Senior Cyber Security Analyst

4 days ago


City of Cape Town Metropolitan Municipality WC, South Africa 60 Degrees Full time

Job Description

THE OPPORTUNITY THAT AWAITS YOU

Do you thrive in high‑stakes security environments—where speed, precision, and ownership make all the difference?
We're hiring Senior and Mid‑Level SOC Analysts with proven expertise in Microsoft Sentinel, KQL, and modern detection/response workflows. In this role, you'll be part of a global security operations team safeguarding enterprise clients across complex industries such as oil & gas, supply chain, and manufacturing.
If you're passionate about threat detection, incident response, and deep‑dive investigations, and you enjoy automating playbooks to stop real threats in their tracks, we want to hear from you.
WHAT YOU WILL BE WORKING ON?
  • Security alerts, escalations, and investigations across cloud and hybrid client environments
  • Custom detections using KQL and Microsoft Sentinel
  • Threat hunting projects aligned to MITRE ATT&CK
  • SOAR playbooks and automation for faster, smarter response
  • Dashboards, reporting, and detection logic tuning
  • Engagement with client-side security and ops teams
  • Collaborating with peers across UK, RSA, and global regions
YOUR KEY RESPONSIBILITIES
  • Lead or support real-time incident triage, analysis, and containment
  • Investigate advanced threats across multi-tenant or enterprise SOC environments
  • Build and improve detection rules, alerts, and dashboards
  • Develop and maintain response playbooks, integrating SOAR workflows
  • Stay up to date with emerging threats, TTPs, and adversary techniques
  • Represent the SOC team in stakeholder meetings and client reviews
  • Mentor junior analysts and contribute to ongoing capability uplift
OUR REQUIRED EXPERTISE
Technical Expertise
  • 3–5+ years in a SOC or incident response function (MSSP experience a plus)
  • Proven experience with Microsoft Sentinel, EDR tools, Azure Security, and KQL
  • Familiar with SIEMs like Splunk, QRadar, LogRhythm, or Wazuh
  • Understanding of cloud platforms like AWS, Azure, or GCP
  • Strong grasp of MITRE ATT&CK, Cyber Kill Chain, and malware analysis fundamentals
  • Experience automating security workflows using Logic Apps, Power Automate, or similar
Problem-Solving & Ownership
  • Thrives on complex investigations and "why did this happen?" thinking
  • Strong documentation habits and a mindset of continuous improvement
  • Ability to work independently while driving collaborative outcomes
Collaboration & Communication
  • Confident communicator across technical and non-technical stakeholders
  • Able to explain risk, impact, and response to senior decision-makers
  • Comfortable managing multiple investigations across parallel client environments

Working Model: Remote-first (Cape Town based), aligned to UK business hours (RSA-based team)

For more roles, please have a look at our website (). or follow us on LinkedIn )


  • Cape Town, Western Cape, South Africa BOSS ERP Consulting Full time R60 000 - R120 000 per year

    Cybersecurity AnalystWe are seeking a Cybersecurity Analyst to support the Group Cyber Security Manager with operational security support utilising your knowledge of threats and vulnerabilities using the Microsoft Defender security suite.As a Cybersecurity Analyst we are seeking the following skills and experience:2+ years' experience in a security analyst...


  • Cape Town, South Africa Exclusively Remote Full time

    One of our US based clients are looking for experienced Cyber Security Analyst/Specialist with a strong background in Cyber Security and prior experience working for a Managed Service Provider (MSP). Responsibilities: - **Cyber Security**: Implement and manage cyber security solutions to safeguard clients' IT environments from potential threats,...


  • Cape Town, South Africa The Vocation Station Full time

    **Cyber Security Analyst (blue_team)** **(Intermediate/senior)** **_ The team is growing at a rapid rate and we are looking to add some more awesome, experienced team players! **_This position is suitable for the individual that wants to grow and contribute to the BLUE TEAM side of cybersecurity._** **What you will be doing**: Investigate incidents to...


  • Stellenbosch, WC Western Cape, South Africa XContent Business Solutions (Pty) Ltd Full time R70 000 - R75 000

    Location Stellenbosch (Hybrid)   Purpose of the Role This role leads advanced cyber defense initiatives for our Cape Town clients, focusing on Microsoft Defender and Sentinel deployments, incident response leadership, and complex threat management. Responsible for mentoring staff and continuously improving detection and response capabilities.  ...


  • Cape Town, Western Cape, South Africa Communicate Ct Full time R50 000 - R80 000 per year

    Our client is looking for a curious, energetic, and sharp-minded Cyber Security Analyst who will be part of an international team.  If you live for uncovering anomalies, chasing down threats and have a passionate about cybersecurity, then we would like to hear from you.Threat detection & monitoring: Analyse logs, hunt for threats, and keep adversaries at...


  • City of Tshwane, Gauteng, South Africa Zeal HR Full time

    Cyber Security Consultant **Introduction** Our client is a very well-established IT and Cybersecurity firm in Gauteng. Cyber Security Consultant focus on protecting online data from being compromised. The work is multifaceted, involving analysing everything from networks to computers, policies, guidelines, training, vulnerability testing, and software...


  • Cape Town, South Africa Ukufunda Business Solutions (Pty) Ltd Full time

    architecture discussions with senior customer executives, Enterprise Architects, IT Management and Developers to drive Cyber Security solutions. Architect Cyber Security solutions and supporting infrastructure (physical / virtual infrastructure, operating systems and supporting software) in alignment with organizational goals and constraints. Maintain and...


  • Cape Town, South Africa The Vocation Station Full time

    **Cyber Security Team Assistant** - Our client has a great company culture with a hybrid / remote work policy_ The MDR team has grown to an amazing size and we are now needing to appoint a switched-on Team Assistant to take over all the administrative and recurring tasks in order for the Engineers to do what they do best. This role is for someone that...


  • Cape Town, South Africa Integrity360 Full time

    Company Integrity360 – the largest independent cyber‑security provider in Europe with over 700 employees, 12 locations and six Security Operations Centres (SOCs) – including Dublin, Sofia, Stockholm, Madrid, Naples and Cape Town. Location Cape Town, Western Cape, South Africa Job Title Senior Cyber Incident Response Analyst About Us Integrity360’s...


  • Johannesburg Metropolitan Area, South Africa Prima Secure Full time

    Sandton, JohannesburgFull-Time | Start Date: 1 February 2025Prima Secure (Pty) LtdAbout Prima SecurePrima Secure is a leading cybersecurity solutions provider serving enterprise clients across Africa. We follow a consultative, NIST-aligned methodology and are committed to developing talent into senior technical roles.We are seeking a driven Cyber Security...