1. Home
  2. Jobs
  3. South Africa
  4. Gauteng
  5. Tshwane NU
  6. Security Operations Centre Analyst
  7. Security Operations Centre Analyst Level 1
Derivco logoDE
Derivcoderivco.com

Security Operations Centre Analyst Level 1

Tshwane NU, Gauteng, South AfricaFull-time13h ago

We’re looking for a motivated Security Operations Centre (SOC) Analyst (Level 1) who enjoys monitoring live systems, analysing security events, and contributing to the early detection and response of cyber security incidents.

This is a hands‑on role where you’ll be the first line of defence, working closely with security tools, playbooks, and response teams to help protect enterprise‑scale systems, data, and digital assets.

What You’ll Do

  • Monitor security systems and tools to detect potential cyber security incidents
  • Analyse and validate security alerts, distinguishing real threats from false positives
  • Escalate confirmed or unknown incidents in line with SOC playbooks and SLA requirements
  • Communicate incident details clearly to security response teams and internal stakeholders
  • Assist senior analysts during incident containment, eradication, and recovery activities
  • Track and document incidents accurately to maintain reliable security records
  • Monitor systems post‑incident to confirm normal operation and successful resolution
  • Support threat intelligence research to identify emerging risks and attack patterns
  • Identify and escalate risks that may impact SOC service quality or response times
  • Contribute to improving SOC processes, tools, and monitoring effectiveness

What We’re Looking For

  • 1–2 years of experience in Security Operations, Cyber Security, or a related field
  • A relevant diploma or degree in IT, Computer Science, or a related discipline
  • Foundational knowledge of information security principles, controls, and best practices
  • Familiarity with security monitoring, incident management, and escalation processes
  • Exposure to SOC tools such as:
    • SIEM platforms
    • IDS/IPS
    • Firewalls and web application firewalls
    • Endpoint and monitoring solutions
  • An understanding of SLAs and the importance of timely detection and response
  • Strong attention to detail and the ability to follow defined processes and playbooks
  • Clear verbal and written communication skills
  • A calm, methodical approach to problem‑solving and decision‑making
  • A collaborative mindset with a willingness to learn, improve, and grow in cyber security

Why Join Us?

  • Gain hands‑on experience in a real‑world, enterprise‑scale Security Operations Centre
  • Build strong foundations in cyber security monitoring and incident response
  • Work alongside experienced analysts in a supportive, team‑focused environment
  • Develop in‑demand skills using modern security tools, processes, and frameworks
  • Be part of a culture that values responsibility, learning, precision, and continuous improvement

Closing Date: 03 July 2026

Salary: Market Related