threats and unauthorized access.Key ResponsibilitiesNetwork Security:Implement and maintain a robust security posture across our network...


  • Midrand, South Africa Six Sense Full time

    A well-established business is seeking to appoint a Principal Deal Originator The Principal Deal Originator is responsible for formulating and executing the strategic objectives of the business in collaboration with the Head Coverage whilst being accountable for deal origination, building and owning client and partnerships and developing...


  • Midrand, Gauteng, South Africa Nagarro Inc Full time

    Job SummaryNagarro Inc invites applications from experienced professionals for the position of Principal Specialist in Telecom Architecture. The selected candidate will be responsible for driving the development of cutting-edge telecommunications solutions.About the RoleThis role offers a unique opportunity to make a lasting impact on the company's telecom...


  • Midrand, Gauteng, South Africa Architectural Services Full time

    About the RoleWe are looking for an experienced Integrated Security Specialist to join our team. As an integral part of our sales team, you will be responsible for designing and implementing integrated security solutions for our clients.Develop and present complex integrated security proposals.Collaborate with clients to understand their security needs and...


  • Midrand, South Africa Fempower Personnel Full time

    Looking for an exciting opportunity as a Principal Deal Originator in the Social, Health and Education sectors? Our client is seeking a talented individual to join their team in Midrand! As the Principal Deal Originator, you will play a critical role in driving the strategic objectives of the business and be responsible for deal origination, building and...


  • Midrand, Gauteng, South Africa Gijima Holdings HR Full time

    Gijima Holdings HR seeks a highly skilled Cloud Infrastructure Security Specialist to lead our team in delivering cutting-edge IT solutions.Job Description:This role involves the management and maintenance of our global Active Directory cloud infrastructure. You will be responsible for ensuring high availability and highest state-of-the-art security, driving...


  • Midrand, South Africa DBSA Full time

    The Principal Investment Officer is responsible for formulating and executing the strategic objectives of the business in collaboration with the Transacting Head whilst generating deal flow and building a robust pipeline of prospective projects for development financing bankability. **Key Responsibilities**: **1. Transaction Assessments** - Evaluate the...


  • Midrand, South Africa Nexio Full time

    **ROLE PURPOSE** **ROLE REQUIREMENT** - To increase security threat visibility and defence for Nexio and its customers. - Provides support for complex computer network exploitation and defence techniques. - Direct impact on business resilience and functionality against cyber security threats. - Provides mentorship and guidance to junior team members. -...


  • Midrand, Gauteng, South Africa Datacentrix Full time

    At Datacentrix, we are seeking a highly skilled IT Security Sales Specialist to join our team. The ideal candidate will have a proven track record of meeting or exceeding sales targets in the IT security space.About the RoleThis is an exciting opportunity for a motivated individual to foster strong relationships with external customers and support the growth...


  • Midrand, Gauteng, South Africa Diversity People Talent Full time

    Diversity People Talent is seeking an experienced Airport Security Coordination Specialist to join our team.About the Job:This role involves coordinating airport security initiatives, engaging with stakeholders, and maintaining accurate records to ensure efficient operations and decision-making processes.Responsibilities:Coordinate airport security committee...


  • Midrand, Gauteng, South Africa DPT Recruitment Full time

    Aviation Security Stakeholder Relations SpecialistAre you passionate about aviation security and stakeholder engagement? We are looking for an AVSEC Stakeholder Relations Specialist to join our dynamic Aviation Security teamKey ResponsibilitiesCommittee Coordination: Manage activities of the National Aviation Security Committee (NASC), Facilitation...


  • Midrand, South Africa DBSA Full time

    The Principal Syndication Officer is responsible for formulating and executing the strategic objectives of the division in collaboration with the Group Executive: Coverage whilst being accountable for deal origination, building and owning client relationships and partnerships and arranging financing for projects and distribution opportunities for the...


  • Midrand, South Africa Reverside Full time

    **Cyber Security Architect in Midrand, JHB** We are looking for** **Cyber Security Architect Professionals with 3 - 5+ years solid development experience in security and has a solid knowledge base of the SDLC. **Requirements**: Defining Technology Security Architecture & Design in order to: - To ensure Security is embedded in IT System and Network...