Strengthen cyber defence through advanced incident investigation, threat analysis, and proactive security monitoring.
Job Summary
The SOC Analyst for the Information Security Management Systems Business Unit provides deeper investigation and response to cybersecurity incidents escalated from L1. The role focuses on incident analysis, threat validation, containment support, and improving security monitoring effectiveness.
Key Responsibilities
🛡 Incident Investigation, Response & Escalation
- Investigate and analyse escalated security alerts and incidents from L1.
- Validate true positives and determine incident severity and business impact.
- Perform containment and remediation activities for security incidents.
- Support response to phishing, malware, ransomware and unauthorised access incidents.
- Escalate advanced or high-risk incidents to Tier 3 or Incident Response teams.
- Provide detailed investigation findings and supporting evidence during escalation.
🔍 Security & Threat Monitoring and Analysis
- Monitor SIEM, EDR, IDS/IPS, firewall and security monitoring platforms.
- Correlate logs and events from multiple security sources.
- Identify suspicious behaviour, anomalies and Indicators of Compromise (IOCs).
- Analyse attack patterns, malicious activity and attacker behaviour.
- Investigate phishing emails, malicious URLs and suspicious files.
- Identify Indicators of Attack (IOAs) and support threat intelligence activities.
🛡 Vulnerability, Compliance & Governance Support
- Support vulnerability remediation validation.
- Assist in identifying systems exposed to active threats or exploits.
- Support compliance monitoring and audit requests.
- Assist in maintaining adherence to cybersecurity policies and procedures.
🤝 Collaboration, Communication & Continuous Improvement
- Work with infrastructure, network, cloud and application teams during incident response.
- Communicate incident status and technical findings to stakeholders.
- Contribute to improving SOC processes and operational procedures.
- Participate in tabletop exercises, simulations and security awareness initiatives.
- Support knowledge sharing with L1 analysts.
Qualifications & Skills
| Education & Qualifications | Experience |
|---|---|
| Bachelor’s Degree in Information Security, IT Security or related field | 4–6 years in IT Security, Network Engineering and 24/7 SNOC/SOC environments |
| CompTIA Security+ | Enterprise security monitoring platforms |
| CompTIA CySA+ | Network engineering background advantageous |
| Certified Ethical Hacker (CEH) | Hands-on SOC investigation experience |
Technical Skills
- Incident Response
- SIEM Monitoring & Analysis
- Log Analysis
- Threat Intelligence
- Endpoint Security
- Network Security Fundamentals
- Malware & Phishing Analysis
- Windows Administration
- Linux Administration
- Basic Scripting
Key Competencies
✔ Strong analytical and investigation skills
✔ Excellent problem-solving abilities
✔ Effective written and verbal communication
✔ Attention to detail
✔ Ability to work under pressure
✔ Strong teamwork and collaboration
✔ Continuous learning mindset
Key Performance Areas
✔ Security Monitoring & Investigation
✔ Incident Response & Escalation
✔ Threat Detection & Analysis
✔ Reporting, Compliance & Audit Readiness
Why Join Us?
Join a high-performing Security Operations Centre where you’ll investigate real-world cyber threats, work with enterprise security technologies, and contribute to protecting critical business infrastructure while developing your cybersecurity expertise.
Apply for this Position
If you meet the above requirements and are passionate about cybersecurity, we’d like to hear from you.
Complete the application form below and upload your latest CV.