Security Engineer II

Shoprite Group of Companies · Cape Town, Western Cape

Stop applying one at a time.

JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.

Start free — we apply for you →

About the role

  • The purpose of the Network Security Engineer II is to deliver and optimise cyber security engineering capabilities across platforms by implementing controls, strengthening system resilience, and managing security risks.
  • Translates security requirements into practical solutions, drives automation and threat intelligence integration, and supports the delivery of secure, scalable technology environments.

What you'll do

Security Engineering & Control Implementation

  • Implement and maintain security controls across systems, networks, and platforms.
  • Deploy and optimise security technologies, for example SIEM, EDR, IAM, WAF, DLP and encryption.
  • Support the installation, configuration, and improvement of security tools and processes.
  • Ensure platforms comply with defined security standards and requirements.

Threat Monitoring, Detection & Response

  • Monitor systems and networks for security incidents and vulnerabilities.
  • Investigate, analyse, and respond to security events in collaboration with relevant teams.
  • Conduct vulnerability assessments, log analysis, and continuous monitoring.
  • Support incident response processes and contribute to remediation actions.

Risk Mitigation & Continuous Improvement

  • Identify security gaps and recommend enhancements to reduce risk exposure.
  • Evaluate and implement new security technologies and best practices.
  • Conduct research on emerging threats, vulnerabilities, and control strategies.
  • Contribute to improving the organisation's overall security posture.

Security Standards, Governance & Enablement

  • Develop and maintain security standards, policies, and procedures.
  • Translate technical security requirements into business-aligned recommendations.
  • Provide guidance to stakeholders on security risks and control effectiveness.
  • Support alignment to information security frameworks and best practices.

Automation, DevSecOps & Integration

  • Automate security processes, controls, and reporting for operational efficiency.
  • Support DevSecOps practices by integrating security into development pipelines.
  • Enable improved visibility through metrics, reporting, and threat intelligence feeds.
  • Work closely with engineering teams to embed security into system design.

What you bring

  • A qualification in computer science, cybersecurity, or any related field advantageous.
  • Recognised industry certification in cybersecurity, such as CISSP essential.
  • +4 years of experience in cybersecurity, with solid experience across a variety of security products including firewalls, EDR, SIEM, WAF, IAM, PAM, DLP and encryption solutions or similar essential.
  • Knowledge of services related to cloud compute, network, storage, content delivery, administration and security essential.
  • Good understanding and exposure to Information Security standards, architecture and models essential.
  • Hands-on knowledge of automation and DevSecOps skills essential.
  • Good understanding of software development principles, including design patterns, code structure, programming languages, continuous integration, continuous deployment and deployment orchestration preferred.
  • Experience in creating new ways to solve existing production security issues and recommending security enhancements desired.
  • Experience in Incident Response, including the ability to document security threats, resolve technical faults and allocate resources to deliver real solutions in a cost-effective way desired.

Closing Date

  • 2026/09/17
Auto-apply to this jobView original posting ↗