L2 SOC Analyst | Incident Response & Threat Hunting

Integrity360

Cape Town

On-site

ZAR 420,000 - 640,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Integrity360 is seeking an experienced Incident Response Analyst to join its cybersecurity team in Cape Town. You will investigate incidents, triage alerts, and collaborate with clients to navigate security events, with a focus on Blue Team operations.

Ideal candidates have 2–4 years in a SOC/CSIRT environment, strong log analysis skills, networking knowledge, and experience with SIEM tools such as Splunk, QRadar or Elastic Stack. On-site work is expected in most circumstances.

Qualifications

  • 2–4 years of cybersecurity experience in a SOC/CSIRT or similar.
  • Experience with security log investigations using multiple sources.
  • Solid networking knowledge to understand network-related attacks.
  • Familiarity with SIEM technologies such as Splunk, QRadar, Elastic Stack.
  • Knowledge of the attack chain and incident response is beneficial.

Responsibilities

  • Triage security alerts and conduct investigations to identify root causes.
  • Collaborate with the team to investigate incidents and communicate findings.
  • Regularly review detection rules with the Detection team to minimize false positives.
  • Assist with incident response workflows, automation and orchestration.
  • Identify and document vulnerabilities; contribute to incident reports.
  • Maintain clear, professional client communication throughout the lifecycle.

Skills

SOC/CSIRT experience
Security log analysis
Networking fundamentals
SIEM skills
Digital forensics
IR knowledge

Education

Bachelor's degree in CS/IT

Tools

Splunk
QRadar
Elastic Stack

Job description

Integrity360 is seeking an experienced Incident Response Analyst to join its cybersecurity team in Cape Town. You will investigate incidents, triage alerts, and collaborate with clients to navigate security events, with a focus on Blue Team operations.

Ideal candidates have 2–4 years in a SOC/CSIRT environment, strong log analysis skills, networking knowledge, and experience with SIEM tools such as Splunk, QRadar or Elastic Stack. On-site work is expected in most circumstances.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC Analyst: Incident Response & Threat Hunting
SOC Analyst: Incident Response & Threat Hunting

Integrity360 • Cape Town

On-site
ZAR 420,000 - 600,000
L2 SOC Analyst - Cape Town or Johannesburg
L2 SOC Analyst - Cape Town or Johannesburg

Integrity360 • Cape Town

On-site
ZAR 420,000 - 600,000
L2 SOC Analyst - Cape Town or Johannesburg (On Site)
L2 SOC Analyst - Cape Town or Johannesburg (On Site)

Integrity360 • Cape Town

On-site
ZAR 420,000 - 640,000
L2 SOC Analyst: Threat Hunting & Incident Response
L2 SOC Analyst: Threat Hunting & Incident Response

Armstrong Appointments • Cape Town

On-site
ZAR 480,000 - 720,000
L2 SOC Analyst: Threat Hunting, IR & Automation
L2 SOC Analyst: Threat Hunting, IR & Automation

Pronel Personnel • Johannesburg

On-site
ZAR 600,000 - 900,000
L2 SOC Analyst: Threat Hunting, Incident Response & Automation
L2 SOC Analyst: Threat Hunting, Incident Response & Automation

Pronel Consultants • Johannesburg

On-site
ZAR 550,000 - 900,000
Senior Level 3 SOC Analyst - Onsite Cape Town MDR
Senior Level 3 SOC Analyst - Onsite Cape Town MDR

Integrity360 • Cape Town

On-site
ZAR 600,000 - 800,000
L2 SOC Analyst – DOL2SOCA
L2 SOC Analyst – DOL2SOCA

Armstrong Appointments • Cape Town

On-site
ZAR 480,000 - 720,000
Senior SOC Analyst L2: Incident Response & Threat Intel
Senior SOC Analyst L2: Incident Response & Threat Intel

Afrocentric IP • Gauteng

On-site
ZAR 420,000 - 650,000
Remote SOC Analyst: Threat Detection & Incident Response
Remote SOC Analyst: Threat Detection & Incident Response

Placements24 • Mbombela (Nelspruit)

Hybrid
ZAR 350,000 - 550,000
Remote work
Training opportunities
Career advancement
+1