Security Operations Engineer - Threat Detection & Response

Digital Outsource Services

Cape Town

On-site

ZAR 550,000 - 900,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Employee Assistance Programme
Group Life Cover
Funeral Fund
Income Continuation Benefit
Medical Aid Subsidy
Retirement Annuity Subsidy

Job summary

Super Group in Cape Town seeks a Security Operations Analyst to strengthen monitoring, detection and incident response across on‑prem and cloud environments. You will triage alerts, investigate incidents, perform threat hunting, and collaborate with cross‑functional teams while maintaining ISO 27001/POPIA aligned documentation.

Proficiency with SIEM, EDR/ XDR and NGFWs, plus scripting in PowerShell or Python, is expected.

Qualifications

  • Clear, confident communication skills, written and verbal.
  • Collaborative mindset with ability to work across teams.
  • Strong organisational skills and ability to manage multiple projects.
  • Exceptional attention to detail and high‑quality work.
  • Adaptability to fast‑moving environments.
  • Solid grounding in security operations: attack detection, incident response, vulnerability management, and threat hunting.
  • Hands‑on experience with SIEM, EDR/XDR and next‑generation firewalls (PaloAlto preferred).
  • Strong working knowledge of Microsoft security (M365, Defender, EntraID).
  • Understanding of networking principles (TCP/IP, OSI) and common attack techniques.
  • Scripting ability in PowerShell, Python or Bash.
  • Active Directory administration and enterprise identity management experience.

Responsibilities

  • Monitor and triage security threats in real time, working the queue of alerts from SIEM, EDR/XDR, firewall, cloud and identity platforms.
  • Conduct first‑line analysis of security events, escalating confirmed incidents to the appropriate teams.
  • Investigate and respond to security incidents, documenting timelines, root causes and remediation actions.
  • Proactively hunt for indicators of compromise and suspicious activity across the environment.
  • Consume and apply threat intelligence to refine detection rules and stay ahead of emerging attack techniques.
  • Run, interpret and triage vulnerability scans, prioritising remediation based on business risk.
  • Tune detection rules, maintain security tooling and recommend improvements to accelerate monitoring and response.
  • Manage security‑related service requests and operational tickets using Jira, ensuring timely triage, implementation, escalation and resolution.
  • Maintain security documentation, SOPs and audit trails aligned to ISO 27001, POPIA and other regulatory obligations.
  • Produce incident and metrics reports for stakeholders and support the external SOC partner and shift coverage.

Skills

SIEM
EDR/XDR
Next-gen firewalls
PowerShell
Python
Bash
Active Directory administration
Networking fundamentals
Threat hunting
Incident response
Vulnerability management

Education

Security operations fundamentals

Tools

Jira
Palo Alto
Microsoft 365 Defender
EntraID
Netskope / Purview

Job description

Super Group in Cape Town seeks a Security Operations Analyst to strengthen monitoring, detection and incident response across on‑prem and cloud environments. You will triage alerts, investigate incidents, perform threat hunting, and collaborate with cross‑functional teams while maintaining ISO 27001/POPIA aligned documentation.

Proficiency with SIEM, EDR/ XDR and NGFWs, plus scripting in PowerShell or Python, is expected.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Engineer
Security Operations Engineer

Parvana • Cape Town

Hybrid
ZAR 600,000 - 900,000
Hybrid in-office / remote
Security Operations Analyst: Real-Time Threat Hunter
Security Operations Analyst: Real-Time Threat Hunter

DigiOutsource • Cape Town

On-site
ZAR 480,000 - 720,000
Learning & development programs
Performance management tools
Employee Assistance Programme
+5
Hybrid Security Operations Analyst: Threat Detection
Hybrid Security Operations Analyst: Threat Detection

Shop2Shop • Stellenbosch

Hybrid
ZAR 480,000 - 720,000
24/7 SOC Engineer | Incident Response & Service Desk
24/7 SOC Engineer | Incident Response & Service Desk

Recruit-It • Wes-Kaap

On-site
ZAR 180,000 - 240,000
L3 SOC Analyst - Cape Town
L3 SOC Analyst - Cape Town

Integrity360 • Cape Town

On-site
ZAR 600,000 - 800,000
Hybrid Security Operations Engineer - Cape Town (12m)
Hybrid Security Operations Engineer - Cape Town (12m)

Parvana • Cape Town

Hybrid
ZAR 600,000 - 900,000
Hybrid in-office / remote
Security Operations Analyst
Security Operations Analyst

Shop2Shop • Stellenbosch

Hybrid
ZAR 480,000 - 720,000
Senior Level 3 SOC Analyst - Onsite Cape Town MDR
Senior Level 3 SOC Analyst - Onsite Cape Town MDR

Integrity360 • Cape Town

On-site
ZAR 600,000 - 800,000
L3 SOC Analyst - Johannesburg
L3 SOC Analyst - Johannesburg

Jobless • Johannesburg

On-site
ZAR 600,000 - 900,000
24/7 SOC Analyst: Threat Detection & Incident Response
24/7 SOC Analyst: Threat Detection & Incident Response

Lesaka Technologies Inc. • Johannesburg

On-site
ZAR 350,000 - 550,000