Specialist, Threat Intelligence

3 days ago


Johannesburg, Gauteng, South Africa Standard Bank Full time

Job Overview

Business Segment: Group Functions

Location: ZA, undefined, Johannesburg, 30 Baker Street

Job Type: Full-time

Job Ref ID: A-0001

Date Posted: 12/11/2025

Job Description

To provide Cyber-InfoSec expertise, professional knowledge, and technical skills to prevent cyber-attacks, significant reputational, financial, or other losses. To implement SBGs Cyber Resilience Programme to prevent cyber-attacks, protect sensitive data and systems from infiltration or misuse and execute the InfoSec capabilities against policies, standards, and controls across relevant functions

Qualifications

A degree in Information Technology or Computer Science.

IT Risk/Security certification such as CISM, CISSP or CISA is required.

A relevant Azure/AWS Cloud Certification is required

Experience Required:

Proficiency in Python is required. Experience with PowerShell, Bash and Ruby is an added advantage.

Experience in implementing machine learning and AI-powered automation workflows.

Design, develop, and maintain robust and scalable automation scripts and applications using Python and other scripting languages.

Experience with API integrations, database management (SQL/NoSQL), cloud infrastructures and cloud serverless technologies (e.g. AWS Lambda, Azure Functions) for implementing scalable cloud applications.

Experience with defensive technologies such as SIEMs, EDR tools, Threat Intelligence Platforms (TIP), OSINT tools and offensive technologies such as Burp Suite, Cobalt Strike, and Metasploit is an added advantage.

Experience within Financial Service Industry developing threat models, risk profiles, cybersecurity risk and incident management, and insight into crime in the financial sector.

Strong IT understanding, gaining insight into digital and platform operating models and cyber security trends and solutions, building cyber security intelligence.

Additional Information

Key Responsibilities:

Evaluate, develop and implement cyber security processes, tools integration and automation workflows for intelligence observation, enrichment, triage and investigations.

Implement machine learning and AI-powered automation workflows to provide intelligence observability and enrichment, enabling automated threat scoring reporting, and analysis of threat observations.

Debug, troubleshoot and optimize existing automation workflows and applications.

Document and present technical designs, specifications, and user manuals for all developed tools and workflows.

Integrate intelligence data from open-source, commercial, and internal sources to create a unified view for actionable intelligence analysis.

Research and stay current on application security threats, vulnerabilities, and emerging tactics, techniques and procedures (TTPs).

Familiarity with the MITRE ATT&CK framework, Cyber Kill Chain, or other security-related frameworks.

Support purple teaming exercises to build cyber resiliency across security teams.

Behavioural Competencies:

Adopting Practical Approaches

Articulating Information

Developing Strategies

Embracing Change

Exploring Possibilities

Generating Ideas

Interpreting Data

Making Decisions

Meeting Timescales

Producing Output

Providing Insights

Team Working

Technical Competencies:

Data Analysis

Debugging and Fixing Software

Information Security Management

IT Risk Management

Software Development Life Cycle (SDLC) methodologies & Tools

Technical Analysis

Use of Build and Test Automation

Write Code

Please note: All our recruitment processes comply with the applicable local laws and regulations. We will never ask for money or any from of payment as part of our recruitment process. If you experience this, please contact our Fraud line on or



  • Johannesburg, Gauteng, South Africa Boardroom Appointments Full time R900 000 - R1 200 000 per year

    Minimum requirements:IT Risk/security certification such as CISM, CISSP or CISA Required Relevant Azure/AWS Cloud Certification Required.A degree in information Technology.Experience within FSI developing threat models, risk profiles, cyber security risk and incident management, and insight into crime in the financial sector. Experience in Malware...


  • Johannesburg, Gauteng, South Africa Mimecast Full time

    L1 - Threat Response AnalystAs a Threat Response Analyst you will be joining the Mimecast Messaging Security organization and be responsible for supporting a service for on-demand threat resolution. The service is designed to provide customers with prompt feedback and intelligence on email-borne threats, remediate these threats from their email environment...


  • Johannesburg, Gauteng, South Africa ABSA BANK LIMITED Full time

    Empowering Africa's tomorrow, together…one story at a time.With over 100 years of rich history and strongly positioned as a local bank with regional and international expertise, a career with our family offers the opportunity to be part of this exciting growth journey, to reset our future and shape our destiny as a proudly African group.Job SummaryThis...

  • Security Specialist

    7 days ago


    Johannesburg, Gauteng, South Africa All jobs Full time R900 000 - R1 200 000 per year

    Why choose Logicalis?It's not just IT solutions, It's IT global know-how Logicalis is an international multi-skilled solution provider providing digital enablement services to help customers harness digital technology and innovative services to deliver powerful business outcomes.Our customers span industries and geographical regions; and our focus is to...


  • Johannesburg, Gauteng, South Africa Standard Bank Full time R120 000 - R180 000 per year

    Job OverviewBusiness Segment: Group FunctionsLocation: ZA, undefined, Johannesburg, Simmonds StreetJob Type: Full-timeJob Ref ID: A-0003Date Posted: 11/14/2025Job DescriptionAs a Specialist Incident Response Analyst, you will play a central role in detecting, investigating, and responding to cyber incidents in a non-tiered SOC environment. You will own...


  • Johannesburg, Gauteng, South Africa SavageOne Pty Full time R1 000 000 - R3 000 000 per year

    Description:The Cybersecurity Specialist is responsible for ensuring the security of systems, networks, and data, defending against breaches, vulnerabilities, and cyber-attacks. The role requires an in-depth understanding of security protocols, tools, and best practices to protect the organizations assets from cyber threats. Cybersecurity specialists are...

  • Analyst

    2 weeks ago


    Johannesburg, Gauteng, South Africa Boardroom Appointments Full time R2 000 000 - R2 500 000 per year

    Minimum requirements:A degree in Information Technology5-7 years Experience in risk management and identifying mitigating strategies and plans5-7 years Strong IT understanding, gaining insight into digital and platform operating models and cyber security trends and solutions8-10 years Experience in technical and business management; databases, operating...


  • Johannesburg, Gauteng, South Africa Dis-Chem Life Full time R800 000 - R1 200 000 per year

    Purpose of the Role:The Marketing Intelligence Specialist ensures every marketing decision at Dis-Chem Life is informed by accurate, consistent, and actionable data. The role supports the full marketing measurement process, from data capture and campaign tracking through to clear, timely reporting that enables smarter optimisation across all channels.This...


  • Johannesburg, Gauteng, South Africa Boardroom Appointments Full time R120 000 - R180 000 per year

    Minimum requirements:Type of Qualification: Post Graduate DegreeField of Study: Information TechnologyPreferred QualificationsType of Qualification: MastersField of Study: Information Technology5-7 years - Intelligent Automation OperationsExperience in the AI and ML area.Other Preferred Qualifications, certifications or professional memberships:Cloud...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Job PurposeTo lead the Intelligent Solutions, stream by driving the design and delivery of advanced automation and AI-driven solutions. This role ensures technical excellence through Generative AI, low-code platforms (Power Apps), enterprise AI ecosystems (AI Hub, Azure Foundry), and robust integration capabilities. The incumbent will enable scalable,...