Security Defense and Operation Lead
6 days ago
**Purpose of the Job**
- To lead the operational defense of the AECI’s digital infrastructure by coordinating incident response, managing vulnerability remediation, and maintaining critical security controls.
- This role ensures that threats identified by the v Security Operations Center (SOC) are swiftly addressed, security incidents are resolved, and endpoint and network protections are continuously optimized.
- The position plays a key role in safeguarding business continuity, minimizing cyber risk exposure, and supporting compliance with internal and external security standards.
**Key Internal Stakeholders**
- IT Infrastructure and Operations Teams - for coordinating patching, vulnerability remediation, and endpoint protection.
- Service Desk - for executing incident response actions and escalating security alerts.
- SOC and Vulnerability Management Providers - for threat detection, alert triage, and vulnerability scanning.
- Application Security and DevSecOps Teams - for integrating response playbooks and ensuring secure development practices.
- Risk & Compliance Team - for aligning incident response with audit and compliance requirements.
**Key External Stakeholders**
- Third-party Security Vendors - including EDR, SOC, and vulnerability scanning service providers.
- Managed Security Service Providers (MSSPs) - where applicable, for outsourced monitoring or incident support.
- Auditors and Regulatory Bodies - during security audits or post-incident reviews
**Key Performance Areas Input**
- SOC alerts and threat intelligence Lead incident remediation for threats identified by the virtual Security Operations Center (SOC), ensuring timely and effective containment and recovery.
- External vulnerability scans and internal IT coordination Coordinate vulnerability remediation, ensuring vulnerabilities are tracked, prioritized, and resolved in collaboration with IT teams.
- Security incident logs and patch reports Verify resolution of security incidents and validate that patching activities are completed and effective.
- Vulnerability management workflows Optimize alert handoffs and reporting workflows, reducing false positives and improving response efficiency.
- Endpoint Detection & Response (EDR) and network segmentation tools Maintain and monitor critical security controls, ensuring continuous protection and compliance with security baselines.
- Service provider SLAs and performance metrics Monitor third-party performance, ensuring vSOC and vulnerability management providers meet contractual obligations and service levels.
- Threat scenarios and operational procedures Develop and maintain unified response playbooks for technical teams, enabling consistent and rapid response to incidents
**Qualifications & Experience**:
- Bachelor’s degree in Information Security, Computer Science, Information Technology, or a related field.
- Industry-recognized cybersecurity certifications such as:
- Certified Information Systems Security Professional (CISSP)
- GIAC Certified Incident Handler (GCIH)
- Certified Ethical Hacker (CEH)
- CompTIA Security+ or CySA+
- Microsoft certifications aligned to security operations and threat response:
- SC-200: Microsoft Security Operations Analyst - focused on threat detection, investigation, and response using Microsoft Defender and Sentinel
- SC-300: Microsoft Identity and Access Administrator - relevant for IAM and access control integration
- SC-900: Microsoft Security, Compliance, and Identity Fundamentals - foundational knowledge of Microsoft security and compliance solutions
- Familiarity with Microsoft Defender for Endpoint, Microsoft Sentinel, and other Microsoft 365 security tools is highly advantageous.
- Additional training in incident response, vulnerability management, and EDR platforms is recommended.
- 6-10 years of progressive experience in cybersecurity operations, including hands-on incident response and threat remediation.
- Proven experience managing or working closely with a virtual Security Operations Center (SOC) and vulnerability management platforms.
- Strong background in coordinating patch management and vulnerability remediation across IT and infrastructure teams.
- Experience maintaining and optimizing endpoint detection and response (EDR) tools and network segmentation controls.
- Demonstrated ability to develop and implement incident response playbooks and operational workflows.
- Familiarity with managing third-party security service providers and evaluating their performance.
- Exposure to enterprise IT environments, preferably with SAP, Active Directory, and hybrid cloud infrastructure.
