About the position
The Cyber Security Analyst is responsible for enhancing and maintaining the security posture of the organisation by proactively identifying vulnerabilities, responding to security incidents, and supporting the implementation of strategic security initiatives. The ideal candidate will have strong technical skills across endpoint detection, firewall technologies, and identity management solutions, with a commitment to continuous improvement and collaboration.
Key Responsibilities
- Investigate escalated security threats and refine SIEM/SOC use cases
- Respond to incidents as part of the CSIRT team and help develop runbooks
- Stay up to date on threats and share relevant intelligence
- Support security architecture reviews, vulnerability assessments, and penetration testing
- Work with other teams to integrate security into systems and applications
- Prepare reports highlighting cyber risks and trends
- Contribute to key cybersecurity projects and assessments
Technical Focus Areas
- SIEM and SOC tools
- Incident response and runbook creation
- Endpoint Detection & Response (EDR/XDR)
- Firewall technologies and IAM
- Vulnerability management
- Directory services: Entra ID, Active Directory, Keycloak
Key Outcomes
- Faster and more accurate threat detection and response
- Clear, actionable cybersecurity reporting
- Stronger system security integration
- Timely remediation of vulnerabilities
- Up-to-date operational procedures
Competencies
- Strong technical cybersecurity skills
- Good understanding of scripting or coding (advantageous)
- Analytical, problem-solving mindset
- Strong communication and attention to detail
- Ability to multitask and work under pressure
Qualifications & Experience
- Relevant tertiary qualification and/or certifications (e.g., Security+, CEH, ISC²)
- 2–5 years in EDR/XDR, firewalls, and vulnerability management
- At least 2 years of incident response experience
- Experience with Entra ID, Active Directory, and Keycloak is a plus
Desired Skills:
- Cyber Security Analyst
- Security Operations Center (SOC)
- Cyber Security Incident Response Team (CSIRT)
- CompTIA Security+
- Scripting
- ISC Certifications