Specialist: Cyber Incident and Threat Intelligence

2 weeks ago


Soweto, Gauteng, South Africa Telkom Full time R1 200 000 - R2 400 000 per year

Structural Information
Job number:

Job title:
Specialist: Cyber Incident and Threat Intelligence

Job grade:
S5

Group/ BU:
Corporate

Division:
CIO

Span of control:
0-5

Reports to:
Senior Management

Core Description
Responsible for identifying, analyzing, and responding to cyber threats and incidents targeting theorganization. This role combines deep technical expertise with investigative skills to monitor threat landscapes, detect malicious activities, and provide actionable intelligence to improve the organization's cybersecurity posture. Works closely with SOC teams, digital forensics, and other cybersecurity functions to ensure proactive threat detection and eff ective incident response.

Job Responsibilities

  • Oversee the planning, design, implementation, testing, and operation of cyber breach resilience processes and systems on networks and applications.
  • Maintain awareness of the latest and common security threats, attack vectors, and Tactics, Techniques, and Procedures (TTPs) and maintain up-to-date threat profi les.
  • Act as an escalation point and subject matter expert for cybersecurity incidents and threat mitigation.
  • Develop and maintain incident management plans, procedures, controls, playbooks, and incidentresponse strategies.
  • Lead cyber incident simulation exercises.
  • Designing and implementing a disaster recovery plan, ensuring Telkom can eff ectively respond to unexpected security incidents.
  • Monitor dark web, open-source intelligence (OSINT), and threat feeds to identify emerging threats.
  • Ensure that adequate processes are in place to collect, analyze, and disseminate threat intelligence from internal and external sources.
  • Lead or support cyber incident investigations, including detection, containment, eradication, and recovery processes.
  • Enhance detection rules and use cases in XDR and threat detection platforms.
  • Correlate intelligence with real-time security events to identify and prioritize threats.
  • Develop dashboards, visualizations, and metrics to report on threat trends and incident statistics.
  • Stay up to date with cybersecurity trends, zero-day vulnerabilities, and global threat activity.
  • Lead and ensure collaboration with the SOC team during incident handling.
  • Create threat intelligence reports, indicators of compromise (IOCs), and threat briefs for stakeholders.

Core Competencies
FUNCTIONAL KNOWLEDGE

Deep understanding of threat actor tactics, techniques, and procedures; Profi ciency in using threatintelligence frameworks; Ability to contextualize and operationalize indicators of compromise; Experience inevaluating open-source and commercial threat intelligence feeds; Competence in producing and validatingthreat intelligence reports and advisories

Functional Skills
Analytical & Investigative; Communication & Interpretation; Decision Making; Problem Solving; Project &Task Management; Risk Awareness

ATTITUDES/ LEADERSHIP COMPETENCIES

Integrity; Assertive; Confi dent; Initiator; Supportive; Persuasive; Team Player; Problem Ownership

Certifications
Education

  • NQF 6: 3 year Diploma/ National Diploma in Information Technology

Experience

  • 5 Years relevant experience

Additional Information
Certifications:

  • Preferred certifications: Must have at least one of the following - CISM, CRISC CISSP, SABSA orISO27001/2.
  • Additional desired certification: CoBIT, TOGAF, ITIL.

Special Requirements

  • None

Physical Requirements

  • None

Key Stakeholders

  • Enterprise and IT Architects
  • Internal Business Customers
  • External Customers
  • Consultants and specialists
  • Executive & Governance Forums


  • Soweto, Gauteng, South Africa Professional Career Services Full time R500 000 - R1 200 000 per year

    Employer DescriptionA software development company in Pretoria. We specialise in software development, web design, network management and cyber security.Job DescriptionKubernetes & Cloud NetworkingDesign, implement, and secure Kubernetes clusters (AKS and self-managed) .Configure and maintain Kubernetes networking (CNI plugins such as Calico or Cilium,...


  • Soweto, Gauteng, South Africa Skywaves Rise Full time R80 000 - R120 000 per year

    About the CompanySecures platforms and pipelines that handle sensitive geospatial and subscriber information.About the RoleIn this role, you will be responsible for ensuring the security of our platforms and pipelines.ResponsibilitiesSecuring sensitive geospatial information.Managing subscriber information securely.QualificationsRelevant educational...


  • Soweto, Gauteng, South Africa The Legends Agency Full time R144 000 - R201 420 per year

    Armed Response and Tactical OfficerLegends Wanted: Join South Africas Elite Armed Response & Tactical Security TeamMidrand | Shift Rotation | R12 000 pm -  R16 885 pm  basic + benefitsAbout Our ClientOur client is a leading security services provider in South Africa, known for their dedication to protecting communities, businesses, and assets with...

  • Regional Manager

    1 week ago


    Soweto, Gauteng, South Africa Bidvest Protea Coin Full time R1 001 000 - R1 300 000 per year

    The suitable candidate's main responsibilities and duties include, but are not limited to, the following:Job Purpose:The Regional Operations Manager is responsible for overseeing the operational effectiveness, compliance, and performance of the assigned region. This role focuses on monitoring and analysing incidents and trends, coordinating tactical...


  • Soweto, Gauteng, South Africa CareerWeb Full time R1 200 000 - R3 000 000 per year

    Division: IT and OperationsUnit: FTI Information TechnologyLocation - CenturionJOB SUMMARYxxxxxx is South Africa's only specialist agricultural bank established in 1912, the bank's sole objective is to serve South African commercial and emerging farmers and bring specially designed financial services within their reach. These services enable farmers to...

  • Data Scientist

    2 weeks ago


    Soweto, Gauteng, South Africa Mindworx Consulting and Academy Full time R1 000 000 - R3 000 000 per year

    As a BI Data Scientist, you will play a key role in leveraging data to drive insights, informdecision-making, and enhance our life and non-life insurance operations. You will workclosely with cross-functional teams to develop innovative data-driven solutions that addressbusiness challenges and improve overall performance.Role PurposeAs a data scientist, you...


  • Soweto, Gauteng, South Africa Telkom Full time R240 000 - R360 000 per year

    Structural InformationJob number: Job title:Ops Specialist: Application Support ITJob grade:S6Group/ BU:OpenserveDivision:OpenserveSpan of control:0Reports to:ManagementREM Functional Area:ITCore DescriptionResponsible for the execution of IT Support and Operations in the OSS and Inventory domains. Executing on defined run books and IT support interventions...


  • Soweto, Gauteng, South Africa Ntice Sourcing Solutions Full time R900 000 - R1 200 000 per year

    My client (FMCG) is seeking an experienced and dynamic Senior Procurement Specialist - Supply Chain,based in the Randfonteinarea.Job Purpose:To manage and execute procurement activities related to engineering materials, equipment, and services forSouth Africa in a cost-effective manner and compliance with procurement policies and procedures.Key...


  • Soweto, Gauteng, South Africa Ntice Sourcing Solutions Full time R900 000 - R1 200 000 per year

    Job Description My client (FMCG) is seeking an experienced and dynamic Senior Procurement Specialist – Supply Chain, based in the Randfontein area. Job Purpose:To manage and execute procurement activities related to engineering materials, equipment, and services for South Africa in a cost-effective manner and compliance with procurement policies and...


  • Soweto, Gauteng, South Africa Discovery Limited Full time R960 000 - R1 200 000 per year

    About Discovery ConnectPeople increasingly want to transact faster, on their terms, in fluid, and dynamic ways. Discovery Connect facilitates this need as a direct sales channel, leveraging the best of technology with the best in people.We are often a client's first impression of Discovery so we must have the best Discovery ambassadors in our team. At the...