7 дней назад
Security Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Analyst (Cybersecurity): Supporting security operations, vulnerability management, governance, risk, compliance, identity security, and security awareness with an accent on incident response, ISO 27001 and SOC 2 controls, and remediation tracking. Focus on investigating security events, improving detection and reporting, coordinating vulnerability remediation, and strengthening access and compliance controls.
Location: Johannesburg, South Africa; hybrid with in-person work at an assigned office at least two days per week
Company
provides information and risk management services and operates a global information security program.
What you will do
- Support incident response activities, including investigation, containment, recovery, and lessons learned.
- Develop and improve detection use cases, alerting, playbooks, runbooks, and security procedures.
- Assess vulnerabilities across infrastructure and applications, coordinate remediation, and track resolution against SLAs.
- Support the Information Security Management System, ISO 27001 and SOC 2 audits, risk assessments, and compliance activities.
- Support identity governance initiatives covering PAM, RBAC, MFA, access reviews, and security assessments of new technologies.
- Produce security dashboards, KPIs, management reports, awareness materials, and phishing simulation initiatives.
Requirements
- Degree or diploma in Information Security, Computer Science, Information Technology, Engineering, or a related field.
- 3–5 years of experience in information security, cybersecurity, security operations, infrastructure, cloud security, or technology risk.
- Experience with ISO 27001 and SOC 2 implementation, maintenance, certification, audits, or control reviews.
- Experience with incident response, security event investigation, vulnerability management, security assessments, audits, and compliance activities.
- Knowledge of cloud security controls, identity and access management principles, application security, and the OWASP Top 10.
- For positions based in South Africa, preference is given to suitably qualified candidates from designated groups in line with the Employment Equity plan and targets.
Nice to have
- Relevant cybersecurity certifications.
Culture & Benefits
- Permanent work-from-home flexibility alongside the hybrid office arrangement.
- Wellbeing support for employees and their families.
- Global exposure and access to accredited learning and career development.
- Competitive rewards and comprehensive benefits.
- Collaborative environment focused on flexibility, wellbeing, and continuous improvement.
Hiring process
- If no response is received within three weeks of applying, the application should be considered unsuccessful.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →