Search thousands of fresh jobs

×
This job is expired
Recru-it

Senior Associate Information Security Analyst

Recru-it

  • R Undisclosed
  • Permanent Senior position
  • South Africa
  • Posted 20 Aug 2026 by Recru-it
  • Expires in 29 days
  • Job 2644093 - Ref PE011697

About the position

Job Purpose:
The purpose of this role is to provide enterprise security assurance, support client security governance, and ensure ongoing compliance with relevant standards while identifying and mitigating risks to safeguard the organisations and clients’ information assets, ensuring confidentiality, integrity, and availability

Key Performance Areas
Information security operations:

  • Monitor security alerts and events from various systems (SIEM, IDS/IPS, endpoint tools)
  • Investigate potential threats and escalate incidents as necessary
  • Support implementation and monitoring of security controls (firewalls, access control, encryption)
  • Maintain and administer security tools including antivirus, DLP, and endpoint protection
  • Install and manage security software solutions to protect IT infrastructure

 
Risk management:

  • Participate in enterprise risk assessments to identify threats and vulnerabilities
  • Support vulnerability assessments, analyse results, and assist in remediation prioritisation
  • Collaborate with IT and business teams to reduce identified risks
  • Contribute to penetration testing activities and remediation efforts
  • Assist in developing organisational security best practices

 
Incident management and response:

  • Support incident response activities including investigation, documentation, and reporting
  • Analyse security breaches and assess impact
  • Maintain accurate incident records for audit and compliance purposes
  • Collaborate with internal stakeholders during incident remediation


Compliance and governance

  • Support compliance with industry standards and frameworks (PCI-DSS, ISO 27001, SOC 2, GDPR, POPIA, NIST),
  • Participate in internal and external security assessments and audits
  • Ensure compliance with Client Third Party Risk Reduction (CTPRR) requirements
  • Assist in implementing security controls aligned with regulatory requirements


Client and stakeholder engagement:

  • Engage with clients on security-related matters including risk remediation and onboarding
  • Provide security advisory support for new software and system implementations
  • Collaborate with cross-functional teams to embed security into business processes

 
Security awareness and continuous improvement:

  • Contribute to security awareness initiatives and training programmes
  • Develop training materials and educate staff on best security practices
  • Research emerging threats and recommend enhancements
  • Evaluate and support implementation of new security technologies

 
Key Internal and External Relationships
Internal           
Stakeholder:

  • IT Teams - Collaboration on security implementation and vulnerability remediation
  • Risk and Compliance - Alignment on regulatory and governance requirements
  • Business Units -Security guidance and risk awareness
  • Security Operations Team - Coordination of monitoring and incident response

 
Stakeholder:

  • Clients - Security governance, compliance alignment, and risk remediation
  • Third-party Vendors - Security assessments and risk management
  • Industry Bodies - Staying informed on security standards and trends

 
Organogram
Information Security Manager
This position







Competencies
Knowledge:

  • Degree in Information Security, Cybersecurity, Computer Science, or related
  • Familiarity with security frameworks (NIST, CIS, PCI-DSS, ISO 27001, GDPR)
  • Understanding of network security, system architecture, and protocols
  • Experience with SIEM tools, firewalls, IDS/IPS, & endpoint security
  • Knowledge of vulnerability management and penetration testing practices
  • Bachelor’s degree or equivalent in a relevant field
  • Preferred Certifications: CompTIA Security+/ CISSP /CISM


Skills:

  • Technical Expertise (L3)
  • Problem Solving (L3)
  • Planning and Organising (L3)
  • Customer Service (L3)
  • Oral and Written Communication (L3)


Attributes:

  • Attention to detail
  • Collaboration
  • Resilience

Job Purpose:
The purpose of this role is to provide enterprise security assurance, support client security governance, and ensure ongoing compliance with relevant standards while identifying and mitigating risks to safeguard the organisations and clients’ information assets, ensuring confidentiality, integrity, and availability

Key Performance Areas
Information security operations:

  • Monitor security alerts and events from various systems (SIEM, IDS/IPS, endpoint tools)
  • Investigate potential threats and escalate incidents as necessary
  • Support implementation and monitoring of security controls (firewalls, access control, encryption)
  • Maintain and administer security tools including antivirus, DLP, and endpoint protection
  • Install and manage security software solutions to protect IT infrastructure

 
Risk management:

  • Participate in enterprise risk assessments to identify threats and vulnerabilities
  • Support vulnerability assessments, analyse results, and assist in remediation prioritisation
  • Collaborate with IT and business teams to reduce identified risks
  • Contribute to penetration testing activities and remediation efforts
  • Assist in developing organisational security best practices

 
Incident management and response:

  • Support incident response activities including investigation, documentation, and reporting
  • Analyse security breaches and assess impact
  • Maintain accurate incident records for audit and compliance purposes
  • Collaborate with internal stakeholders during incident remediation


Compliance and governance

  • Support compliance with industry standards and frameworks (PCI-DSS, ISO 27001, SOC 2, GDPR, POPIA, NIST),
  • Participate in internal and external security assessments and audits
  • Ensure compliance with Client Third Party Risk Reduction (CTPRR) requirements
  • Assist in implementing security controls aligned with regulatory requirements


Client and stakeholder engagement:

  • Engage with clients on security-related matters including risk remediation and onboarding
  • Provide security advisory support for new software and system implementations
  • Collaborate with cross-functional teams to embed security into business processes

 
Security awareness and continuous improvement:

  • Contribute to security awareness initiatives and training programmes
  • Develop training materials and educate staff on best security practices
  • Research emerging threats and recommend enhancements
  • Evaluate and support implementation of new security technologies

 
Key Internal and External Relationships
Internal           
Stakeholder:

  • IT Teams - Collaboration on security implementation and vulnerability remediation
  • Risk and Compliance - Alignment on regulatory and governance requirements
  • Business Units -Security guidance and risk awareness
  • Security Operations Team - Coordination of monitoring and incident response

 
Stakeholder:

  • Clients - Security governance, compliance alignment, and risk remediation
  • Third-party Vendors - Security assessments and risk management
  • Industry Bodies - Staying informed on security standards and trends

 
Organogram
Information Security Manager
This position







Competencies
Knowledge:

  • Degree in Information Security, Cybersecurity, Computer Science, or related
  • Familiarity with security frameworks (NIST, CIS, PCI-DSS, ISO 27001, GDPR)
  • Understanding of network security, system architecture, and protocols
  • Experience with SIEM tools, firewalls, IDS/IPS, & endpoint security
  • Knowledge of vulnerability management and penetration testing practices
  • Bachelor’s degree or equivalent in a relevant field
  • Preferred Certifications: CompTIA Security+/ CISSP /CISM


Skills:

  • Technical Expertise (L3)
  • Problem Solving (L3)
  • Planning and Organising (L3)
  • Customer Service (L3)
  • Oral and Written Communication (L3)


Attributes:

  • Attention to detail
  • Collaboration
  • Resilience

Desired Skills:

  • Risk management:
  • Incident management
  • and response
  • Security awareness
  • Client and stakeholder engagement
  • Compliance and governance

Recru-it

About the agency

Recruit IT Recruitment IT Recruitment and Talent Sourcing Specialists Offices in Cape Town and Port Elizabeth as well as Consultants working remotely across the country Telephone number 087 805 8536 www.recru-it.co.za >recru-it* COMPANY PROFILE Certified at a BEE Procurement Recognition Level of 110% >Introduction* >recru-it*was established in August 2005 & specializes in and focuses on the full spectrum of positions within the IT and other sectors. We focus our approach on delivering a superior service to both our client and candidate, in all portfolios and phases throughout the Recruitment process, supporting real transformation within the IT Industry and other sectors through ethical and transparent business practices >Value added services* • Advertising Client Roles • Screening Applications • CV searches • Head Hunting Candidates • CV Selection • Labour Broking • Pay structure advice for client & candidate >Additional services on request* • Personal Reference checks • Credit checks • Criminal checks • ID checks • Academic checks • Qualification checks >Placements portfolio* • Software Engineering & Development • I.T. Solution Sales and Strategic Sales • Sales & marketing • Finance and Insurance • HR • Engineering • Administration / Office Management • Healthcare • FMCG • Warehousing / Logistics • Telecommunications • Training and Development • Executive and senior level placements • ERP & CRM Consultants • Project Management & Administration • I.T Executive Management • Business Analysis • Business Intelligence • Consulting • Network Engineering • Support • Testing • Product Support Specialists   >Operational structure * >recru-it*uses a flat open structure in our approach  Each consultant takes personal ownership for each client request. The consultants are account managers with their respective clients ensuring professional and personal interaction at all times.  Our team supports each other in an interactive, transparent manner to deliver highest quality candidates on each specification, thus ensuring a fast and effective turnaround time to fulfill your every labour requirement. >recru-it*was established in August 2005. Carbon foot print  We practice a 90% paperless environment as most of our duties are internet and electronic. >BEE Profile*  >recru-it*is owned by 2 individuals with 8 additional staff members • 50 % of the business is owned by a black person. • 50% of the business is women owned.  >recru-it*has been officially & precisely rated according to our company structure. • We have been certified at a BEE Procurement Recognition Level of 110%. • Enterprise development – on site as well as external training courses for staff ensuring continuous skill improvement. • Corporate Social Investment – we do not have a formal CSI policy, but we do annual donations.

Receive a daily digest of all new jobs matching this job. Your information is safe with us and you can cancel any time.

Expires in 28 days

Email me jobs similar to: Senior Associate Information Security Analyst

Receive a daily digest of all new jobs matching this job: Senior IT Auditor. Your information is safe with us and you can cancel at any time.