IT Security Administrator

Sasso Consulting (Pty) Ltd

Johannesburg

On-site

ZAR 420,000 - 640,000

Full time

36 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Sasso Consulting (Pty) Ltd seeks an experienced IT Security Administrator to implement and manage enterprise security controls across Windows, Linux, cloud and on-prem environments. You will handle access management, endpoint protection, firewall configurations and security monitoring to ensure a secure IT landscape.

The role requires hands-on expertise with identity and access security, vulnerability remediation and collaboration with SOC and infrastructure teams to maintain compliant security

Qualifications

  • 3–5 years of hands-on IT security administration experience.
  • Proven experience administering enterprise IT security technologies and controls.
  • Strong knowledge of Windows Server, endpoints and enterprise infrastructure.

Responsibilities

  • Administer, maintain and support enterprise IT security technologies and infrastructure.
  • Configure and manage security controls across servers, endpoints, networks and cloud environments.
  • Monitor security dashboards, logs and operational security alerts; escalate incidents when needed.
  • Support vulnerability management, patching and system hardening activities.
  • Collaborate with SOC teams and IT staff to uphold security policies.

Skills

Windows Server
Active Directory
MFA
EDR/XDR
Firewall administration
Cloud security

Education

Relevant IT/Cybersecurity degree

Tools

Microsoft Defender for Endpoint
CrowdStrike Falcon
Splunk
Azure Defender

Job description

IT Security Administrator

Location: Centurion, Gauteng (provisional – to be confirmed)
Positions Available: 5
Salary: Market-related
Employment Type: To be confirmed

Job Overview

We are seeking experienced and technically proficient IT Security Administrators to implement, administer, maintain and support enterprise information security technologies, systems and operational security controls within complex IT environments.

The successful candidates will be responsible for the day-to-day administration of cybersecurity platforms, security configurations, access controls, endpoint protection technologies, firewalls and other enterprise security infrastructure.

This role requires strong hands-on expertise in IT security administration, enterprise security technologies, system hardening, access management, security monitoring, vulnerability remediation and operational cybersecurity support.

The ideal candidates will have proven experience administering security technologies across Windows, Linux, network and cloud environments, ensuring that security controls remain operational, appropriately configured and aligned with organisational security policies.

The role involves working closely with cybersecurity engineers, SOC teams, infrastructure administrators and IT support teams to maintain a secure, stable and compliant enterprise technology environment.

This is a specialist operational cybersecurity role requiring practical experience administering enterprise security systems rather than general IT support or theoretical information security knowledge.

Key Responsibilities

Enterprise IT Security Administration

  • Administer, maintain and support enterprise IT security technologies and infrastructure.
  • Configure and manage security controls across servers, endpoints, networks and cloud environments.
  • Perform day-to-day security administration activities.
  • Monitor the operational health and effectiveness of security technologies.
  • Implement approved security configurations and technical controls.
  • Investigate and resolve security platform configuration and operational issues.
  • Support security technology upgrades, patching and maintenance.
  • Maintain appropriate access controls for security administration platforms.
  • Identify security configuration weaknesses and recommend corrective actions.
  • Ensure security administration activities follow organisational policies and change management procedures.

Identity and Access Security Administration

  • Administer user accounts, groups, permissions and access controls.
  • Support identity lifecycle processes, including user provisioning, modification and deprovisioning.
  • Configure and maintain access security policies.
  • Administer security controls within Microsoft Active Directory and Microsoft Entra ID environments.
  • Support Multi-Factor Authentication (MFA) implementation and administration.
  • Assist with privileged access management and privileged account security.
  • Investigate access-related security incidents and configuration issues.
  • Support periodic user access reviews and permission assessments.
  • Identify excessive privileges and inappropriate access configurations.
  • Maintain accurate access administration records and documentation.

Endpoint Security Administration

  • Deploy, configure and maintain enterprise endpoint security technologies.
  • Administer antivirus, antimalware, EDR and XDR platforms.
  • Manage endpoint security policies and protection settings.
  • Monitor endpoint security compliance and protection coverage.
  • Investigate endpoint security alerts and operational issues.
  • Support endpoint security agent deployment and troubleshooting.
  • Implement approved endpoint hardening and protection configurations.
  • Maintain endpoint security updates and platform health.
  • Support endpoint isolation and remediation activities during security incidents.
  • Collaborate with endpoint engineering and SOC teams to improve security controls.

Network and Firewall Security Administration

  • Administer and support enterprise firewall and network security technologies.
  • Implement approved firewall rules and security policy changes.
  • Review firewall configurations and access control rules.
  • Support VPN security administration and secure remote access.
  • Monitor network security events and investigate configuration issues.
  • Assist with network segmentation and access restriction controls.
  • Support intrusion detection and prevention technologies.
  • Maintain documentation of network security configurations.
  • Collaborate with network engineering teams to address security weaknesses.
  • Ensure network security changes follow approved operational procedures.

Security Monitoring and Incident Support

  • Monitor security dashboards, logs and operational security alerts.
  • Investigate routine security events and suspicious activities.
  • Escalate potential security incidents to SOC analysts and incident response teams.
  • Support incident investigation and containment activities.
  • Maintain security event records and operational documentation.
  • Assist with collecting relevant security logs and technical evidence.
  • Investigate security tool failures and monitoring gaps.
  • Support integration of security platforms with SIEM solutions.
  • Assist with implementing remediation measures following security incidents.
  • Contribute to improvements in operational security monitoring.

Vulnerability Management and System Hardening

  • Support enterprise vulnerability scanning and remediation activities.
  • Review vulnerability assessment findings affecting supported systems.
  • Coordinate security patching with infrastructure and application teams.
  • Implement approved security configuration changes.
  • Apply system hardening standards to servers, endpoints and supported platforms.
  • Identify outdated software, insecure configurations and unsupported technologies.
  • Support vulnerability remediation tracking and verification.
  • Assist with security baseline assessments.
  • Maintain technical records of security remediation activities.
  • Recommend improvements to enterprise system security.

Cloud and Microsoft 365 Security Administration

  • Administer operational security controls within Microsoft Azure or equivalent cloud environments.
  • Support Microsoft Entra ID security administration.
  • Configure and maintain Microsoft 365 security settings.
  • Administer relevant Microsoft Defender security capabilities.
  • Support conditional access and MFA configuration.
  • Monitor cloud security alerts and configuration issues.
  • Assist with cloud identity and access management.
  • Support cloud security posture improvements.
  • Investigate cloud security administration and integration issues.
  • Maintain documentation of cloud security configurations.

Security Platform Maintenance and Operational Support

  • Monitor security platform availability, performance and operational health.
  • Perform routine security technology maintenance and configuration reviews.
  • Support security tool upgrades, migrations and lifecycle management.
  • Troubleshoot security platform connectivity and integration failures.
  • Maintain security configuration backups where applicable.
  • Support disaster recovery and operational resilience for critical security systems.
  • Maintain technical procedures and administrative documentation.
  • Provide technical support to cybersecurity and infrastructure teams.
  • Track security administration tasks, incidents and changes.
  • Support continuous improvement of enterprise security operations.

Security Governance, Compliance and Reporting

  • Ensure technical security administration aligns with organisational security policies.
  • Support implementation of approved cybersecurity standards and controls.
  • Assist with internal and external IT security audits.
  • Maintain evidence of security configurations, access controls and remediation activities.
  • Support compliance with applicable information security requirements.
  • Generate operational security reports and compliance summaries.
  • Identify deviations from approved security configurations.
  • Recommend corrective actions for operational security weaknesses.
  • Maintain accurate security administration documentation.
  • Support continuous improvement of organisational cybersecurity practices.
Minimum Requirements
  • Relevant diploma or degree in Information Technology, Computer Science, Cybersecurity, Information Security, Network Engineering or a related discipline.
  • Typically 3–5 years of relevant hands-on experience in IT security administration, cybersecurity operations, security infrastructure administration or a closely related technical specialisation.
  • Proven practical experience administering enterprise IT security technologies and security controls.
  • Strong knowledge of Windows Server, Windows endpoints and enterprise infrastructure.
  • Experience administering Microsoft Active Directory and identity-related security controls.
  • Practical experience with endpoint protection, antivirus, EDR or XDR technologies.
  • Experience configuring and maintaining security policies and technical security controls.
  • Understanding of firewall administration and network security fundamentals.
  • Experience supporting user access management and authentication security.
  • Knowledge of vulnerability management, patching and system hardening.
  • Experience investigating security administration issues and routine security alerts.
  • Familiarity with Microsoft 365 and Azure security administration would be advantageous.
  • Understanding of security incident escalation and operational response procedures.
  • Experience working within structured enterprise IT environments.
  • Strong technical troubleshooting, documentation and problem-solving skills.
Technical Skills and Competencies

Enterprise IT Security Administration

  • Security platform administration
  • Security policy configuration
  • Security control implementation
  • Security configuration management
  • Security technology maintenance
  • Security monitoring
  • Security incident escalation
  • Security platform troubleshooting
  • Operational security reporting
  • Security administration documentation
  • Enterprise security standards
  • Security change management

