Cybersecurity (SOC) Analyst
1 week ago
THE ROLE
Our Security Operations Centre is a critical part of our Cybersecurity division's success.
As a Cybersecurity Analyst (SOC), you will deploy your cybersecurity expertise in a vital delivery role across our managed detection and response services.
In this role, you will use infrastructure and tools that power our Security Operations Center (SOC) to deliver desired security outcomes for our managed services clients. The ideal candidate will have familiarity with security tools such as SIEM, SOAR, EDR, and other advanced technology. You will have a proven ability to respond effectively to security incidents. This hybrid role involves both remote work and some in-office presence for collaboration, teamwork and development.
Delivery
- Monitor Security Events: Continuously monitor and analyse security alerts from EDR, SIEM and other security tools to detect suspicious activities or potential threats.
- Incident Response: Lead investigations and respond to security incidents, executing containment, mitigation, and remediation steps as necessary.
- Threat Hunting: Proactively search for indicators of compromise (IoCs) and advanced threats within the environment, utilising both automated tools and manual analysis.
- Threat Detection: Use expertise to tune detection rules, automate workflows, and improve incident detection accuracy.
- Log Analysis: Perform in-depth log analysis from firewalls, endpoint protection platforms, and SIEM solutions to investigate complex incidents.
- Threat Intelligence: Stay informed of emerging threats and collaborate with the threat intelligence team to enhance detection capabilities.
- Incident Reporting and Documentation: Ensure detailed documentation of incidents, responses, and resolutions to maintain a clear incident management process.
- Shift Work: Participate in a 24/7 shift rotation to ensure continuous security monitoring, including evening, night, and weekend shifts.
Growth of the service
- Continuous Improvement: Work closely with other IT teams, security engineers, and senior SOC members to refine detection processes and improve overall security posture.
- Collaboration: Collaborate with SOC analysts, security engineers, and IT teams to ensure seamless operation of security tools and alignment with broader cybersecurity practices.
- Security Enhancements: Identify areas for improvement in security monitoring and response capabilities, proposing and assist with implementing new solutions where appropriate.
- Collaborating with Global Teams: Work closely with other cyber security teams to ensure seamless integration of SOC operations with our broader cybersecurity initiatives and business units especially Incident Response.
- Contributing to Internal Technical Development Initiatives: When the schedule allows, you will have opportunities to participate in and contribute to internal technical development initiatives, enhancing our tools, processes, and overall incident response capabilities.
WHAT WE'RE LOOKING FOR
Candidates with the following qualifications and experience are likely to succeed in our Managed Services practice at S-RM.
That said, if you don't think you meet all of the criteria below but still are interested in the job, please apply. Nobody checks every box—we're looking for candidates that are particularly strong in a few areas and have some interest and capabilities in others.
We nurture a culture of equality, diversity and inclusion and we are dedicated to developing a workforce that displays a variety of talents, experiences and perspectives.
We're looking for:
- Qualifications: A Bachelors degree in a relevant subject, for example cybersecurity, computer science. Relevant industry certifications are advantageous, including any of the following: CISSP, CISM, GCFA, GSOC, GREM, GCWN, GCED, CCNA, OSCP, Network+ and Security+ or evidence of working towards attaining these.
- Experience: 2+ years of experience in a SOC or cybersecurity operations role.
- Technical Expertise: Solid understanding of security fundamentals, including threat detection, incident response, malware analysis, and network security.
- Tools: Expertise in EDR is required. Familiarity with other security tools such as SIEM, firewalls, and IDS/IPS is desirable.
- Incident Response: Good experience in responding to and remediating security incidents, including credential theft, ransomware, phishing, and malware attacks.
- Approach: An investigative mindset. You should be comfortable solving problems with limited information and guidance.
- Threat intelligence: Some demonstrable knowledge of cyber threat actors, and their tactics, techniques, and procedures.
- Threat Detection: Understanding of security monitoring, threat detection techniques, and the ability to exploit detection systems for optimal performance.
- Communication: Clear and concise verbal communication skills, with the ability to work effectively across teams; preferably you should be able to communicate technical findings to a non-technical audience. Able to write and format incident reports and summaries.
The successful candidate must have permission to work in South Africa by the start of their employment.
To apply for this role, please submit an up-to-date CV through this link: Job Application for Cybersecurity (SOC) Analyst at S-RM
-
Cybersecurity Analyst
3 days ago
Cape Town, Western Cape, South Africa Boardroom Appointments Full time R900 000 - R1 200 000 per yearJob Purpose: You will be responsible for analyzing and reporting on network traffic, implementing solutions that provide IT security, and coordinating various teams within the company. You will report directly to one of our Senior Managers in order to receive daily instructions on what is needed from you. This includes all aspects of your job such as:...
-
Information Security Analyst
1 week ago
Cape Town, Western Cape, South Africa Lexdan Full time R400 000 - R800 000 per yearLexdan Select is assisting a financial services company in their search for an information security analyst, based in Cape Town city centre.This is a hybrid role, with 2 to 3 days in-office.Salary: R to R p.a. Duties and responsibilities:Threat and Vulnerability Monitoring: Continuously monitor our environment to detect potential threats and vulnerabilities,...
-
Information Security Analyst
2 weeks ago
Cape Town, Western Cape, South Africa Lexdan Select Full time R180 000 - R250 000 per yearLexdan Select is assisting a financial services company in their search for an Information Security Analyst, based in Cape Town city.This is a hybrid role, with 2 days in-office.Salary: R to R p.a.Duties and responsibilities:Threat and Vulnerability Monitoring: Continuously monitor our environment to detect potential threats and vulnerabilities, ensuring...
-
Senior Cyber Security Analyst
2 weeks ago
Cape Town, Western Cape, South Africa Parvana Full time R900 000 - R1 200 000 per yearAbout our client:Our international client has redefined the approach to addressing client security needs by reshaping support strategies, tapping into existing client technologies, optimising or complementing their current resources, all while aligning seamlessly with their financial parameters. Through the integration of cutting-edge technologies such as...
-
Security Analyst I
3 days ago
Cape Town, Western Cape, South Africa Boardroom Appointments Full time R250 000 - R500 000 per yearMinimum Requirements:Diploma / Degree in computer science, cybersecurity, or any related field.Recognised industry certifications in cybersecurity such as PCI Professional (PCIP), Certified Information Systems Security Professional (CISSP), or Certified Information Security Manager (CISM).+2 years of experience in cybersecurity, with solid experience across...
-
Security Platform Manager
20 hours ago
Cape Town, Western Cape, South Africa Mediro ICT Full time R700 000 - R1 100 000 per yearYou will be responsible for overseeing the deployment, operation and optimisation of the organisation's Cybersecurity tools and platforms.Manage a small team of Linux / DevOps Engineers.Platform Management and Administration.Deploy, configure and maintain platforms such as SIEM (Splunk or ArcSight), Endpoint Detection and Response tools such as CrowdStrike,...
-
Cyber Security Specialist: Engineering
6 days ago
Cape Town, Western Cape, South Africa Redherd Full time R900 000 - R1 200 000 per yearCyber Security Specialist: EngineeringAbout RedherdRedherd is a specialist technical cybersecurity recruitment firm supporting organisations that are building or maturing high-performance cyber functions. We partner with companies undergoing significant digital transformation who need deeply skilled security professionals capable of...
-
Enterprise Client Manager/Director
20 hours ago
Cape Town, Western Cape, South Africa Integrity360 Full time R100 000 - R120 000 per yearAbout UsIntegrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and the Caribbean. With over 700 employees, across 12 locations, and six Security Operations Centres (SOCs)—including locations in Dublin, Sofia, Stockholm, Madrid, Naples and Cape...
-
Enterprise Client Manager/Director
20 hours ago
Cape Town, Western Cape, South Africa Integrity360 Full time R65 - R150 per yearAbout UsIntegrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and the Caribbean. With over 700 employees, across 12 locations, and six Security Operations Centres (SOCs)—including locations in Dublin, Sofia, Stockholm, Madrid, Naples and Cape...
-
Senior Full Stack Developer
1 week ago
Cape Town, Western Cape, South Africa Integrity360 Full time R120 000 - R180 000 per year*We are currently hiring in the following locations for this role: Madrid, Rome, Sofia, Stockholm, Cape Town and Johannesburg. Expectation of 1 day per month in the office required. MUST HAVE FULL RIGHT TO WORK WITHIN ANY OF THOSE LOCATIONS. *About UsIntegrity360 is the largest independent cyber security provider in Europe, with a growing international...