Security Engineer II
Shoprite Group of Companies · Cape Town, Western Cape
Stop applying one at a time.
JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.
Start free — we apply for you →About the role
- The purpose of the Network Security Engineer II is to deliver and optimise cyber security engineering capabilities across platforms by implementing controls, strengthening system resilience, and managing security risks.
- Translates security requirements into practical solutions, drives automation and threat intelligence integration, and supports the delivery of secure, scalable technology environments.
What you'll do
Security Engineering & Control Implementation
- Implement and maintain security controls across systems, networks, and platforms.
- Deploy and optimise security technologies, for example SIEM, EDR, IAM, WAF, DLP and encryption.
- Support the installation, configuration, and improvement of security tools and processes.
- Ensure platforms comply with defined security standards and requirements.
Threat Monitoring, Detection & Response
- Monitor systems and networks for security incidents and vulnerabilities.
- Investigate, analyse, and respond to security events in collaboration with relevant teams.
- Conduct vulnerability assessments, log analysis, and continuous monitoring.
- Support incident response processes and contribute to remediation actions.
Risk Mitigation & Continuous Improvement
- Identify security gaps and recommend enhancements to reduce risk exposure.
- Evaluate and implement new security technologies and best practices.
- Conduct research on emerging threats, vulnerabilities, and control strategies.
- Contribute to improving the organisation's overall security posture.
Security Standards, Governance & Enablement
- Develop and maintain security standards, policies, and procedures.
- Translate technical security requirements into business-aligned recommendations.
- Provide guidance to stakeholders on security risks and control effectiveness.
- Support alignment to information security frameworks and best practices.
Automation, DevSecOps & Integration
- Automate security processes, controls, and reporting for operational efficiency.
- Support DevSecOps practices by integrating security into development pipelines.
- Enable improved visibility through metrics, reporting, and threat intelligence feeds.
- Work closely with engineering teams to embed security into system design.
What you bring
- A qualification in computer science, cybersecurity, or any related field advantageous.
- Recognised industry certification in cybersecurity, such as CISSP essential.
- +4 years of experience in cybersecurity, with solid experience across a variety of security products including firewalls, EDR, SIEM, WAF, IAM, PAM, DLP and encryption solutions or similar essential.
- Knowledge of services related to cloud compute, network, storage, content delivery, administration and security essential.
- Good understanding and exposure to Information Security standards, architecture and models essential.
- Hands-on knowledge of automation and DevSecOps skills essential.
- Good understanding of software development principles, including design patterns, code structure, programming languages, continuous integration, continuous deployment and deployment orchestration preferred.
- Experience in creating new ways to solve existing production security issues and recommending security enhancements desired.
- Experience in Incident Response, including the ability to document security threats, resolve technical faults and allocate resources to deliver real solutions in a cost-effective way desired.
Closing Date
- 2026/09/17