Back to jobs
New

Cybersecurity (SOC) Analyst

Cape Town

WHO WE ARE 

S-RM is a global intelligence and cyber security consultancy.  Since 2005, we’ve helped some of the most demanding clients in the world solve some of their toughest information security challenges.   

 

We’ve been able to do this because of our outstanding people.  We’re committed to developing sharp, curious, driven individuals who want to think critically, solve complex problems, and achieve success.   

 

But we also know that work isn’t everything. It’s about the lives and careers it helps us build.  We’re immensely proud of this culture and we invest in our people’s wellbeing, learning, and ideas every day. 

 

We’re excited you’re thinking about joining us. 

WORKING IN CYBER AT S-RM 

Our Cyber Security division is the fastest-growing part of S-RM. The cyber sector is always evolving, and our Managed Services,  Advisory, and Incident Response practices are in more demand than ever.  

 

We’re building a team to meet this challenge.  We’re quick to respond, innovate, and improve.  We don’t get too hung up on hierarchy or bureaucracy.  If your ideas are good enough, we’ll empower you to implement them.  If you’re the best person to talk to a customer, you’ll get that opportunity, regardless of the title in your email signature. And when you need a hand, your team will always have your back. 

 

We also don’t believe there’s a typical cyber security professional.  We’ve built a team of intelligence analysts, technical specialists, software developers, investigators, risk managers, and more.  You’ll always find a range of perspectives and expertise to help you learn and grow.  

 

If that sounds like your kind of team, we’d like to hear from you. 

 

 

 

 

 

 

 

THE ROLE 

Our Security Operations Centre is a critical part of our Cybersecurity division’s success.  

 

As a Cybersecurity Analyst (SOC), you will deploy your cybersecurity expertise in a vital delivery role across our managed detection and response services.   

 

In this role, you will use infrastructure and tools that power our Security Operations Center (SOC) to deliver desired security outcomes for our managed services clients. The ideal candidate will have familiarity with security tools such as SIEM, SOAR, EDR, and other advanced technology.   You will have a proven ability to respond effectively to security incidents. This hybrid role involves both remote work and some in-office presence for collaboration, teamwork and development.  

 

Delivery 

  • Monitor Security Events: Continuously monitor and analyse security alerts from EDR, SIEM and other security tools to detect suspicious activities or potential threats. 
  • Incident Response: Conduct investigations and respond to security incidents, executing containment, mitigation, and remediation steps as necessary. 
  • Threat Hunting: Proactively search for indicators of compromise (IoCs) and advanced threats within the environment, utilising both automated tools and manual analysis. 
  • Threat Detection: Use expertise to tune detection rules, automate workflows, and improve incident detection accuracy. 
  • Log Analysis: Perform in-depth log analysis from firewalls, endpoint protection platforms, and other solutions to investigate complex incidents. 
  • Threat Intelligence: Stay informed of emerging threats and collaborate with the threat intelligence team to enhance detection capabilities. 
  • Incident Reporting and Documentation: Ensure detailed documentation of incidents, responses, and resolutions to maintain a clear incident management process. 
  • Shift Work: Participate in a 24/7 shift rotation to ensure continuous security monitoring, including evening, night, and weekend shifts. 

Growth of the service 

  • Continuous Improvement: Work closely with other IT teams, security engineers, and senior SOC members to refine detection processes and improve overall security posture. 
  • Collaboration: Collaborate with SOC analysts, security engineers, and IT teams to ensure seamless operation of security tools and alignment with broader cybersecurity practices. 
  • Security Enhancements: Identify areas for improvement in security monitoring and response capabilities, proposing and assist with implementing new solutions where appropriate. 
  • Collaborating with Global Teams: Work closely with other cyber security teams to ensure seamless integration of SOC operations with our broader cybersecurity initiatives and business units especially Incident Response. 
  • Contributing to Internal Technical Development Initiatives: When the schedule allows, you will have opportunities to participate in and contribute to internal technical development initiatives, enhancing our tools, processes, and overall incident response capabilities. 

WHAT WE’RE LOOKING FOR 

Candidates with the following qualifications and experience are likely to succeed in our Managed Services practice at S-RM.   

 

That said, if you don’t think you meet all of the criteria below but still are interested in the job, please apply. Nobody checks every box—we’re looking for candidates that are particularly strong in a few areas and have some interest and capabilities in others. 

 

We nurture a culture of equality, diversity and inclusion and we are dedicated to developing a workforce that displays a variety of talents, experiences and perspectives. 

 

We’re looking for: 

 

  • Qualifications: A Bachelors degree in a relevant subject, for example cybersecurity, computer science. Relevant industry certifications are advantageous, or evidence of working towards attaining these. 
  • Experience: 2+ years of experience in a SOC or cybersecurity operations role. 
  • Technical Expertise: Solid understanding of security fundamentals, including threat detection, incident response,  endpoint and network security. 
  • Approach: An investigative mindset.  You should be comfortable solving problems with limited information and guidance, and be curious to learn. 
  • Reliability:  Our customers depend on us to manage their security and provide cyber-resilience, you must be dependable. 
  • Tools Expertise in use of EDR is required. Familiarity with other security tools such as SIEM, firewalls, and IDS/IPS is desirable.  
  • Incident Response: Experience in responding to and remediating security incidents, including credential theft and malware based attacks. 
  • Threat intelligence: Some demonstrable knowledge of current cyber threat actors, their tactics, techniques, and procedures.  
  • Threat Detection: Understanding of security monitoring, threat detection techniques, and the ability to exploit detection systems for optimal performance. 
  • Communication: Clear and concise verbal communication skills, with the ability to work effectively across teams; preferably you should be able to communicate technical findings to a non-technical audience.  Able to write and format incident reports and summaries. 

 

The successful candidate must have permission to work in South Africa by the start of their employment. 

 

Our benefits 

  • We offer thoughtful, balanced rewards and support to help our people do their best work and live their lives outside it, this includes but is not exhaustive of: 
  • 25 days holiday per year in addition to bank holidays (+1 day for every year of service up to a maximum of 30 days in total); 
  • Hybrid working and flexible working hours; 
  • Matching pension contribution up to 7% (up to a maximum of 14% combined), and financial education; 
  • Life Insurance 4X annual salary. 

 

Parental Support: 

  • Fertility treatment leave – 5 days of leave per cycle of treatment per year; 
  • Maternity leave – 26 weeks of full pay followed by 13 weeks of half pay; 
  • Paternity leave – 6 weeks of full pay. 

 

Various Health and Medical Benefits including: 

  • Private dental and medical insurance (taxable benefit) for you and your family; 
  • Virtual GP for you and your family members that live in the same household; 
  • Various gym discounts for you and your partner; 
  • EAP programme for you and your immediate family; 
  • Free access to the world-famous mindfulness app Headspace. 

 

To apply for this role, please submit an up-to-date CV through this link: Job Application for Cybersecurity (SOC) Analyst at S-RM

Create a Job Alert

Interested in building your career at S-RM? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf