Cyber Security Analyst
1 week ago
**The Role**
We are looking for a SOC Analyst to become part of our rapidly expanding team protecting our clients from cyber security threats. This is primarily a blue team role with additional exposure and involvement to penetration testing techniques and tools in order to validate security exposures detected by our attack surface management platform.
Our philosophy is that solid defence requires intimate knowledge of offensive tactics, with our managed security service designed to ensure our analysts are across the latest attack techniques. This approach, combined with our cloud security expertise allows us to provide our clients with the highest level of protection for their digital assets.
You will get the opportunity to work with government, start-up and enterprise clients as part of a passionate and experienced security team; You will also be provided with training and support for Offensive Security Certified Professional (OSCP) certification if that is not yet held.
**Your Responsibilities**
We monitor our client’s systems both internally and externally to ensure we provide proactive response to potential security issues and detect any threats that have breached security controls.
A best of breed cloud-based SIEM is used to ingest and analyse events from client environments, in which we use our cloud security knowledge in conjunction with the MITRE ATT&CK® Cloud Matrix to detect attacks from highly skilled adversaries. In this roll you will respond to alerts within our established SLAs and investigate complex attack chains to ensure breaches are rapidly discovered and contained.
Our attack surface management service includes hourly reconnaissance and exposure testing across our client internet attack surface. Using penetration testing techniques, you will also review new endpoints discovered by our platform and validate any security exposures as soon as they are detected.
Your average day will include the following activities:
**Investigation and response to client SIEM alerts**
- Ownership through to resolution of managed SIEM alerts
- Liaison with clients to provide updates on investigation status
- Incident closure once appropriate action has been taken
- Tuning of client SIEM rules to reduce false positive rate
**Monitoring of client digital attack surface exposures**
- Ownership through to resolution of customer impacting exposures
- Liaison with clients to provide updates on exposure status
- Escalation to senior resources for complex exposures
- Closure of exposures once appropriate action has been taken
- Review of new assets discovered by the attack surface management platform
**Client report writing**
- Issuing of periodic cyber security reports for managed service clients
**Managed security service projects**
- Onboarding of new clients to managed services platforms
- Integration of new log sources for existing managed SIEM clients
- Development of managed incident response playbooks
- Other cyber security project work as required
**Your Experience**
3+ years’ experience as a SOC analyst, Penetration Tester, or relevant field
**Your Skills**
The following technical skills are required to fulfil the responsibilities of the role:
- Understanding of common internet protocols (e.g. TCP/IP, DNS, HTTP, TLS)
- Ability to analyse intercepted HTTP requests and identify basic security issues
- Familiarity with public cloud environments (e.g. AWS, Azure and GCP)
- Familiarity and demonstrated understanding of the Cyber Kill Chain and/or MITRE ATT&CK Framework
- Understanding and experience working with SIEM and Vulnerability management tools
- Proficiency with common penetration testing tools (e.g. Burp Suite, Kali Linux, Metasploit)
- Strong understanding of Windows, UNIX, and Linux Operating Systems
- Formal training and certification in an IT security related area, OSCP, SANS, CompTIA is desired but not essential
The role requires strong written communication skills for reporting on test findings and liaising with clients on validated exposures. The ability to manage time effectively is essential as testing engagements are typically delivered within a set timeframe and our CST service provides service level agreements for validating detected security exposures. The most important requirement however is a passion for learning about how systems are compromised, and security exploits are developed.
**Job Types**: Full-time, Permanent
Ability to commute/relocate:
- Johannesburg, Gauteng: Reliably commute or planning to relocate before starting work (required)
**Experience**:
- Security Analyst: 3 years (required)
**Language**:
- English (required)
Shift availability:
- Day Shift (required)
- Night Shift (required)
-
Cyber Information Security Analyst
1 week ago
Johannesburg, South Africa BASHR Consulting Full timeA fantastic opportunity has come up for an experienced Cyber Information Security Analyst to join a dynamic team in Johannesburg. As a Cyber Information Security Analyst, you will need to be hands-on management, guidance, and recommendations for all operational Information Security platforms. The role will be a liaison between Operations and IT Governance...
