SecOps Incident Responder

4 days ago


Cape Town, Western Cape, South Africa Redherd Full time R600 000 - R1 200 000 per year
Redherd is partnering with a large, well-established retail group to help expand their internal cyber security operations team. We're looking for a technically skilled Blue Teamer with strong incident response and SOC transformation experience, who's excited about defending against evolving cyber threats and maturing detection and response capabilities.
About Redherd

Redherd is a specialist cyber security recruitment firm working across offensive, defensive, and cloud security domains. We help security teams scale globally, placing exceptional talent into impactful roles — from start-ups to security consultancies to Fortune 500s. If you're looking for a role where your skills actually matter, we'll help you find it.

About the Company

Our client is a respected multi-channel retailer headquartered in Cape Town, known for its customer-first ethos and digital transformation journey. The security function is growing, with dedicated investments in both red and blue capabilities. This is a high-impact role within a collaborative and ambitious cyber team working to build and enhance a mature internal security operation.

Role Overview: Cyber Security Specialist – Blue Team

This is a hands-on technical role focused on blue teaming, incident response, and transforming SOC capabilities. You'll work across the Cyber team, GRC, and broader IT to improve detection, defence, and reporting, while maturing toolsets and processes. You'll also play a key role in automation, threat hunting, and metric-driven reporting.

Key Responsibilities
  • Respond to and investigate security incidents, including containment and root cause analysis

  • Maintain and enhance defensive toolsets such as XDR, SIEM, and EDR

  • Enable active defence through continual control validation across infrastructure, cloud, platforms, and applications

  • Investigate and implement new technologies and automation to improve detection and response

  • Collaborate with red team and threat hunters to improve posture based on discovered TTPs

  • Support the build-out of threat intelligence capabilities

  • Conduct proactive threat hunting and feed findings back into blue team processes

  • Develop and maintain reporting, dashboards, and key cyber security metrics

  • Build strong stakeholder relationships to support security operations implementation

  • Support broader security initiatives and cross-team collaboration

  • Champion internal security solutions, define standards, and guide implementation of improvements

Job Requirements

Minimum Requirements:

  • Matric and relevant IT or Cyber Security degree/diploma

  • Minimum 3+ years hands-on cyber security operations experience

  • Strong experience in incident response and blue teaming

  • Familiarity with EDR, Microsoft security stack, SIEM platforms

  • Broad understanding of IAM, data security, vulnerability management, infrastructure/cloud/platform security

  • Willingness to assist after hours or be on standby if needed

Advantageous:

  • Certifications such as SANS Cyber Defence, CREST Incident Response

  • Familiarity with MITRE ATT&CK

  • Ability to script or automate (e.g. Python, PowerShell, etc.)



  • Cape Town, Western Cape, South Africa S-RM Full time R1 000 000 - R2 500 000 per year

    Our Incident Response Senior Analysts are a critical part of our Cyber Security division's success.You will work across the full lifecycle of security incidents to help our clients respond and recover, including:Help manage incident response cases from first contact through to closure: you will be the primary point of contact for all internal and external...

  • Incident Manager

    1 week ago


    Cape Town, Western Cape, South Africa Ultima Full time R150 000 - R250 000 per year

    Incident Manager - Part time – Just after MidnightLocation:RemotePart time - between 24 – 32 hours per week – Day shifts includingSaturday and Sundays 9am to 4pm (UK hours)The roleAn SLA is the promise of response time we make to our clients, and you are how we make that happen. Our Incident Managers are our first responders, who ensure that an SLA is...


  • Cape Town, Western Cape, South Africa Canonical - Jobs Full time R120 000 - R180 000 per year

    This global leadership role in cyber security is to manage the Security Operations (SecOps) team responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies. The team is the primary owner of strategy and practices that determine how Canonical secures its data, internal infrastructure and build...


  • Cape Town, Western Cape, South Africa Integrity360 Full time R400 000 - R1 200 000 per year

    About UsIntegrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and the Caribbean. With over 700 employees, across 12 locations, and six Security Operations Centres (SOCs)—including locations in Dublin, Sofia, Stockholm, Madrid, Naples and Cape...


  • Cape Town, Western Cape, South Africa Lula Full time R600 000 - R1 200 000 per year

    Job title: Senior Security Operations EngineerReporting to: Engineering Team LeadLocation: Cape TownALL STAFF APPOINTMENTS WILL BE MADE WITH DUE CONSIDERATION OF THE COMPANY'S EE TARGETSWHAT WE DOLula is an innovative and human-focused FinTech company on a mission to help small businesses optimise their cash flow. Our purpose is to help SMEs manage their...


  • Cape Town, Western Cape, South Africa Redherd Full time R250 000 - R500 000 per year

    Redherd is proud to be partnering with one of South Africa's most iconic retailers to hire a skilled Red Teamer with a passion for offensive security, AppSec, and DevSecOps. This is a hybrid role based in Cape Town, ideal for a mid-to-senior professional ready to make a measurable impact.About RedherdWe're a technical security recruitment firm that connects...


  • Cape Town, Western Cape, South Africa NTT Ltd. Full time R1 800 000 - R2 500 000 per year

    Make an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive. Your day at NTT DATAThe Senior...


  • Cape Town, Western Cape, South Africa NTT DATA, Inc. Full time R1 800 000 - R2 500 000 per year

    Make an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive.Your day at NTT DATAThe Senior...


  • Cape Town, Western Cape, South Africa NTT Ltd. Full time R250 000 - R500 000 per year

    Make an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive. Your day at NTT DATAThe Associate...


  • Cape Town, Western Cape, South Africa WNS Global Services Full time R250 000 - R400 000 per year

    Company DescriptionWNS (Holdings) Limited (NYSE: WNS) is a global Business Process Management (BPM) leader. WNS offers business value to 400+ global clients by combining operational excellence with deep domain expertise in key industry verticals, including Banking and Financial Services, Consulting and Professional Services, Healthcare, Insurance,...