L2 SOC Analyst

Pronel Personnel

Johannesburg

On-site

ZAR 600,000 - 900,000

Full time

12 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Pronel Personnel seeks an experienced L2 SOC Analyst to join the security team in Johannesburg. You will hunt threats, investigate incidents, and help automate SOC tasks while strengthening controls and maturity across the security stack.

You’ll work with SIEM, EDR, cloud security, and DLP, mentoring junior analysts and contributing to audits, risk assessments, and compliance. On-call duties may apply as needed.

Qualifications

  • 3+ years’ experience in a SOC environment and 5+ years in cybersecurity.
  • Strong experience with SIEM, EDR, vulnerability management, threat hunting, and incident response.
  • Good knowledge of the Microsoft Security stack, including Defender, Intune, Azure, and Entra ID.
  • Experience with Microsoft Sentinel / Azure Sentinel is highly desirable.
  • Scripting experience with PowerShell, Python, and/or Regex.
  • Understanding of security frameworks such as ISO 27001, NIST, CIS, or PCI DSS.
  • Experience with endpoint protection, cloud security, DLP, CASB, and managed security services.
  • Strong analytical, investigative, and problem-solving skills.
  • Excellent communication skills, with the confidence to present security findings to senior and C-level stakeholders.
  • A proactive mindset and genuine passion for cybersecurity and continuous learning.
  • Relevant certifications are highly desirable, including: Microsoft SC-200, SC-300, SC-400, AZ-500 or AZ-900; CompTIA Security+ or Network+; BTL1; Mimecast or other vendor certifications.

Responsibilities

  • Perform proactive threat hunting, monitoring, investigation, and incident response.
  • Investigate security alerts and incidents, conduct root cause analysis, and drive remediation.
  • Develop and maintain incident response playbooks and SOC procedures.
  • Automate repetitive SOC tasks, alerts, and reporting using scripting and security tooling.
  • Monitor and improve our security technologies, including SIEM, EDR, endpoint, cloud, and DLP solutions.
  • Identify vulnerabilities and security risks and recommend effective mitigation strategies.
  • Support security audits, reporting, risk assessments, and compliance requirements.
  • Research emerging threats, vulnerabilities, and attack techniques.
  • Evaluate and test new security products and technologies.
  • Help improve SOC processes, controls, and overall security maturity.
  • Mentor and support junior analysts.
  • Participate in an out-of-hours on-call rota when required.

Skills

SOC operations
Threat hunting
Incident response
SIEM
EDR
PowerShell
Python
Regex
ISO 27001
NIST
CIS
PCI DSS
Microsoft Defender
Azure Sentinel
Communication skills
Continuous learning

Tools

Azure Sentinel
Defender for Endpoint
Intune
Azure

Job description

Our client is looking for an experiencedL2 SOC Analystto join their security team and play a key role in protecting the company’s systems, data, and people.

This is a hands-on role for someone who enjoysthreat hunting, incident investigation, security automation, and continuous improvement. You’ll work with a range of security technologies, help strengthen the companies security controls, and support the development of a proactive and effective SOC capability.

What You’ll Do
  • Perform proactivethreat hunting, monitoring, investigation, and incident response.

  • Investigate security alerts and incidents, conduct root cause analysis, and drive remediation.

  • Develop and maintainincident response playbooks and SOC procedures.

  • Automate repetitive SOC tasks, alerts, and reporting using scripting and security tooling.

  • Monitor and improve our security technologies, includingSIEM, EDR, endpoint, cloud, and DLP solutions.

  • Identify vulnerabilities and security risks and recommend effective mitigation strategies.

  • Support security audits, reporting, risk assessments, and compliance requirements.

  • Research emerging threats, vulnerabilities, and attack techniques.

  • Evaluate and test new security products and technologies.

  • Help improve SOC processes, controls, and overall security maturity.

  • Mentor and support junior analysts.

  • Participate in anout-of-hours on-call rotawhen required.

What You’ll Bring
  • 3+ years’ experience in a SOC environmentand 5+ years in cybersecurity.

  • Strong experience withSIEM, EDR, vulnerability management, threat hunting, and incident response.

  • Good knowledge of theMicrosoft Security stack, including Defender, Intune, Azure, and Entra ID.

  • Experience withMicrosoft Sentinel / Azure Sentinelis highly desirable.

  • Scripting experience withPowerShell, Python, and/or Regex.

  • Understanding of security frameworks such asISO 27001, NIST, CIS, or PCI DSS.

  • Experience with endpoint protection, cloud security, DLP, CASB, and managed security services.

  • Strong analytical, investigative, and problem-solving skills.

  • Excellent communication skills, with the confidence to present security findings to senior and C-level stakeholders.

  • A proactive mindset and genuine passion forcybersecurity and continuous learning.

Certifications

Relevant certifications are highly desirable, including:

  • MicrosoftSC-200, SC-300, SC-400, AZ-500 or AZ-900

  • CompTIASecurity+ or Network+

  • BTL1

  • Mimecast or other relevant security/vendor certifications.

Why Join Our client?

This is an opportunity to take a key role with this international client, working with modern cybersecurity technologies, hunt real-world threats, and make a tangible impact on the company’s security posture.

If you’re a curious, proactive security professional who enjoys solving problems and staying one step ahead of attackers,we’d love to hear from you.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

L2 SOC Analyst
L2 SOC Analyst

Pronel Consultants • Johannesburg

On-site
ZAR 550,000 - 900,000
L2 SOC Analyst – DOL2SOCA
L2 SOC Analyst – DOL2SOCA

Armstrong Appointments • Cape Town

On-site
ZAR 480,000 - 720,000
Mid-Level Cyber Security Analyst (SOC)
Mid-Level Cyber Security Analyst (SOC)

60 Degrees • Wes-Kaap

Hybrid
ZAR 350,000 - 650,000
Hybrid work (Cape Town)
International exposure
Career development
L2 SOC Analyst: Threat Hunting, Incident Response & Automation
L2 SOC Analyst: Threat Hunting, Incident Response & Automation

Pronel Consultants • Johannesburg

On-site
ZAR 550,000 - 900,000
L2 SOC Analyst: Threat Hunting, IR & Automation
L2 SOC Analyst: Threat Hunting, IR & Automation

Pronel Personnel • Johannesburg

On-site
ZAR 600,000 - 900,000
L3 SOC Analyst - Johannesburg
L3 SOC Analyst - Johannesburg

Integrity360 • Johannesburg

On-site
ZAR 600,000 - 900,000
L2 SOC Analyst - Cape Town or Johannesburg
L2 SOC Analyst - Cape Town or Johannesburg

Integrity360 • Johannesburg

On-site
ZAR 420,000 - 620,000
SOC Analyst Tier 2
SOC Analyst Tier 2

Boardroom Appointments • Cape Town

On-site
L3 SOC Analyst - Johannesburg
L3 SOC Analyst - Johannesburg

Jobless • Johannesburg

On-site
ZAR 600,000 - 900,000
Cybersecurity Analyst - SOC Operations
Cybersecurity Analyst - SOC Operations

Placements24 • East London

Hybrid
ZAR 350,000 - 550,000
Hybrid work model
Professional development & certs
Exposure to security technologies
+1