L1 Incident Analyst

2 weeks ago


Midrand, South Africa Liquid Tech (Pty) Ltd. Full time

**Role Purpose**

To deliver day-to-day managed security services (MSS), related to SOC deliverables. Critical in this regard is to execute according to Standard Operating Procedure (SOP) expectations and meeting all related service level agreements (SLAs). It is further expected that these services will be enhanced and matured so that customer value can be delivered and communicated.

**Role Description**

Provides support for basic computer network exploitation and defence techniques to include deterring, identifying and investigating computer and network intrusions. Provide incident response and remediation support. Performing comprehensive computer surveillance/monitoring and identifying vulnerabilities. Provides technical support for continuous monitoring, computer exploitation and reconnaissance, target mapping and profiling and network decoy and deception operations in support of computer intrusion defence operations. Researches and maintains proficiency in open and closed source computer exploitation tools, attack techniques, procedures and trends. Performs research into emerging threat sources and develops threat profiles. Provides technical support for a comprehensive risk management program.
identifying mission critical processes and systems, current and projected threats and system vulnerabilities. Develop playbooks for various incident scenarios and have a knowledge of automation processes and products. Escalate higher risk incidents to L2 Incident Analyst.

**Role Requirements**

Matric.

One or more of these industry Cybersecurity Certifications: CISM, CISA, CISSP ISSEP, CISSP-ISSAP, Certified Computer Security Incident Handler (CSIH), CEH, OSCP, CompTIA Security Plus.

Strong analytical and organizational skills.

Concise writing skills, excellent MS Word skills as well as other MS Office Applications.

Experience with securing various environments preferred.

Experience in working across security technologies.

Managed security services experience across complex architectures.

In depth understanding of the role of incident analysis tools.

In depth understanding of various types of log analysis.

Prior experience to advise, plan, deploy, configure, manage and monitor large scale and complex cyber defence and IT risk management and information or cybersecurity solutions.


  • L1 Incident Analyst

    2 weeks ago


    Midrand, Gauteng, South Africa Liquid Tech (Pty) Ltd. Full time

    Role PurposeTo deliver day-to-day managed security services (MSS), related to SOC deliverables. Critical in this regard is to execute according to Standard Operating Procedure (SOP) expectations and meeting all related service level agreements (SLAs). It is further expected that these services will be enhanced and matured so that customer value can be...

  • SOC Analyst

    3 months ago


    Midrand, South Africa Datacentrix Full time

    Gauteng, Midrand (Market related, Negotiable)Datacentrix is looking for SOC Analysts Level 1 & Level 3 to provide initial investigation of all security incidents, and management of incident from inception to resolution and liaise with vendor and Engineers to resolve incidents where required. Must have experience in installing, configuring, and maintaining...

  • SOC Analyst

    2 weeks ago


    Midrand, Gauteng, South Africa Datacentrix Full time

    Gauteng, Midrand (Market related, Negotiable)Datacentrix is looking for SOC Analysts Level 1 & Level 3 to provide initial investigation of all security incidents, and management of incident from inception to resolution and liaise with vendor and Engineers to resolve incidents where required. Must have experience in installing, configuring, and maintaining...

  • SOC Analyst

    4 weeks ago


    Midrand, South Africa Datacentrix Full time

    Gauteng, Midrand (Market related, Negotiable)Datacentrix is looking for SOC Analysts Level 1 & Level 3 to provide initial investigation of all security incidents, and management of incident from inception to resolution and liaise with vendor and Engineers to resolve incidents where required. Must have experience in installing, configuring, and maintaining...


  • Midrand, South Africa Nexio Full time

    **ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Manager is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Manager is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the organization's network and...


  • Midrand, Gauteng, South Africa Nexio Full time

    ROLE PURPOSEAs part of the Customer-facing Nexio SOC team, the L3 Security Incident Handling Analyst will be responsible for monitoring enterprise networks and systems, detecting events and reporting on any and all threats that are directed against those systems regardless of their classification level or type. The L3 Security Incident Handling Analyst is...

  • Incident Manager

    2 weeks ago


    Midrand, South Africa Nexio Full time

    Nexio is a specialist ICT solution provider that helps clients build, support, and manage their IT infrastructures. We have operations in all 9 provinces across the country, over 200 clients and over 600 employees and as a Level 1 BBBEE we put to practice our commitment to South Africa’s transformation agenda, we are at the forefront of digital...

  • Incident Manager

    2 weeks ago


    Midrand, Gauteng, South Africa Nexio Full time

    Nexio is a specialist ICT solution provider that helps clients build, support, and manage their IT infrastructures. We have operations in all 9 provinces across the country, over 200 clients and over 600 employees and as a Level 1 BBBEE we put to practice our commitment to South Africa's transformation agenda, we are at the forefront of digital...


  • Midrand, South Africa Nexio Full time

    **ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Management Specialist is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Management Specialist is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the...


  • Midrand, South Africa Nexio Full time

    **ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Manager is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Manager is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the organization's network and...


  • Midrand, Gauteng, South Africa Nexio Full time

    ROLE PURPOSEAs part of the Customer-facing Nexio SOC team, the Cybersecurity Incident Manager is a crucial role within an organization's cybersecurity team. The primary responsibility of the Cybersecurity Incident Manager is to detect, respond to, investigate, and mitigate cyber threats and incidents that occur within the organization's network and...

  • SOC Analyst

    2 weeks ago


    Midrand, Gauteng, South Africa Data Centrix Full time

    Minimum Qualification: Matric plus Diploma/Degree in Information Security MS Security Certification years of experience working in IT or SOC environmentRole Description: Providing supporting security services and actionable reporting Analyze threats and logs, alerts and reports Proactively look for suspicious anomalous activity based on data alerts or data...


  • Midrand, South Africa Nexio Full time

    **ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and...


  • Midrand, South Africa Nexio Full time

    **ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and provide...


  • Midrand, South Africa Nexio Full time

    **ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Senior Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and...


  • Midrand, Gauteng, South Africa Nexio Full time

    ROLE PURPOSEAs part of the Customer-facing Nexio SOC team, the Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and provide...


  • Midrand, Gauteng, South Africa Nexio Full time

    ROLE PURPOSEAs part of the Customer-facing Nexio SOC team, the Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and provide...


  • Midrand, South Africa Nexio Full time

    **ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Threat Analyst will be responsible for monitoring enterprise networks and systems, deterring, identifying, investigating, and mitigating, any and all threats that are directed against those systems regardless of their classification level or type. The Cybersecurity Threat...

  • Cybersecurity Analyst

    2 weeks ago


    Midrand, Gauteng, South Africa Fidelity Services Group Full time

    Job Title: Cybersecurity AnalystLocation: Ulwazi Campus Midrand/HelderkruinReports to: Information Security Manager**Job Summary:We are seeking a skilled and dedicated Cybersecurity Analyst to join our Cybersecurity team in the physical security industry. As a Cybersecurity Analyst, you will play a crucial role in ensuring the security of our diverse client...


  • Midrand, South Africa Nexio Full time

    **ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Cybersecurity Threat Analyst will be responsible for monitoring enterprise networks and systems, deterring, identifying, investigating, and mitigating, any and all threats that are directed against those systems regardless of their classification level or type. The Cybersecurity Threat...