drjobs SecOps Blue Team Specialist

SecOps Blue Team Specialist

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Cape Town - South Africa

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Redherd is partnering with a large well-established retail group to help expand their internal cyber security operations team. Were looking for a technically skilled Blue Teamer with strong incident response and SOC transformation experience whos excited about defending against evolving cyber threats and maturing detection and response capabilities.

About Redherd

Redherd is a specialist cyber security recruitment firm working across offensive defensive and cloud security domains. We help security teams scale globally placing exceptional talent into impactful roles from start-ups to security consultancies to Fortune 500s. If youre looking for a role where your skills actually matter well help you find it.

About the Company

Our client is a respected multi-channel retailer headquartered in Cape Town known for its customer-first ethos and digital transformation journey. The security function is growing with dedicated investments in both red and blue capabilities. This is a high-impact role within a collaborative and ambitious cyber team working to build and enhance a mature internal security operation.


Role Overview: Cyber Security Specialist Blue Team

This is a hands-on technical role focused on blue teaming incident response and transforming SOC capabilities. Youll work across the Cyber team GRC and broader IT to improve detection defence and reporting while maturing toolsets and processes. Youll also play a key role in automation threat hunting and metric-driven reporting.


Key Responsibilities

  • Respond to and investigate security incidents including containment and root cause analysis

  • Maintain and enhance defensive toolsets such as XDR SIEM and EDR

  • Enable active defence through continual control validation across infrastructure cloud platforms and applications

  • Investigate and implement new technologies and automation to improve detection and response

  • Collaborate with red team and threat hunters to improve posture based on discovered TTPs

  • Support the build-out of threat intelligence capabilities

  • Conduct proactive threat hunting and feed findings back into blue team processes

  • Develop and maintain reporting dashboards and key cyber security metrics

  • Build strong stakeholder relationships to support security operations implementation

  • Support broader security initiatives and cross-team collaboration

  • Champion internal security solutions define standards and guide implementation of improvements


Job Requirements

Minimum Requirements:

  • Matric and relevant IT or Cyber Security degree/diploma

  • Minimum 3 years hands-on cyber security operations experience

  • Strong experience in incident response and blue teaming

  • Familiarity with EDR Microsoft security stack SIEM platforms

  • Broad understanding of IAM data security vulnerability management infrastructure/cloud/platform security

  • Willingness to assist after hours or be on standby if needed

Advantageous:

  • Certifications such as SANS Cyber Defence CREST Incident Response

  • Familiarity with MITRE ATT&CK

  • Ability to script or automate (e.g. Python PowerShell etc.)

Employment Type

Full Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.