-
Cyber Information Security Analyst
1 week ago
Johannesburg, South Africa BASHR Consulting Full timeA fantastic opportunity has come up for an experienced Cyber Information Security Analyst to join a dynamic team in Johannesburg. As a Cyber Information Security Analyst, you will need to be hands-on management, guidance, and recommendations for all operational Information Security platforms. The role will be a liaison between Operations and IT Governance...
-
Cyber Security Analyst
20 hours ago
Johannesburg, South Africa Secured Enterprise Full timeWe are currently looking for Cyber Security Analysts that are strategic, detail-oriented and has a passion for the industry to join our team. **Job Types**: Full-time, Temp to perm Contract length: 3 months Application Question(s):
-
Cyber Information Security Analyst
1 week ago
City of Johannesburg, Gauteng, South Africa BASHR Consulting Full time**Job Details**: **Department** **Information Technology** **Minimum experience** **Mid-Senior** **Company primary industry** **Information Technology and Services** **Job functional area** **Information Technology** **Salary** **R900 000 - R960 000 per annum** A fantastic opportunity has come up for an experienced Cyber Information Security...
-
Cyber Security Analyst
6 days ago
Johannesburg, South Africa InfyStrat Full timeInfyStrat is seeking a motivated Cyber Security Analyst to join our team and contribute to our mission of safeguarding our digital assets and infrastructure. In this role, you will monitor, detect, and respond to security threats, vulnerabilities, and incidents across our systems. You'll perform risk assessments, analyze security breaches, and provide...
-
Cyber Security Analyst
6 days ago
Johannesburg, Gauteng, South Africa InfyStrat Full time R250 000 - R500 000 per yearInfyStrat is seeking a motivated Cyber Security Analyst to join our team and contribute to our mission of safeguarding our digital assets and infrastructure. In this role, you will monitor, detect, and respond to security threats, vulnerabilities, and incidents across our systems. You'll perform risk assessments, analyze security breaches, and provide...
-
Cloud Cyber Risk Analyst — Third-Party Security
2 weeks ago
Johannesburg, South Africa Old Mutual South Africa Full timeA leading financial services provider in Johannesburg is seeking a Cyber Risk Analyst to join their Cyber Security team. The role involves assessing cloud security and conducting risk management for third-party vendors. Ideal candidates have a degree in Cyber Security or related fields, relevant certifications, and 3–5 years of experience in cyber security...
-
Cyber Security Engineer
4 days ago
Johannesburg, Gauteng, South Africa Boardroom Appointments Full time R1 000 000 - R3 000 000 per yearMinimum Requirements:Information Security related Certification (CISSP / CISM / GCIA).Appropriate professional accreditation GCIH / Ethical Hacking (CEH)Offensive Security Certified Professional (OSCP) is preferred, GPEN, advantageous.Experience:Prior industry experience in a corporate environment (preference Financial Institution) in an IT Security...
-
Senior Cyber Security Analyst
6 days ago
Johannesburg, South Africa JustTheJob.co.za Full timeA leading company in Johannesburg is seeking a Senior Cyber Security Analyst to enhance their security posture. The role involves monitoring cyber events, conducting audits, and managing various security tools while requiring a strong educational background and significant industry experience. The ideal candidate will possess in-depth knowledge of...
-
Manager, Information Cyber Security
6 days ago
Johannesburg, South Africa Standard Bank of South Africa Limited Full timeLocation: ZA, GP, Johannesburg, Baker Street 30 Develop, lead and mature the implementation of a threat hunting programme within the Cyber Security Operations Centre (CSOC) in line with the InfoSec strategy and roadmap. Guide, support and direct threat hypothesis, information assimilation and the designing, scoping and executing of threat hunts, reviewing...