Senior Security Analyst [SOC]

 

Recruiter:

IOCO

Job Ref:

iOCO01133

Date posted:

Friday, August 26, 2022

Location:

Johannesburg, South Africa

Salary:

Negotiable


JOB SUMMARY:
The Role:

Essential function:

  • Monitor, Manage and configure of Security Tools
  • Monitor User, Network, Threat and other events from security tools to identify abnormal activity indicating security incidents
  • Review and correlate incident information es...

    JOB DESCRIPTION:

    The Role:

    Essential function:

    • Monitor, Manage and configure of Security Tools
    • Monitor User, Network, Threat and other events from security tools to identify abnormal activity indicating security incidents
    • Review and correlate incident information escalated from Tier 1 Analysts to determine and assess their urgency and impact 
    • Evaluate the incident, identify the cause, and implement required actions to mitigate, prevent and/or recover from the incident
    • Proactively research and monitor security trends and information to identify potential threats and implement capabilities to proactively detect and respond 
    • Creating, maintaining and optimizing of SIEM Rules to reduce false positive, improve accuracy and improve detection capabilities
    • Establish a detailed understanding of clientâ??s infrastructure
    • Establish a detailed understanding of clients incidence response processes 
    • Research and understand and stay abreast with the Mitre Attck Framework 
    • Create and update Security incidents in ITSM platform with detailed information of logs relevant to the incident
    • Update and track incidents and requests based on analysis results and incident response updates
    • Escalate validated and confirmed Incidents to TIER 2 and designated incident response teams
    • Work Closely with other security teams and designated incident response teams
    • Establish and document root cause and remediation responses 
    • Create client request for information elements and reports
    • Identify and address gaps and/or omissions in security detection and posture. 
    • Perform Purple team exercises and develop rules around said exercises. 
    • Develop Run-book and Playbooks 
    • Automate Run-books and Playbooks for response and remediation processes. 
    • Support and assist senior analysts
    Skills and Experience:

    Essential Qualification:

    • Grade 12
    • Industry recognised (vendor neutral) security certification (e.g. CISSP, CEH, Security+, GIAC, etc.)

    Preferred Qualification:

    • Hold an industry recognised (vendor neutral) security certification (e.g. CISSP, CEH, Security+, etc.)
    • Degree (or equivalent) in Information Technology/Security, Engineering or related field of study preferred (alternatively an equivalent combination of education and experience).
    • Min 5 years in a hands-on security role, with a strong background in security tools including but not limited to firewalls, IDS/IPS, proxy servers and endpoint protection 
    • Holds a recognised SIEM Tool Certification

    Experience required:

    • 5+ Years of experience with Information Security with experience in a SOC environment, with demonstrable expertise in SIEM (LogPoint, QRadar, Splunk McAfee or ArcSight)
    • 5+ Years of experience in an operations focused information security role, with a strong background in security controls and risk management frameworks 
    • Mitre Attack Framework (or equivalent) understanding as well as security and data compliance requirements,
    • Demonstrable understanding of operating systems, applications and information technology systems along with their purpose and logging capabilities
    Other:

    Work environment:

    • Security Operations Centre

    Physical demands:

    • Office Based in the Security Operations Centre Ad-Hoc Remote support

    Travel:

    • Potential travel after hours/weekends for breach incidents

     

    NB! This job is now closed. You can apply for other jobs by uploading your CV.



     

 

 

Similar jobs you might be interested in:

Senior Information Security Engineer
Location: Johannesburg
Salary: Market Related Monthly
Purpose:The senior Information security Engineer is a strategic technical leader responsible for designing, implementing, and optimizing advanced security architectures across the company’s hybrid infrastructure, applications, and cloud environments. This role drives security engineering initiatives, mentors junior engineers, leads complex incident response efforts, and ensures compliance wi...
Today


Senior Information Security Engineer
Location: Cape Town
Salary:
Roses are red, firewalls are strong, our clients need a security leader, who knows right from wrong. Our clients are always searching for the one who can protect what matters most, design defenses that last, and make our clients fall head over heels for great security.
1 day ago


Senior Information Security Engineer
Location: Johannesburg
Salary: 1 Monthly
senior Information security Engineer
1 day ago


Senior Security Inspector - Epping
Location: Cape Town
Salary:
16 days ago


Senior Security Technician
Location: Cape Town
Salary: 0
Our client is looking for a senior security Technician to join their team in Cape Town
17 days ago


Senior Team Leader: Security Systems Support
Location: Pretoria
Salary:
We are recruiting a senior Team Leader to oversee the day-to-day operations, performance and reliability of all physical security systems across a large financial environment. This is an operational leadership role focused on running, maintaining and supporting electronic security infrastructure, while guiding a high-performing technical team.
17 days ago


Senior Credit Controller
Location: Johannesburg
Salary:
We are a reputable and growing security services company seeking a highly experienced and detail oriented senior Credit Controller to join our Finance Department. The successful candidate will be responsible for managing the full creditors and accounting function, ensuring accurate financial records, timely vendor payments, and compliance with company policies and procedures.
Today


Systems Engineer (Solaris / Unix)
Location: Pretoria
Salary: Annually
The Systems Engineer works as part of a team to manage the Unix/Solaris/Connect Direct environments.
2 days ago


Systems Engineer (Linux, Unix)
Location: Pretoria
Salary: Annually
The Systems Engineer Linux / Unix experience will be responsible for the stability, integrity and efficient operation of an in-house information system that supports core organisational functions as well as all business operation.
2 days ago


Workflow Analyst Engineer
Location: Johannesburg
Salary: Negotiable
Position overview The Workflow analyst Engineer is responsible for analysing, designing, developing, optimising, and maintaining the Sonata RDA business workflows. This role acts as the bridge between business operations and technical implementation, ensuring workf...
2 days ago


Create a free job alert for Senior Security Analyst [SOC] in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions