Senior Security Analyst [SOC]

 

Recruiter:

IOCO

Job Ref:

iOCO01133

Date posted:

Friday, August 26, 2022

Location:

Johannesburg, South Africa

Salary:

Negotiable


JOB SUMMARY:
The Role:

Essential function:

  • Monitor, Manage and configure of Security Tools
  • Monitor User, Network, Threat and other events from security tools to identify abnormal activity indicating security incidents
  • Review and correlate incident information es...

    JOB DESCRIPTION:

    The Role:

    Essential function:

    • Monitor, Manage and configure of Security Tools
    • Monitor User, Network, Threat and other events from security tools to identify abnormal activity indicating security incidents
    • Review and correlate incident information escalated from Tier 1 Analysts to determine and assess their urgency and impact 
    • Evaluate the incident, identify the cause, and implement required actions to mitigate, prevent and/or recover from the incident
    • Proactively research and monitor security trends and information to identify potential threats and implement capabilities to proactively detect and respond 
    • Creating, maintaining and optimizing of SIEM Rules to reduce false positive, improve accuracy and improve detection capabilities
    • Establish a detailed understanding of clientâ??s infrastructure
    • Establish a detailed understanding of clients incidence response processes 
    • Research and understand and stay abreast with the Mitre Attck Framework 
    • Create and update Security incidents in ITSM platform with detailed information of logs relevant to the incident
    • Update and track incidents and requests based on analysis results and incident response updates
    • Escalate validated and confirmed Incidents to TIER 2 and designated incident response teams
    • Work Closely with other security teams and designated incident response teams
    • Establish and document root cause and remediation responses 
    • Create client request for information elements and reports
    • Identify and address gaps and/or omissions in security detection and posture. 
    • Perform Purple team exercises and develop rules around said exercises. 
    • Develop Run-book and Playbooks 
    • Automate Run-books and Playbooks for response and remediation processes. 
    • Support and assist senior analysts
    Skills and Experience:

    Essential Qualification:

    • Grade 12
    • Industry recognised (vendor neutral) security certification (e.g. CISSP, CEH, Security+, GIAC, etc.)

    Preferred Qualification:

    • Hold an industry recognised (vendor neutral) security certification (e.g. CISSP, CEH, Security+, etc.)
    • Degree (or equivalent) in Information Technology/Security, Engineering or related field of study preferred (alternatively an equivalent combination of education and experience).
    • Min 5 years in a hands-on security role, with a strong background in security tools including but not limited to firewalls, IDS/IPS, proxy servers and endpoint protection 
    • Holds a recognised SIEM Tool Certification

    Experience required:

    • 5+ Years of experience with Information Security with experience in a SOC environment, with demonstrable expertise in SIEM (LogPoint, QRadar, Splunk McAfee or ArcSight)
    • 5+ Years of experience in an operations focused information security role, with a strong background in security controls and risk management frameworks 
    • Mitre Attack Framework (or equivalent) understanding as well as security and data compliance requirements,
    • Demonstrable understanding of operating systems, applications and information technology systems along with their purpose and logging capabilities
    Other:

    Work environment:

    • Security Operations Centre

    Physical demands:

    • Office Based in the Security Operations Centre Ad-Hoc Remote support

    Travel:

    • Potential travel after hours/weekends for breach incidents

     

    NB! This job is now closed. You can apply for other jobs by uploading your CV.



     

 

 

Similar jobs you might be interested in:

Senior Security Analyst
Location: Cape Town
Salary:
1 day ago


Senior IT Auditor (Security)
Location: Johannesburg
Salary: 900000 Annually
Join our client as a senior IT Auditor (security) and Safeguard their Digital Future!
7 days ago


Senior IT Security Specialist
Location: Sandton
Salary: Annually
To actively protect the organisations information technology assets and infrastructure from external or internal threats and ensuring compliance with statutory and regulatory requirements regarding information security and privacy. Also, to ensure security controls are implemented and managed across the organisation and to improve the overall security posture while maintaining the integrity of the...
9 days ago


Senior Solutions Architect (Cyber Security)
Location: Johannesburg
Salary:
Our client in the Telecom sector is seeking a professional senior Solutions Architect on a 12 months contract duration.
10 days ago


Senior Network Security Engineer
Location: Johannesburg
Salary:
On behalf of our client—a leading organization in the automotive industry—we are seeking a senior Network security Engineer to play a pivotal role in safeguarding and optimizing their enterprise IT infrastructure.In this critical position, you'll take the lead on network security operations, provide mentorship to technical teams, and navigate complex security challenges across a dynami...
12 days ago


Information Security and Governance Senior Manager
Location: Johannesburg
Salary: Negotiable
Information security and Governance senior Manager
61 days ago


Azure Infrastructure and Security Specialist (Senior) 1405
Location: Midrand
Salary:
Hiring Now: Azure Infrastructure and security SpecialistAre you an experienced Azure Infrastructure and security Specialist looking for your next challenge? Join a dynamic team and play a crucial role in managing and securing enterprise IT architectures.
2 days ago


IT Auditor
Location: Johannesburg
Salary: 800
Lead the audits that protect our tech — and raise the bar for everyone else
2 days ago


Data Scientist (GCP)
Location: Stellenbosch
Salary: Annually
Data Scientist with strong expertise in GCP (Google Cloud Platform) who will be responsible for designing, building and maintaining scalable data pipelines and architectures that powers the business
3 days ago


Junior Systems Engineer
Location: Midrand
Salary: Negotiable
Are you a tech enthusiast ready to kickstart your IT career? We’re looking for a Junior Systems Engineer to support our growing infrastructure and gain exposure to a wide range of technologies. You’ll work alongside experienced engineers, develop your technical skills, and be part of a colla...
11 days ago


Create a free job alert for Senior Security Analyst [SOC] in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions