Senior Security Analyst [SOC]

 

Recruiter:

IOCO

Job Ref:

iOCO01133

Date posted:

Friday, August 26, 2022

Location:

Johannesburg, South Africa

Salary:

Negotiable


JOB SUMMARY:
The Role:

Essential function:

  • Monitor, Manage and configure of Security Tools
  • Monitor User, Network, Threat and other events from security tools to identify abnormal activity indicating security incidents
  • Review and correlate incident information es...

    JOB DESCRIPTION:

    The Role:

    Essential function:

    • Monitor, Manage and configure of Security Tools
    • Monitor User, Network, Threat and other events from security tools to identify abnormal activity indicating security incidents
    • Review and correlate incident information escalated from Tier 1 Analysts to determine and assess their urgency and impact 
    • Evaluate the incident, identify the cause, and implement required actions to mitigate, prevent and/or recover from the incident
    • Proactively research and monitor security trends and information to identify potential threats and implement capabilities to proactively detect and respond 
    • Creating, maintaining and optimizing of SIEM Rules to reduce false positive, improve accuracy and improve detection capabilities
    • Establish a detailed understanding of clientâ??s infrastructure
    • Establish a detailed understanding of clients incidence response processes 
    • Research and understand and stay abreast with the Mitre Attck Framework 
    • Create and update Security incidents in ITSM platform with detailed information of logs relevant to the incident
    • Update and track incidents and requests based on analysis results and incident response updates
    • Escalate validated and confirmed Incidents to TIER 2 and designated incident response teams
    • Work Closely with other security teams and designated incident response teams
    • Establish and document root cause and remediation responses 
    • Create client request for information elements and reports
    • Identify and address gaps and/or omissions in security detection and posture. 
    • Perform Purple team exercises and develop rules around said exercises. 
    • Develop Run-book and Playbooks 
    • Automate Run-books and Playbooks for response and remediation processes. 
    • Support and assist senior analysts
    Skills and Experience:

    Essential Qualification:

    • Grade 12
    • Industry recognised (vendor neutral) security certification (e.g. CISSP, CEH, Security+, GIAC, etc.)

    Preferred Qualification:

    • Hold an industry recognised (vendor neutral) security certification (e.g. CISSP, CEH, Security+, etc.)
    • Degree (or equivalent) in Information Technology/Security, Engineering or related field of study preferred (alternatively an equivalent combination of education and experience).
    • Min 5 years in a hands-on security role, with a strong background in security tools including but not limited to firewalls, IDS/IPS, proxy servers and endpoint protection 
    • Holds a recognised SIEM Tool Certification

    Experience required:

    • 5+ Years of experience with Information Security with experience in a SOC environment, with demonstrable expertise in SIEM (LogPoint, QRadar, Splunk McAfee or ArcSight)
    • 5+ Years of experience in an operations focused information security role, with a strong background in security controls and risk management frameworks 
    • Mitre Attack Framework (or equivalent) understanding as well as security and data compliance requirements,
    • Demonstrable understanding of operating systems, applications and information technology systems along with their purpose and logging capabilities
    Other:

    Work environment:

    • Security Operations Centre

    Physical demands:

    • Office Based in the Security Operations Centre Ad-Hoc Remote support

    Travel:

    • Potential travel after hours/weekends for breach incidents

     

    NB! This job is now closed. You can apply for other jobs by uploading your CV.



     

 

 

Similar jobs you might be interested in:

Senior Network & Security Architect (Mining Operations)
Location: Centurion
Salary:
A leading mining organisation is seeking a highly skilled senior Network & security Architect to design, implement, and support secure, resilient, and high-performance network infrastructure across multiple mining operations.The role focuses on enterprise IT + OT (Operational Technology) convergence, ensuring secure connectivity across mine sites, processing plants, and head office environment...
7 days ago


Senior Account Manager (Cyber Security)
Location: Johannesburg
Salary:
10 days ago


1015 IT Security Engineer (Senior)
Location: Menlyn
Salary:
ESSENTIAL SKILLS:Min. 3 years of professional experience in the implementation and support of Microsoft Enterprise ITarchitectures with a focus on Identity and Access Management Systems.Expert experience in implementing and administering Microsoft Entra ID, Entra ID Connect and ActiveDirectory, together with the good knowledge in authentication protocols (Kerberos, SAML, OAUTH/OIDC)Advanced experi...
27 days ago


TTD IT Security Engineer (JAVA) (Senior) 2124
Location: Midrand
Salary:
Are you a senior IT security Engineer with a strong background in Identity & Access Management, Java development, and cloud security? This is an exciting opportunity to join a high-performing team responsible for delivering secure authentication platforms used across modern digital services, applications, and cloud environments.You’ll play a key role in designing and supporting enterpris...
35 days ago


2124 IT Security Engineer (Senior) TTD
Location: Menlyn
Salary:
ESSENTIAL SKILLS:Expert JAVA EE development knowledgeKnowledge of authentication solutions, SAML, OpenID Connect, API GatewayExpert knowledge in the areas of web and cloud technologiesExpertise in agile development and DevOpsKnowledge of current IT architectures, manufacturers and trendsStrong sense of reliability, being available to support after-hours as required.Proven experience in a strong le...
31 days ago


Senior Sales Representative - KZN (Security sales)
Location: Durban
Salary:
65 days ago


Senior Information Security Engineer
Location: Johannesburg
Salary:
A leading financial services organisation is seeking a senior Information security Engineer to join its growing technology team.
14 days ago


Senior Project Manager in Security
Location: Johannesburg
Salary:
Our client in the telecoms sector is looking for a senior Project Manager in security on a contract duration of 6 to 12 months. Role OverviewThe senior Project Manager will oversee and drive the successful delivery of multiple key 2025 Fintech security projects, initiatives and delivery of the Aspire + & Ruby verse security initiatives. This role requires expertise in project management, ...
70 days ago


Senior Site Security Manager – Pretoria
Location: Pretoria
Salary: Salary R35K-R40K (Forty Thousand Rand) after deductions, including vehicle allowance & phone allowance
senior Site security Manager – Pretoria
51 days ago


Analyst - Control Room Security
Location: Cape Town
Salary: 30000
Corporate company requires the expertise of an exp analyst  to join a team of prof and analyse and identify core issues and risks within warehousing, production, distribution and Office space etc. 
Today


Create a free job alert for Senior Security Analyst [SOC] in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions