Information Security Centre Analyst Level 3

 

Recruiter:

T-Systems

Job Ref:

52100321

Date posted:

Wednesday, March 10, 2021

Location:

Johannesburg, South Africa

Salary:

Annual Salary and Employee benefits


SUMMARY:
Information Security Operations Centre Analyst

POSITION INFO:

Main Purpose:

To analyse security events and alerts and to gather and carry out remediation tasks on console for T-systems clients through its toolsets, operational monitoring, preventative actions and crisis management.

Description of responsibilities:

  • Conduct cyber intelligence operations including intelligence collection, tracking threat actors, identifying malicious behaviors and operations.
  • Works with customers, vendors and internal resources for problem resolution and security advisories.
  • Standardizes process and procedures and provides continual improvement.
  • Develops and maintain comprehensive documentation on incidents and analysis for clients and internal.
  • Compile security advisories for internal and external in document format with technical recommendations.
  • Use case writing, development and refinement for detection of threats.
  • Proactively search for rogue behavior, malicious attacks & suspicious activity.
  • Training of junior analysts.
  • Analyze threat feeds to produce daily/weekly/monthly Threat Intelligence brief and regular threat trend reporting.
  • Analyse security events/alerts and recommend remedial actions.
  • Analyse vulnerability scan data and recommend remedial actions.
  • Analyse trends across time and clients for remedial actions.
  • Provide analysis in contracted reports.
  • Healthchecks on monitored devices.
  • Analyse Network flow data & investigate deviations from baseline.
  • Pro-actively hunt for threats, vulnerabilities & suspicious activity.
  • Investigate suspicious emails for phishing attacks.

Qualifications and Experience Required: 

  • Grade 12 (essential). 
  • Certification in IBM QRadar essential.
  • Experience analyzing phishing attacks
  • CISSP, CEH, GPEN, OSCP or similar security certifications.
  • Experience producing reports and briefs on the current threat landscape and associated risks.
  • Experience monitoring third party security related websites, forums and social media sites for information regarding vulnerabilities and exploits.
  • Experience conducting malware analysis – usage of VirusTotal etc.
  • Experience replicating reported vulnerabilities in a safe and contained environment to develop proof of concept and/or exploit tools.
  • Working Knowledge with the folloiwng technologies: Windows and Active Directory, Unix and Linux, Routers & Switches, Anti-Malware Systems, Relational Databases, Open Source Intelligence, Firewall, IDS/IPS, Vulnerability Management & Proxy management or solid understanding of these technologies.
  • 5 – 8 years work related experience as a Level 1/2 Analyst.
  • SOC/SIEM systems Certifications – IBM Qradar essential.
  • Formal training in Networking and networking protocols – CCNA advantageous.
  • Experience in malware investigation advantageous.
  • Experience in server/network/firewall/ips administration.
  • Experience in a Security Operations Centre environment & a Network Monitoring environment.
  • Relevant Courses eg  Security +, introduction to information security an advantage.
  • Understanding of the different types of Cyber Security Attacks & how to prevent them.

 Key competencies:

  • How to analyse data
  • IBM – QRadar experience
  • Must have an understanding of use cases
  • Must have excellent problem-solving skills.
  • Detailed technical knowledge of technology protocols (TCP/IP, SMB, SSH etc)
  • Good knowledge of scripting languages
  • Communication skills (verbal and written - report writing, email and presentation)
  • Problem solving skills
  • Customer orientation
  • Planning and organising skills
  • Analysing skills
  • Writing and Reporting
  • Learning and Researching
  • Creating & Innovating
  • Delivering Results & Meeting Customer Expectations

 

   
     


 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Information Security Officer
Location: Johannesburg
Salary:
Our client in the telecommunications sector is looking for a information security Officer on a contract duration of 5 months.  Role OverviewThe information security Officer is responsible for implementing and managing the organization’s information security controls, policies, and governance frameworks. This role ensures that enterprise systems, data, and digital platforms are protected...
18 days ago


Information Security Engineer - Hybrid
Location: Pretoria
Salary:
54 days ago


Information Security Manager
Location: Midrand
Salary:
Cybersecurity is not just about tools, it is about strategy, leadership and staying one step ahead. Our client is looking for a information security Manager to lead their cybersecurity strategy, governance, and operations across a modern hybrid environment.
61 days ago


Information Security Manager
Location: Midrand
Salary:
Ready to code your way into the future? Join a team that’s redefining how ads find you—where location meets innovation. If you’re passionate about building next-gen web applications and thrive in high-traffic, real-time environments, this is your playground
67 days ago


Key Accounts Manager
Location: Centurion
Salary:
A vacant position exists for a National Key Accounts Manager in the Guarding Division based in Centurion (National). The suitable candidate’s primary responsibilities and duties include, but are not limited to, the following:
11 days ago


IT Executive (QSR) - KZN
Location: Johannesburg
Salary:
15 days ago


Branch Manager
Location: Krugersdorp
Salary: Market related
To effectively manage branch resources and procedures
18 days ago


Enterprise Architect
Location: Johannesburg
Salary:
18 days ago


Sales Manager, Financial Services
Location: Pretoria
Salary:
22 days ago


Senior Account Manager (Public Sector)
Location: Centurion
Salary:
22 days ago


Create a free job alert for Information Security Centre Analyst Level 3 in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions