Responsibilities This position is a shift work based with a rotational schedule – This is a 365 day/7 days per week /24 hours a day department. Monitoring and analysis of cyber security events. Monitoring network traffic to detect potential threats and escalating where necessary. Analysing security breaches to identify the root cause and escalating to the Intermediate Security Analyst for resolutions. Services monitored include SIEM, IDS/IPS, Firewall, Web Application Firewalls, Data Loss Prevention (DLP), Databases. Security event correlation and reporting to appropriate Intermediate Security Analyst or Incident Response staff to determine increased risk to the business. Research and stay aware of current IT security trends and news. Recognize potential, successful, and unsuccessful intrusion attempts and compromises through thorough reviews and analyses of relevant event detail and summary information. Assist colleagues in installing security software and understanding information security management. Ensure all security tools are working properly. Research security enhancements and make recommendations to management. Update inaccurate or missing knowledge base documents where required. Handle escalations effectively, ensuring a minimal number of duplicate escalations. Ensure alerts are closed at the end of every shift when acknowledged. Monitor alerts and incidents diligently, actioning them in a timely manner. Investigate alerts using the provided systems and add investigation details to escalated incident descriptions. Report back on identified trends that may be forming and/or proactive actions taken to reduce spam. Use advanced analytic tools to determine emerging threat patterns and vulnerabilities. Qualifications Matric or equivalent certification required. Minimum of one (1) year in a Security (SOC) role and three (3) years preferred in Support. Experience and knowledge with SIEM, IDS/IPS, Firewall, Web Application Firewalls, Data Loss Prevention (DLP) and Security Event Correlation. Excellent analytical and problem‑solving skills. Experience with technical writing. Understanding of security standards and risk management. Excellent written and verbal communication skills. Ability to adjust and adapt to changing priorities in a dynamic environment. Multi‑tasking ability and proactive in addressing issues and requests. Technical acumen and ability to understand and interpret technical specifications. Security+ beneficial but not required. #J-18808-Ljbffr
Junior Security Operations Center Analyst
BETSOFTWARE
johannesburg, johannesburg
Published 17 days ago
Report job