SOC Intern, Cape Town
Cape Town - South Africa
Job Summary
SOCINTERN 12-MONTHFTCCapeTown(Hybrid)
WHO WE ARE
S-RM is a global intelligence and cyber security consultancy. Since 2005wevehelped some of the most demanding clients in the world solve some of their toughest information security challenges.
Wevebeen able to do this because of our outstanding people.Werecommitted to developingsharp curious driven individuals who want to think critically solve complex problems and achieve success.
But we also know that workisnteverything.Itsabout the lives and careers it helps us build.Wereimmensely proud of thiscultureand we invest in our peoples wellbeing learning and ideas every day.
Wereexcitedyourethinking about joining us.
WORKING IN CYBER AT S-RM
Our Cyber Security division is the fastest-growing part of S-RM. Thecyber sector is always evolving and ourAdvisoryManaged Services andIncident Responsepractices arein moredemand than ever.
Werebuilding a team to meet this challenge.Werequickto respond innovate and improve. Wedontget too hung up on hierarchy or bureaucracy. If your ideas are good enoughwellempower you to implement them. Ifyourethe best person to talk to a customeryoullget that opportunity regardless of the title in your email signature. And when you need a hand your team will always have your back.
We alsodontbelievetheresa typical cyber security professional.Wevebuilt a team of intelligence analysts technical specialists software developers investigators risk managers and more.Youllalways find a range of perspectives andexpertiseto help you learn and grow.
If that sounds like your kind of teamwedlike to hear from you.
THE ROLE
As an InternCybersecurity Analyst (SOC) you will deploy your cybersecurityexpertisein a vital delivery role across our managed detection and response services.
In this role you will use infrastructure and tools that power our Security Operations Centre (SOC) to deliver desired security outcomes for our managed services clients. The ideal candidate will have familiarity with security tools such as SIEM SOAR EDR and other advanced technology. You will have a proven ability to respond effectively to security incidents. This hybrid role involves both remote work and some in-office presence for collaborationteamworkand development.
Delivery
- Monitor Security Events: Continuouslymonitorand analyse security alerts from EDR SIEM and other security tools to detect suspicious activities or potential threats.
- Incident Response: Conduct investigations and respond to security incidents executing containment mitigation and remediationstepsas necessary.
- Threat Hunting: Proactively search for indicators of compromise (IoCs) and advanced threats within the environment utilising both automated tools and manual analysis.
- Threat Detection: Useexpertiseto tune detection rules automate workflows and improve incident detection accuracy.
- Log Analysis: Perform in-depth log analysis from firewalls endpoint protection platforms and other solutions to investigate complex incidents.
- Threat Intelligence: Stay informed of emerging threats and collaborate with the threat intelligence team to enhance detection capabilities.
- Incident Reporting and Documentation: Ensure detailed documentation of incidents responses and resolutions tomaintaina clear incident management process.
- Shift Work:Participatein a 24/7 shift rotation to ensure continuous security monitoring including evening night and weekend shifts.
WHAT WERE LOOKING FOR
- Qualifications: ABachelorsdegree in a relevant subject for example cybersecurity computer science. Relevant industry certifications areadvantageous or evidence of working towardsattainingthese.
- Technical Expertise: Solid understanding of security fundamentals including threat detection incident responseendpointand network security.
- Approach: An investigative mindset. You should be comfortable solving problems with limited information andguidance andbe curious to learn.
- Reliability: Our customers depend on us to manage their security and provide cyber-resilienceyou must be dependable.
- Tools:Expertisein use of EDR is. Familiarity with other security tools such as SIEM firewalls and IDS/IPS is desirable.
- Incident Response: Experience in responding to and remediating security incidents including credential theft andmalware basedattacks.
- Threat intelligence: Some demonstrable knowledge of current cyber threat actors their tactics techniques and procedures.
- Threat Detection: Understanding of security monitoring threat detection techniques and the ability to exploit detection systems foroptimalperformance.
- Communication: Clear and concise verbal communication skills with the ability to work effectively across teams; preferably you should be able to communicate technical findings to a non-technical audience. Able to write and format incident reports and summaries.
Growth of the service
- Continuous Improvement: Work closely with other IT teams security engineers and senior SOC members to refine detection processes and improve overall security posture.
- Collaboration: Collaborate with SOC analysts security engineers and IT teams to ensure seamless operation of security tools and alignment with broader cybersecurity practices.
- Security Enhancements:Identifyareas for improvement in security monitoring and response capabilities proposing andassistwith implementingnew solutionswhereappropriate.
- Collaborating with Global Teams: Work closely with other cyber security teams to ensure seamless integration of SOC operations with our broader cybersecurity initiatives and business units especially Incident Response.
- Contributing to Internal Technical Development Initiatives: When the schedule allows you will have opportunities toparticipatein and contribute to internal technical development initiatives enhancing our tools processes and overall incident response capabilities.
- Self-directed with the ability to prioritise tasks and manage workload efficiently across multiple concurrent onboarding engagements
The successful candidate must have permission to work in South Africaby the start of their employment.
Our benefits
We offerthoughtful balanced rewards and supportto help our people do their best work and live their lives outsideitthis includes but is not exhaustive of:
- Holiday 23 days per year increasing to 28 days (1 day for every year you worked at S-RM up
to a maximum of 5 days) in addition to bank holidays
- Gap Cover policy allowing you to bridge the gap between your medical bills and your medical
aid cover.
- Hybrid working and flexible working hours;
- Private pension up to 7% contribution matched by the company
- Life Insurance4X annual salary.
Parental Support:
- Fertility treatment leave 5 daysof leave per cycle of treatment per year;
- Maternity leave26 weeksof full pay followed by 13 weeks of half pay;
- Paternity leave6 weeksof full pay.
Various Health and Medical Benefits including:
- Medical aid with Discovery Health for employee partner and children up to the cost of the Classic
Saverplan(taxable benefit) for you and your family;
- EAPprogrammefor you and your immediate family;
- Free access to the world-famous mindfulness appHeadspace.
To apply for this role pleasesubmitan up-to-date CV through this link: Job Application for SOC Intern Cape Town at S-RM
Required Experience:
Intern
About Company
Leading cyber security consultancy and intelligence experts delivering intelligence, resilience, and response solutions to clients worldwide.