Information Security Centre Analyst Level 3

 

Recruiter:

T-Systems

Job Ref:

52100321

Date posted:

Wednesday, March 10, 2021

Location:

Johannesburg, South Africa

Salary:

Annual Salary and Employee benefits


SUMMARY:
Information Security Operations Centre Analyst

POSITION INFO:

Main Purpose:

To analyse security events and alerts and to gather and carry out remediation tasks on console for T-systems clients through its toolsets, operational monitoring, preventative actions and crisis management.

Description of responsibilities:

  • Conduct cyber intelligence operations including intelligence collection, tracking threat actors, identifying malicious behaviors and operations.
  • Works with customers, vendors and internal resources for problem resolution and security advisories.
  • Standardizes process and procedures and provides continual improvement.
  • Develops and maintain comprehensive documentation on incidents and analysis for clients and internal.
  • Compile security advisories for internal and external in document format with technical recommendations.
  • Use case writing, development and refinement for detection of threats.
  • Proactively search for rogue behavior, malicious attacks & suspicious activity.
  • Training of junior analysts.
  • Analyze threat feeds to produce daily/weekly/monthly Threat Intelligence brief and regular threat trend reporting.
  • Analyse security events/alerts and recommend remedial actions.
  • Analyse vulnerability scan data and recommend remedial actions.
  • Analyse trends across time and clients for remedial actions.
  • Provide analysis in contracted reports.
  • Healthchecks on monitored devices.
  • Analyse Network flow data & investigate deviations from baseline.
  • Pro-actively hunt for threats, vulnerabilities & suspicious activity.
  • Investigate suspicious emails for phishing attacks.

Qualifications and Experience Required: 

  • Grade 12 (essential). 
  • Certification in IBM QRadar essential.
  • Experience analyzing phishing attacks
  • CISSP, CEH, GPEN, OSCP or similar security certifications.
  • Experience producing reports and briefs on the current threat landscape and associated risks.
  • Experience monitoring third party security related websites, forums and social media sites for information regarding vulnerabilities and exploits.
  • Experience conducting malware analysis – usage of VirusTotal etc.
  • Experience replicating reported vulnerabilities in a safe and contained environment to develop proof of concept and/or exploit tools.
  • Working Knowledge with the folloiwng technologies: Windows and Active Directory, Unix and Linux, Routers & Switches, Anti-Malware Systems, Relational Databases, Open Source Intelligence, Firewall, IDS/IPS, Vulnerability Management & Proxy management or solid understanding of these technologies.
  • 5 – 8 years work related experience as a Level 1/2 Analyst.
  • SOC/SIEM systems Certifications – IBM Qradar essential.
  • Formal training in Networking and networking protocols – CCNA advantageous.
  • Experience in malware investigation advantageous.
  • Experience in server/network/firewall/ips administration.
  • Experience in a Security Operations Centre environment & a Network Monitoring environment.
  • Relevant Courses eg  Security +, introduction to information security an advantage.
  • Understanding of the different types of Cyber Security Attacks & how to prevent them.

 Key competencies:

  • How to analyse data
  • IBM – QRadar experience
  • Must have an understanding of use cases
  • Must have excellent problem-solving skills.
  • Detailed technical knowledge of technology protocols (TCP/IP, SMB, SSH etc)
  • Good knowledge of scripting languages
  • Communication skills (verbal and written - report writing, email and presentation)
  • Problem solving skills
  • Customer orientation
  • Planning and organising skills
  • Analysing skills
  • Writing and Reporting
  • Learning and Researching
  • Creating & Innovating
  • Delivering Results & Meeting Customer Expectations

 

   
     


 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

AI Information Security Manager
Location: Johannesburg
Salary:
9 days ago


Information Security and Governance Senior Manager
Location: Johannesburg
Salary: Negotiable
information security and Governance Senior Manager
23 days ago


Chief Information Security Officer (CISO)
Location: Centurion
Salary:
Managed Talent Solutions is looking for a seasoned Chief information security Officer (CISO) for one of their client based in Centurion to lead enterprise-wide cyber security efforts. In this strategic leadership role, the successful candidate will be responsible for driving the Group’s information security strategy, ensuring the protection of the company’s digital assets, systems...
23 days ago


ATM Reconciliation Administrator
Location: Johannesburg
Salary: R0 per month
We are seeking a detail-oriented ATM Reconciliations Administrator to join our team
1 day ago


ATM Reconciliation Administrator
Location: Johannesburg
Salary: R0 per month
We are seeking a detail-oriented ATM Reconciliations Administrator to join our team
1 day ago


ATM Reconciliation Administrator
Location: Johannesburg
Salary: R0 per month
We are seeking a detail-oriented ATM Reconciliations Administrator to join our team
1 day ago


ATM Reconciliation Administrator
Location: Johannesburg
Salary: R0 per month
We are seeking a detail-oriented ATM Reconciliations Administrator to join our team
1 day ago


ATM Reconciliation Administrator
Location: Johannesburg
Salary: R0 per month
We are seeking a detail-oriented ATM Reconciliations Administrator to join our team
3 days ago


Junior Plant Specialist
Location: Midrand
Salary:
Our client, based in Midrand, is looking for a Data centre Plant Specialist to join their team. Primary FunctionAs a Data centre Plant Specialist, you will be a subject matter expert supporting the maintenance and development of the data centres, communications rooms and underlying digital infrastructure so that they are highly available, secure and fit-for-purpose for the client requirements.
9 days ago


Area Manager
Location: Johannesburg
Salary:
An Internal Vacancy exists for an Area Manager in the Guarding Division – Johannesburg North The suitable candidate’s main responsibilities and duties include, but are not limited to, the following:   
10 days ago


Create a free job alert for Information Security Centre Analyst Level 3 in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions