Tier 1 Security Analyst
Johannesburg - South Africa
Job Summary
Location: Woodmead Sandton
Job Type: Full-Time
Are you passionate about cybersecurity threat detection and protecting critical environments from evolving attacks We are looking for a highly driven and technically capable Junior Security Analyst to join our Security Operations Centre (SOC).
This is a hands-on role suited for candidates who already possess foundational experience in security operations and are ready to operate in a fast-paced high-pressure environment.
The successful candidate will play a critical role in monitoring detecting analysing and responding to cybersecurity threats across the organisations infrastructure endpoints and cloud environments. You will be expected to take ownership of incidents from detection through to escalation while maintaining a high standard of investigative rigor and documentation.
- Actively monitor and manage security event queues within Microsoft Sentinel ensuring timely identification and response to potential threats.
- Perform in-depth triage investigation and validation of security alerts distinguishing between false positives and genuine threats.
- Take ownership of incidents ensuring appropriate containment escalation and closure in line with defined SLAs.
- Conduct threat hunting and proactive analysis using SIEM tools including advanced queries within Azure Log Analytics (KQL).
- Correlate data across multiple sources (endpoints identity network and cloud platforms) to identify attack patterns and indicators of compromise (IOCs).
- Analyse and respond to incidents involving endpoint compromise phishing credential abuse lateral movement and data exfiltration.
- Assist in the implementation and continuous improvement of security controls playbooks and incident response procedures.
- Maintain and operate security technologies including EDR/XDR firewalls IDS/IPS email security and identity protection solutions.
- Produce high-quality incident reports including root cause analysis impact assessment and remediation recommendations.
- Collaborate with senior analysts and engineering teams to support incident response forensic investigations and remediation efforts.
- Ensure all activities are well-documented auditable and aligned with security standards and best practices.
- 35 years experience in IT infrastructure systems administration or technical support roles.
- Minimum 12 years hands-on experience in a SOC or security operations environment.
- Proven experience working with Microsoft Sentinel and the Microsoft 365 security stack (Defender Entra ID Purview).
- Strong working knowledge of Azure security concepts including identity networking and cloud security controls.
- Practical experience in incident detection response and analysis across multiple attack vectors.
- Networking fundamentals (TCP/IP DNS HTTP/S VPNs)
- Cloud & On-prem Infrastructure
- Operating systems (Windows Linux)
- Common attack techniques (MITRE ATT&CK framework preferred)
- Experience writing and analysing KQL queries for investigations and threat hunting.
- Familiarity with SIEM EDR/XDR and threat intelligence platforms.
- Ability to work under pressure and manage multiple incidents simultaneously with minimal supervision.
- Strong analytical mindset with the ability to think critically and challenge assumptions.
- Excellent written and verbal communication skills with the ability to produce clear actionable reports.
- Microsoft AZ-900
- Microsoft SC-900
- Microsoft SC-200
- CompTIA Security
- CompTIA CySA
- Certified Ethical Hacker (CEH)
- Firewall and networking certifications (e.g. Fortinet Palo Alto Cisco)
- A proactive ownership-driven mindset not just reacting to alerts but actively seeking threats.
- A strong desire to continuously learn and stay ahead of evolving cyber threats.
- The ability to operate independently while contributing effectively within a team.
- High attention to detail and commitment to operational excellence.
Artificial Intelligence Innovation:
Join Netsurit at the forefront of AI transformationwhere technology meets ambition. Help us design implement and scale intelligent solutions that empower our clients to automate processes uncover insights and accelerate growth. Leverage tools like Microsoft Copilot Azure AI and custom machine learning models to turn data into meaningful business outcomes. Be part of a team thats shaping the future of AI-powered innovation.
Note to Agencies: Principals only. No recruiters no agencies no unsolicited services.