Senior SOC Analyst

Khipu Networks · Cape Town, Western Cape

Stop applying one at a time.

JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.

Start free — we apply for you →

Introduction

Are you interested in furthering your career in the cybersecurity industry? If so, we want to hear from you! We are currently seeking a motivated, innovative and dedicated Senior SOC Analyst to join our 24x7 Blue Team in Cape Town to ensure the growth and development of our SOC.

You will be part of a Global SOC team, working with both mainstream manufacturers and niche players. Each day offers new challenges and learning opportunities, and in return we offer development and training in a modern technical working environment. This is an exciting opportunity to further develop your cybersecurity career. It could be required from the position to join a 24x7 shift pattern, working shifts and/or be on standby when required.

Duties & Responsibilities

  • Monitor, analyse, and investigate security alerts across all security toolsets.
  • Lead triage, containment, and remediation activities for complex incidents.
  • Manage cybersecurity incidents through to resolution.
  • Develop and optimise detection rules, correlation logic, playbooks, and automations.
  • Prepare detailed intelligence reports, providing information on findings, status and progress of investigations, as well as vulnerability and risk factors
  • Act as escalation point, mentor and train junior SOC analysts
  • Develop and maintain Standard Operating Procedures (SOPs), use cases and SOC documentation.
  • Manage, configure, maintain and support security toolsets to ensure optimal use and coverage
  • Lead the onboarding, implementation, and configuration of SIEM/EDR deployments.
  • Ensure SLA/OLA compliance and support positive customer engagement.
  • Participate in developing new services and improving existing ones via project work

Desired Experience & Qualification

  • Demonstrable experience leading incident response activities following well known IR lifecycles
  • 5 - 10 years of cybersecurity experience in a technical environment.
  • Proven experience working in a SOC, CSIRT, or equivalent security operations environment.
  • Advanced OS knowledge across Windows, Linux and MacOS.
  • Advanced networking expertise, including analysis of suspicious network traffic.
  • Experience working with and instructing third parties based on investigation findings.
  • Strong understanding of incident management and escalation processes.
  • Excellent written and verbal communication across technical and non‑technical audiences.
  • Experience implementing best‑practice cybersecurity procedures and frameworks.
  • Experience working as part of a global team, including external partners.
  • Advanced understanding of malware behaviour, attack vectors, propagation methods, and impact.
  • Preferred technology experience:
  • Demonstrable EDR, XSOAR, SIEM, IDS/IP experience
  • Vulnerability scanning tools,
  • Web application penetration testing tools.
  • Good understanding of:
  • NIST Cybersecurity Framework
  • ISO 27001
  • OWASP Top 10
  • CIS Top 20
  • Knowledge of system administration, scripting, and OS hardening techniques.
  • Strong analytical skills with the ability to assess cyber risks and define mitigation plans.

Academic qualifications and certifications

  • Blue Team Level 1 and 2 or equivalent -  required
  • CREST Registered SOC Analyst (CRSA) or equivalent  - required
  • CompTIA Cybersecurity Analyst (CySA +) or equivalent -  required
  • CompTIA Advanced Security Practitioner (CASP+) or equivalent  - required
  • Palo Alto certifications –  preferred
  • SANS GIAC Certified Incident Handler (GCIH) or equivalent -  preferred

Package & Remuneration

  • Competitive salary, dependant on experience
  • 26 days’ annual leave entitlement, rising with service
  • Private health care policy
  • 5% pension contributions
  • Numerous company events throughout the year
  • Company laptop

Interested?

To submit your application for this exciting full-time  Senior SOC Analyst  opportunity, please click ‘Apply’ now.

Auto-apply to this jobView original posting ↗
Senior SOC Analyst at Khipu Networks — Cape Town, Western Cape · JobAlertsZA