Cyber Security Expert

7 days ago


Randburg, Gauteng, South Africa Logicalis Full time

About Us:

Logicalis is a leading international solution provider, delivering digital enablement services to customers worldwide. We harness digital technology and innovative services to drive powerful business outcomes across various industries and regions.

We have 4,000 employees with modernising key digital pillars including data centre and cloud services, security and network infrastructure, workspace communications and collaboration, data and information strategies, and IT operation modernisation.

Our relationships with leading technology companies such as Cisco, HPE, IBM, CA Technologies, NetApp, Microsoft, Oracle, VMware and ServiceNow help us provide our customers with the best solutions.

Job Purpose:

The Security Operations Centre (SOC) provides defence against security breaches and actively isolates and mitigates security risks. The SOC team identifies, analyses, and reacts to cyber security threats using reliable processes and security technologies.

The SOC team includes the SOC Manager, SIEM Platform Manager, Case Manager, SOC Tier 1, 2 and 3 Analysts and Security Specialists. They work with IT operational teams to address security incidents and events quickly.

Responsibilities:

  • Possesses in-depth knowledge of network, endpoint, threat intelligence, forensics and malware reverse analysis, as well as the functioning of specific applications or underlying IT infrastructure.
  • Acts as an incident "hunter," not waiting for escalated incidents.
  • Closely involved in developing, tuning, and implementing threat detection analytics.
  • Acts as the escalation for Tier 1 and 2 SOC Analysts.
  • Responds to and oversees the remediation of a declared security incident.
  • Completes the Root Cause Analysis Report for P1 to P4.
  • Provides guidance to Tier 1 and 2 SOC Analysts.
  • Uses threat intelligence such as updated rules and Indicators of Compromise (IOCs) to pinpoint affected systems and the extent of the attack.
  • Monitors shift-related metrics ensuring applicable reporting is gathered and disseminated to the SOC Manager.
  • Make recommendations to the SOC Manager.
  • Oversees the analysis on running processes and configs on affected systems.
  • Undertakes in-depth threat intelligence analysis to find the perpetrator, the type of attack, and the data or systems impacted.
  • Oversees the containment and recovery.
  • Oversees the deep-dive incident analysis by correlating data from various sources.
  • Validates if a critical system or data set has been impacted.
  • Provides support for analytic methods for detecting threats.
  • Conducts advanced triage based on defined run books of alerts.
  • Undertakes threat intelligence research if need be.
  • Validates false positives, policy violations, intrusion attempts, security threats and potential compromises.
  • Undertakes security incident triage to provide necessary context prior to escalating to relevant Security Specialists to perform deeper analysis when necessary.
  • Further analyses alarms by method e.g. credentials compromised and by asset class.
  • Based on the correlation rules and alarms within the SIEM and run books, further analyses anomaly tactic using the MITRE ATT&CK framework.
  • Analyses event and process metadata in real-time or retrospectively, and identify suspicious files/scripts seen for the first time.
  • Closes tickets in the SIEM platform – this would be automatically created into Service Now.
  • Manages security incidents using the SIEM platform and defined operational procedures.
  • Performs a further investigation of potential incidents, and escalate or close events as applicable.
  • Validates investigation results, ensuring relevant details are passed on to Tier 2 SOC Level 2 for further event analysis.
  • Closes out deeper analysis and review activities.
  • Assist senior SOC staff with operational responsibilities.

Requirements:

  • Strong knowledge and experience working with SIEM Solutions, QRadar, McAfee ESM, Azure Sentinel.
  • Proven experience with Office, Active Directory, Azure and Microsoft Exchange.
  • Strong knowledge and experience working with Linux Operating systems.
  • Good experience working with Nessus or Qualys.
  • Good understanding of the MITRE ATT&CK framework.
  • Good understanding of the ITIL Framework.
  • Brilliant with a support ticketing system and experience in meeting SLA targets.
  • Familiarity with risk management and quality assurance control.
  • Excellent interpersonal skills and professional demeanor.
  • Excellent verbal and written communication skills.
  • Candidate must be eligible to obtain National Security Clearance.


  • Randburg, Gauteng, South Africa Ntice Sourcing Solutions Full time

    Job Title: Cyber Security ExpertNtice Sourcing Solutions seeks a highly skilled Cyber Security Expert to lead and implement cybersecurity initiatives across our Africa region operations.About the Role:Plan, organize, lead, and evaluate cybersecurity projects and activities across the Africa region in collaboration with management.Respond to high-priority and...

  • Cyber Security Expert

    10 hours ago


    Randburg, Gauteng, South Africa First Distribution Full time

    Job DescriptionWe are seeking a highly skilled Cyber Security Expert to join our team at First Distribution. As a key member of our sales and pre-sales team, you will be responsible for managing and growing our Microsoft Cyber Security Program.Your primary focus will be on driving net partner acquisition (NPA) and net customer acquisition (NCA) through the...


  • Randburg, Gauteng, South Africa Cyber Factor Full time

    We are looking for passionate and driven individuals to join our Cyber & Information Technology Trainee Program. This role offers a unique opportunity to gain hands-on experience, participate in structured training and development, and engage in experimental work in cybersecurity and IT. As a trainee, you will work alongside experienced professionals,...

  • Cyber Security Leader

    10 hours ago


    Randburg, Gauteng, South Africa Telebest Full time

    At Telebest, we are seeking a seasoned Cyber Security Leader to spearhead our security efforts. As a key member of our team, you will be responsible for managing security operations and teams, as well as overseeing IT Security supplier performance.This is an exceptional opportunity to leverage your expertise in Information Security tools and techniques, IT...


