1. Home
  2. Jobs
  3. South Africa
  4. Gauteng
  5. Johannesburg
  6. Sandton
  7. SOC Analyst
  8. Tier 1 Security Analyst (SOC) (Talent Pool)
Netsurit logoNE
Netsuritnetsurit.com

Tier 1 Security Analyst (SOC) (Talent Pool)

Sandton, Johannesburg, Gauteng, South AfricaFull-time8h ago

Junior Security Analyst (SOC)

Location: Woodmead, Sandton
Job Type: Full-Time

Are you passionate about cybersecurity, threat detection, and protecting critical environments from evolving attacks? We are looking for a highly driven and technically capable Junior Security Analyst to join our Security Operations Centre (SOC).

This is a hands-on role suited for candidates who already possess foundational experience in security operations and are ready to operate in a fast-paced, high-pressure environment.

The successful candidate will play a critical role in monitoring, detecting, analysing, and responding to cybersecurity threats across the organisation's infrastructure, endpoints, and cloud environments. You will be expected to take ownership of incidents from detection through to escalation, while maintaining a high standard of investigative rigor and documentation.

Key Responsibilities

  • Actively monitor and manage security event queues within Microsoft Sentinel, ensuring timely identification and response to potential threats.
  • Perform in-depth triage, investigation, and validation of security alerts, distinguishing between false positives and genuine threats.
  • Take ownership of incidents, ensuring appropriate containment, escalation, and closure in line with defined SLAs.
  • Conduct threat hunting and proactive analysis using SIEM tools, including advanced queries within Azure Log Analytics (KQL).
  • Correlate data across multiple sources (endpoints, identity, network, and cloud platforms) to identify attack patterns and indicators of compromise (IOCs).
  • Analyse and respond to incidents involving endpoint compromise, phishing, credential abuse, lateral movement, and data exfiltration.
  • Assist in the implementation and continuous improvement of security controls, playbooks, and incident response procedures.
  • Maintain and operate security technologies including EDR/XDR, firewalls, IDS/IPS, email security, and identity protection solutions.
  • Produce high-quality incident reports, including root cause analysis, impact assessment, and remediation recommendations.
  • Collaborate with senior analysts and engineering teams to support incident response, forensic investigations, and remediation efforts.
  • Ensure all activities are well-documented, auditable, and aligned with security standards and best practices.

Qualifications & Requirements

  • 3–5 years' experience in IT infrastructure, systems administration, or technical support roles.
  • Minimum 1–2 years' hands-on experience in a SOC or security operations environment.
  • Proven experience working with Microsoft Sentinel and the Microsoft 365 security stack (Defender, Entra ID, Purview).
  • Strong working knowledge of Azure security concepts, including identity, networking, and cloud security controls.
  • Practical experience in incident detection, response, and analysis across multiple attack vectors.

Solid understanding of:

  • Networking fundamentals (TCP/IP, DNS, HTTP/S, VPNs)
  • Cloud & On-prem Infrastructure
  • Operating systems (Windows, Linux)
  • Common attack techniques (MITRE ATT&CK framework preferred)
  • Experience writing and analysing KQL queries for investigations and threat hunting.
  • Familiarity with SIEM, EDR/XDR, and threat intelligence platforms.
  • Ability to work under pressure and manage multiple incidents simultaneously with minimal supervision.
  • Strong analytical mindset with the ability to think critically and challenge assumptions.
  • Excellent written and verbal communication skills, with the ability to produce clear, actionable reports.

Certifications

Mandatory:

  • Microsoft AZ-900
  • Microsoft SC-900
  • Microsoft SC-200

Advantageous:

  • CompTIA Security+
  • CompTIA CySA+
  • Certified Ethical Hacker (CEH)
  • Firewall and networking certifications (e.g., Fortinet, Palo Alto, Cisco)

What We Expect From the Candidate

  • A proactive, ownership-driven mindset — not just reacting to alerts, but actively seeking threats.
  • A strong desire to continuously learn and stay ahead of evolving cyber threats.
  • The ability to operate independently while contributing effectively within a team.
  • High attention to detail and commitment to operational excellence.

Artificial Intelligence Innovation:
Join Netsurit at the forefront of AI transformation—where technology meets ambition. Help us design, implement, and scale intelligent solutions that empower our clients to automate processes, uncover insights, and accelerate growth. Leverage tools like Microsoft Copilot, Azure AI, and custom machine learning models to turn data into meaningful business outcomes. Be part of a team thats shaping the future of AI-powered innovation.

Note to Agencies: Principals only. No recruiters, no agencies, no unsolicited services.