Cyber Security Analyst II
Listing reference: click_027210
Listing status: Online
Apply by: 13 October 2026
Position summary
Industry: Wholesale & Retail Trade
Job category: IT-Quality Assurance and Inspection
Location: Cape Town
Contract: Permanent
Remuneration: Market Related
EE position: Yes
Introduction
We are seeking an experienced Cyber Security Analyst II to strengthen the Group’s security
posture through hands-on security monitoring, threat analysis, incident response, vulnerability
management and continuous improvement of security controls. Reporting to the Cyber
Security Lead, this role will investigate and respond to cyber security events, support security
platforms. This position plays a pivotal role in conducting security assessments and collaborate
with technical teams to reduce operational security risk through security engineering,
penetration testing and other assessment methodologies to safeguard the environment
against cyber security threats
Job description
JOB PURPOSE
To strengthen the Group’s security posture by monitoring, analysing and responding to cyber
security threats and incidents; operating and improving security controls; coordinating
containment, eradication and recovery activities; and supporting vulnerability management,
threat intelligence and security assurance across on-premises, cloud and web application
environments
security threats and incidents; operating and improving security controls; coordinating
containment, eradication and recovery activities; and supporting vulnerability management,
threat intelligence and security assurance across on-premises, cloud and web application
environments
JOB OBJECTIVES
- Perform security assessments, vulnerability assessments, penetration testing and targeted security reviews; document findings; recommend proportionate mitigation actions; track remediation with responsible teams; and validate that identified risks have been effectively addressed.
- Participate in blue, red and purple team exercises; analyse identified detection and response gaps; and develop appropriate response and or mitigation procedures.
- Perform security monitoring, event triage and investigation using SIEM, endpoint,
network, identity, cloud and other security telemetry, escalating confirmed or high-risk incidents in accordance with the cyber security incident response process. - Execute the Group’s cyber security strategy, policies, standards and procedures
through implementation of security controls through relevant tooling, identifying
control gaps, recommending improvements and maintaining supporting operational documentation. - Monitor and analyse relevant cyber threat intelligence, assess its applicability to the Group’s environment, identify indicators of compromise and emerging attack
techniques, and translate findings into detection, threat hunting, blocking and
remediation actions. - Act as a senior incident responder by validating and classifying security incidents; determining scope and impact; coordinating evidence collection, containment,
eradication and recovery activities; maintaining accurate incident records and
timelines; supporting forensic investigation for root cause analysis. - Work alongside the internal Cyber Security and IT teams together with security service providers to resolve operational issues, monitor agreed service outcomes, escalate
service or control failures to the Cyber Security Lead, and produce accurate
operational metrics and incident reports for management and stakeholders. - Share technical knowledge, contribute to playbooks and standard operating
procedures, support the development of less experienced analysts, and identify skillsor capacity gaps for escalation to the Cyber Security Lead. - Maintain the external attack surface management repository; investigate newly
identified exposures; coordinate remediation and verify closure; monitor emerging threats, including AI-related threats; and recommend relevant updates to detections, controls, playbooks and response procedures.
Minimum requirements
QUALIFICATIONS
- Information Technology/Systems Engineering/ Computer Science or equivalent qualification.
- Relevant penetration testing certification such as Offensive Security Certified Professional (OSCP) or Professional Network Penetration Tester (PNPT).
- Certified Information Systems Security Professional (CISSP), Certified Information Systems Manager (CISM), etc. will be an added advantage.
JOB-RELATED KNOWLEDGE & EXPERIENCE
- At least 3 years of experience in cyber security or information security operations, including practical experience in security monitoring, incident investigation and response, vulnerability management and the operation of enterprise security technologies.
- Strong knowledge of incident response methodologies, evidence handling, forensic principles, attack techniques, indicators of compromise, log analysis, root cause analysis and post-incident recovery activities.
- Strong knowledge of cyber security governance and operational practices.
- Strong knowledge and understanding of risk and compliance management
JOB-RELATED SKILLS
- Excellent written and verbal communication skills
- Ability to manage ambiguity/ complexity
- Able to cultivate innovation
- Ability to collaborate cross-functionally
- Ability to establish and maintain strong relationships with stakeholders at different levels
- Cyber security operations and incident coordination
- Data Protection
- Information Security
- Security assessments
JOB-RELATED COMPETENCIES
- Analysing and Interpreting
- Delivering Results and Meeting Customer Expectations
- Relating and Networking
- Applying Expertise and Technology
- Adapting and Responding to change
- Deciding and Initiating Risk-Based Action
- Presenting and Communicating Information