**Personal Attributes**
- Incident response coordination and remediation leadership
- Vulnerability management and patch lifecycle coordination
- Security control implementation and optimization (e.g., EDR, network segmentation)
- Workflow design and automation for SOC alert handling and reporting
- Technical writing for playbooks and response procedures
- F
-
Group Information Security Officer
1 day ago
Woodmead, South Africa AECI Full timeDrive strategic initiatives Input into Policy and Standards. Establish security function across AECI and establish current security posture. Map out critical assets and assess controls. Develop the Information Security strategy and ensure its execution across the business and translate it into tangible IT strategies, initiatives, programmes, and...
-
Group Digital Lead
2 weeks ago
Woodmead, South Africa AECI Full timeLead the development, creation, implementation and maintenance of the Group DIGITAL Portfolio strategy, ensuring it aligns with the organization's business goals and objectives. - Collaborate with senior management and stakeholders to understand business requirements and translate them into business DIGITAL solutions. - Provide strategic guidance and...
-
Governance Risk and Compliance Lead
6 days ago
Woodmead, South Africa AECI Full time**Purpose of the Job** The purpose of this role is to lead and strengthen the organisation’s Governance, Risk, and Compliance (GRC) capabilities within the digital and information security domains, with a strong emphasis on Identity Governance and Administration (IGA), Identity and Access Management (IAM), IT Risk Management in line with ISO27001 ,and...
-
Group Operational Technology Officer
2 weeks ago
Woodmead, South Africa AECI Full timeRequired outputs: Functional - Ensure that OT systems and processes adhere to relevant industry standards, regulations, and internal policies. - Stay updated on standards such as ISA-95 (for manufacturing operations management), ISO 62443 (for industrial automation and control systems security), and other relevant guidelines. - Ensure compliance with...
-
Group Data
6 days ago
Woodmead, South Africa AECI Full time**Purpose of the Job** The Data & Analytics Business Engagement Lead will act as the primary liaison between business units and the central data & analytics team. This role is responsible for identifying analytical needs across departments, leading a team of data analysts and BI developers, and ensuring that data-driven solutions are aligned with business...
-
Group Enterprise Architect
1 day ago
Woodmead, South Africa AECI Full timeLead the strategic definition, creation and development of the overall Enterprise Architecture strategy. Lead the identification, evaluation of new IT technologies. ead, manage and ensure that IT systems are aligned with the business needs of the company across the global operations. Track and monitor the percentage of IT projects aligned with business...
-
Group Operational Excellence Officer
2 weeks ago
Woodmead, South Africa AECI Full timeRequired outputs: Functional - Lead and manage projects aimed at improving operational processes and systems. - Coordinate resources, manage timelines, and ensure that projects are completed on schedule and within budget. - Implement change management strategies to facilitate smooth transitions and adoption of new processes. - Analyse existing production...
-
Data Protection and Privacy
6 days ago
Woodmead, South Africa AECI Full time**Purpose of the Job**:To safeguard the organization’s sensitive data and ensure compliance with global privacy regulations by implementing robust data protection strategies, managing DLP and classification tools, and leading breach response efforts. This role is responsible for embedding privacy awareness across the business, conducting privacy impact...
-
Operations Manager- Spur International
2 weeks ago
Woodmead, South Africa Spur Group Full time**Job Advert Summary**: Spur Corporation is a growing multi-brand restaurant franchisor, headquartered in Cape Town. The group currently has eight brands, namely, Spur Steak Ranches, Spur Grill & Go, Panarottis Pizza Pasta, John Dory’s Fish Grill Sushi, RocoMamas, The Hussar Grill, Casa Bella and Nikos Coalgrill Greek. In order to retain an exceptional...
-
Cybersecurity Architect
2 weeks ago
Woodmead, South Africa SAP Full time**We help the world run better** **High Level Responsibilities**: - To be the primary contact on all aspects of SAP related security for SAP products and hosting in the Africa market unit - Participate in per to peer network of cybersecurity experts - Have a detailed knowledge of cloud security models and operations - Research specific aspects of security...