Microsoft and Windows Security

  • Windows Server
  • Windows 10 and Windows 11
  • Microsoft Active Directory
  • Microsoft Entra ID
  • Group Policy
  • Microsoft Defender for Endpoint
  • Microsoft Defender XDR
  • Microsoft Defender for Cloud
  • Microsoft Intune
  • Microsoft Configuration Manager
  • Microsoft 365 security
  • Windows security event logs
  • Windows system hardening
  • PowerShell

Identity and Access Management

  • User account administration
  • Access provisioning and deprovisioning
  • Role-Based Access Control (RBAC)
  • Multi-Factor Authentication (MFA)
  • Conditional Access
  • Privileged account security
  • Password and authentication policies
  • Active Directory security groups
  • Microsoft Entra ID
  • Access reviews
  • Identity lifecycle administration
  • Privileged Access Management fundamentals

Endpoint Security Technologies

Experience with relevant technologies such as:

  • Microsoft Defender for Endpoint
  • Microsoft Defender XDR
  • CrowdStrike Falcon
  • SentinelOne
  • Sophos Central
  • Trend Micro
  • Trellix Endpoint Security
  • Symantec Endpoint Security
  • Other enterprise endpoint protection platforms

Relevant competencies include:

  • Endpoint security agent deployment
  • Antivirus and antimalware administration
  • Endpoint protection policy management
  • EDR and XDR administration
  • Endpoint security compliance
  • Security alert investigation
  • Endpoint hardening
  • Endpoint protection troubleshooting

Firewall and Network Security

Experience with relevant enterprise technologies such as:

  • Fortinet FortiGate
  • Palo Alto Networks firewalls
  • Cisco Secure Firewall
  • Check Point firewalls
  • Sophos Firewall
  • Other enterprise firewall platforms

Relevant competencies include:

  • Firewall rule administration
  • Network access control
  • VPN administrationNetwork segmentation fundamentals
  • IDS/IPS fundamentals
  • TCP/IP networking
  • DNS
  • DHCP
  • HTTP/HTTPS
  • Secure remote access
  • Network security monitoring
  • Firewall logging

Vulnerability Management and Security Hardening

  • Vulnerability scanning fundamentals
  • Vulnerability remediation
  • Security patch management
  • Windows security baselines
  • Linux security fundamentals
  • CIS Benchmarks
  • Security configuration assessments
  • Endpoint and server hardening
  • Vulnerability tracking
  • Security remediation verification
  • Secure configuration management

Security Monitoring and SIEM

  • Microsoft Sentinel
  • Splunk
  • IBM QRadar
  • Elastic Security
  • Windows Event Viewer
  • Security event logs
  • SIEM monitoring fundamentals
  • Security alert triage
  • Security event escalation
  • Endpoint security telemetry
  • Firewall logs
  • Authentication logs
  • Security monitoring dashboards

Cloud Security Administration

  • Microsoft Azure
  • Microsoft Entra ID
  • Microsoft 365
  • Microsoft Defender for Cloud
  • Microsoft Defender XDR
  • Microsoft Intune
  • Azure Role-Based Access Control
  • Conditional Access
  • Cloud identity security
  • Cloud security configuration
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Security Administrator
IT Security Administrator

Sasso Consulting • Centurion

On-site
ZAR 350,000 - 650,000
Antimalware Specialist
Antimalware Specialist

Sasso Consulting (Pty) Ltd • Johannesburg

On-site
ZAR 700,000 - 950,000
Antimalware Specialist
Antimalware Specialist

Sasso Consulting • Centurion

On-site
ZAR 700,000 - 900,000
Cyber Security SOC Engineer
Cyber Security SOC Engineer

Sasso Consulting (Pty) Ltd • Johannesburg

On-site
ZAR 520,000 - 780,000
Threat and Vulnerability Management Specialist
Threat and Vulnerability Management Specialist

Sasso Consulting (Pty) Ltd • Johannesburg

On-site
ZAR 700,000 - 1,000,000
Identity and Access Management Specialist
Identity and Access Management Specialist

Sasso Consulting (Pty) Ltd • Johannesburg

On-site
ZAR 600,000 - 900,000
Senior Cybersecurity Engineer-Oct
Senior Cybersecurity Engineer-Oct

Moladira Skills • Gauteng

On-site
ZAR 900,000 - 1,300,000
Senior Cybersecurity Engineer-Oct
Senior Cybersecurity Engineer-Oct

Moladira Skills • Sandton

On-site
ZAR 1,000,000 - 1,600,000
CyberArk Specialist
CyberArk Specialist

Sasso Consulting (Pty) Ltd • Johannesburg

On-site
ZAR 600,000 - 1,000,000
Azure Security Specialist
Azure Security Specialist

Sasso Consulting (Pty) Ltd • Johannesburg

On-site
ZAR 600,000 - 800,000