Senior SOC Analyst
Khipu Networks · Cape Town, Western Cape
Stop applying one at a time.
JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.
Start free — we apply for you →Introduction
Are you interested in furthering your career in the cybersecurity industry? If so, we want to hear from you! We are currently seeking a motivated, innovative and dedicated Senior SOC Analyst to join our 24x7 Blue Team in Cape Town to ensure the growth and development of our SOC.
You will be part of a Global SOC team, working with both mainstream manufacturers and niche players. Each day offers new challenges and learning opportunities, and in return we offer development and training in a modern technical working environment. This is an exciting opportunity to further develop your cybersecurity career. It could be required from the position to join a 24x7 shift pattern, working shifts and/or be on standby when required.
Duties & Responsibilities
- Monitor, analyse, and investigate security alerts across all security toolsets.
- Lead triage, containment, and remediation activities for complex incidents.
- Manage cybersecurity incidents through to resolution.
- Develop and optimise detection rules, correlation logic, playbooks, and automations.
- Prepare detailed intelligence reports, providing information on findings, status and progress of investigations, as well as vulnerability and risk factors
- Act as escalation point, mentor and train junior SOC analysts
- Develop and maintain Standard Operating Procedures (SOPs), use cases and SOC documentation.
- Manage, configure, maintain and support security toolsets to ensure optimal use and coverage
- Lead the onboarding, implementation, and configuration of SIEM/EDR deployments.
- Ensure SLA/OLA compliance and support positive customer engagement.
- Participate in developing new services and improving existing ones via project work
Desired Experience & Qualification
- Demonstrable experience leading incident response activities following well known IR lifecycles
- 5 - 10 years of cybersecurity experience in a technical environment.
- Proven experience working in a SOC, CSIRT, or equivalent security operations environment.
- Advanced OS knowledge across Windows, Linux and MacOS.
- Advanced networking expertise, including analysis of suspicious network traffic.
- Experience working with and instructing third parties based on investigation findings.
- Strong understanding of incident management and escalation processes.
- Excellent written and verbal communication across technical and non‑technical audiences.
- Experience implementing best‑practice cybersecurity procedures and frameworks.
- Experience working as part of a global team, including external partners.
- Advanced understanding of malware behaviour, attack vectors, propagation methods, and impact.
- Preferred technology experience:
- Demonstrable EDR, XSOAR, SIEM, IDS/IP experience
- Vulnerability scanning tools,
- Web application penetration testing tools.
- Good understanding of:
- NIST Cybersecurity Framework
- ISO 27001
- OWASP Top 10
- CIS Top 20
- Knowledge of system administration, scripting, and OS hardening techniques.
- Strong analytical skills with the ability to assess cyber risks and define mitigation plans.
Academic qualifications and certifications
- Blue Team Level 1 and 2 or equivalent - required
- CREST Registered SOC Analyst (CRSA) or equivalent - required
- CompTIA Cybersecurity Analyst (CySA +) or equivalent - required
- CompTIA Advanced Security Practitioner (CASP+) or equivalent - required
- Palo Alto certifications – preferred
- SANS GIAC Certified Incident Handler (GCIH) or equivalent - preferred
Package & Remuneration
- Competitive salary, dependant on experience
- 26 days’ annual leave entitlement, rising with service
- Private health care policy
- 5% pension contributions
- Numerous company events throughout the year
- Company laptop
Interested?
To submit your application for this exciting full-time Senior SOC Analyst opportunity, please click ‘Apply’ now.