  • Randburg, Gauteng, South Africa Imperial Cyber Group Llc Full time

    About the Position:The Product Manager – Cyber Security will be responsible for leading the sales and marketing efforts of assigned brands, driving revenue growth and expanding market share.Key Responsibilities:Develop and execute sales and marketing strategiesLead sales teams to achieve revenue targetsBuild and maintain relationships with vendors and...


  • Randburg, Gauteng, South Africa Datafin Full time

    Company OverviewDatafin is a leading consulting firm specializing in Cyber Security and technology assurance.We provide expert advice to our clients on managing cyber security risks and ensuring the integrity of their information systems.About the RoleThe Cyber Security Analyst will play a key role in assisting with scoping, planning, and executing internal...


  • Randburg, Gauteng, South Africa Ntice Sourcing Solutions Full time

    Job title: Cyber Security Specialist (41414)Job Location: Gauteng, JohannesburgDeadline: April 17, 2025Job DescriptionAre you a skilled Cyber Security Specialist looking for a challenging role in a dynamic environment? We are seeking a highly motivated professional to lead and implement cyber security initiatives across our Africa region operations. Join us...


  • Randburg, Gauteng, South Africa Standard Bank Of South Africa Limited Full time

    Job SummaryWe are seeking a highly skilled Senior Cyber Security Professional to join our team at Standard Bank Of South Africa Limited. This role will play a critical part in supporting the bank's Information Security initiatives, ensuring that sensitive data and systems are protected from infiltration or misuse.The successful candidate will possess a...


  • Randburg, Gauteng, South Africa Imperial Cyber Group Llc Full time

    About the Role:The Product Manager – Cyber Security will be responsible for managing the daily running of assigned brands, striving to grow their success within First Distribution.Key Responsibilities:Drive Gross Profit targets through ResellersSell First Distribution's product portfolio within existing ResellersRecruit new ResellersDisplay key...


  • Randburg, Gauteng, South Africa Stanbic Bank Tanzania Full time

    Job Summary:We are seeking a highly skilled Cyber Security Expert to join our team at Stanbic Bank Tanzania.The successful candidate will be responsible for providing expertise, professional knowledge, and technical skills to automate building, testing and operating data ingestion systems.Key Responsibilities:Maintain and operate syslog collection...


  • Randburg, Gauteng, South Africa Imperial Cyber Group Llc Full time

    Job Description:The Product Manager – Cyber Security will be responsible for overseeing the sales and marketing efforts of assigned brands, ensuring alignment with company objectives and driving revenue growth.Key Responsibilities:Develop and execute sales and marketing strategiesLead sales teams to achieve revenue targetsBuild and maintain relationships...


  • Randburg, Gauteng, South Africa Transnet SOC Ltd Full time

    About the RoleThe successful candidate will be responsible for safeguarding Transnet SOC Ltd's interests and reputation by protecting the organisation's computer network from internal and external threats.As a thought leader, they will provide strategic direction on core security questions facing the organisation based on leading security practices.They will...


  • Randburg, Gauteng, South Africa Old Mutual Full time

    Secure Our Future TogetherAt Old Mutual, we believe in harnessing the power of technology to drive business growth and success.About the RoleWe are seeking an experienced Senior Cyber Security Architect to lead our cybersecurity efforts as part of our secure-by-design strategy. The successful candidate will be responsible for developing and implementing...


  • Randburg, Gauteng, South Africa Tower Group South Africa (PTY) Ltd Full time

    Job DescriptionThe successful candidate will be responsible for the identification, measurement, control and minimisation of loss associated with uncertain information and cyber security risks throughout the ICT and business environment.Key Responsibilities:Development, documentation, implementation and monitoring of an Information Security management...


  • Randburg, Gauteng, South Africa Pro Development Group Full time

    About the Role:We are seeking an experienced Cyber Security Specialist to join our team at Pro Development Group. The successful candidate will be responsible for ensuring the security and integrity of our network and client connectivity infrastructure.Key Responsibilities:Design and implement network security best practicesMonitor and improve network...


  • Randburg, Gauteng, South Africa Standard Bank Group Full time

    Cyber Security Systems Engineer Job DescriptionAs a Cyber Security Systems Engineer at Standard Bank Group, you will be responsible for designing, implementing, and maintaining secure systems and processes to protect the group's data and infrastructure. This includes maintaining and operating syslog collection servers, writing automated Ansible playbooks,...


  • Randburg, Gauteng, South Africa Stafflink Recruitment Solutions Full time

    **Job Summary:**We are seeking a highly experienced Cyber Security Strategist to join our team at Stafflink Recruitment Solutions.The ideal candidate will have a strong background in cyber security and a proven track record of developing and implementing effective cybersecurity strategies.About the Role:Develop and implement a comprehensive cybersecurity...


  • Randburg, Gauteng, South Africa Old Mutual Full time

    As a Senior Cyber Security Specialist at Old Mutual, you will be responsible for monitoring the organization's IT ecosystem for vulnerabilities and threats using advanced security tools and methodologies. You will respond to security incidents in real-time, conduct post-incident analyses to strengthen future defenses, and ensure all systems, applications,...


  • Randburg, Gauteng, South Africa Old Mutual Limited Full time

    Senior Cyber Security ArchitectApply locations Johannesburg time type Full time posted on Posted 2 Days Ago job requisition id JR-Let's Write Africa's Story Together Old Mutual is a firm believer in the African opportunity and our diverse talent reflects this.Job DescriptionRole PurposeThe role of the Senior Cyber Security Architect will be to lead our...


  • Randburg, Gauteng, South Africa Darktrace Full time

    About DarktraceDarktrace is a leading provider of AI-driven cyber security solutions. As a Solutions Engineer at Darktrace, you will be working with cutting-edge technology to protect our customers' networks from emerging threats.Job DescriptionWe are seeking an experienced and passionate individual to join our team as a Solutions Engineer. In this role, you...