drjobs Cyber Security Engineer Level 1

Cyber Security Engineer Level 1

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Cape Town - South Africa

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Job Description

Job Specification: Cybersecurity Engineer Level 1

Job Title:

Cybersecurity Engineer Level 1

Department:

Information Security / IT Operations

Reports To:

Cybersecurity Lead / IT Security Manager

Location:

Cape Town

Role Summary:

We are seeking a motivated and detail-oriented Cybersecurity Engineer (Level 1) to support our information security operations. This role will focus on monitoring maintaining and improving the security posture of our Microsoft-based environment including Microsoft Defender Intune Entra (Azure AD) Azure security services endpoint protection and firewalls.

Key Responsibilities:

  • Monitor alerts from Microsoft Defender for Endpoint and respond to incidents in accordance with playbooks.
  • Administer and support Intune-based device compliance and configuration policies.
  • Review and enforce Conditional Access and Identity Protection policies via Microsoft Entra.
  • Perform security investigations and threat analysis on endpoints and users.
  • Execute regular vulnerability scans and participate in patch validation cycles.
  • Assist with firewall rules endpoint configuration and network segmentation reviews.
  • Maintain documentation of incidents system configurations and operational procedures.
  • Support onboarding/offboarding from a security perspective (user access device trust MFA).
  • Work with the IT team to implement secure configurations in Azure and Microsoft 365.
  • Participate in tabletop exercises DR simulations and routine incident response drills.
  • Monitor compliance with internal policies and external frameworks (e.g. ISO 27001 NIST CSF).

Required Skills & Experience:

  • 12 years of experience in IT support security operations or infrastructure security.
  • Working knowledge of:
    • Microsoft Defender (AV and for Endpoint)
    • Microsoft Intune (Endpoint Manager)
    • Microsoft Entra ID (Azure AD)
    • Azure Security Center / Microsoft Sentinel (basic familiarity)
  • Understanding of endpoint security user access control MFA and identity lifecycle.
  • Basic understanding of TCP/IP ports protocols and firewalls.
  • Comfortable with Windows-based systems Active Directory and Office 365 environments.
  • Strong documentation and communication skills.
  • Proactive mindset with a willingness to learn and adapt.

Preferred Qualifications:

  • Microsoft certifications (any of the following):
    • SC-200 (Security Operations Analyst)
    • MS-500 (Microsoft 365 Security Administration)
    • AZ-500 (Azure Security Engineer Associate)
  • Hands-on experience with SIEM platforms (e.g. Microsoft Sentinel Splunk).
  • Experience working in a regulated environment (healthcare finance etc.).

Soft Skills:

  • Analytical and detail-oriented.
  • Able to work independently and in a team.
  • Strong communication and interpersonal skills.
  • Ability to stay calm and methodical during incidents.

Working Conditions:

  • Occasional on-call availability for security incidents.
  • Must adhere to organizational security policies and confidentiality agreements.

Employment Type

Full-Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.