Overview
SOC Analyst – L2 Jobs in Durban, KwaZulu-Natal, South Africa at Silent Guardian Pty Ltd
Title: SOC Analyst – L2
Company: Silent Guardian Pty Ltd
Location: Durban, KwaZulu-Natal, South Africa
Location: Durban (on-site)
Employment Type: Full-time
Silent Guardian is a South African cybersecurity company providing Managed Detection and Response (MDR), Security Operations Centre (SOC), vulnerability management and cybersecurity advisory services to organisations across multiple industries. Our mission is to help clients detect, respond to and recover from cyber threats through proactive security monitoring and expert incident response. We are looking for a skilled and motivated Level 2 SOC Analyst to join our growing Security Operations Centre (SOC).
Role Overview:
This role is ideal for an experienced cybersecurity professional who thrives in a fast-paced environment, enjoys investigating complex security incidents, and is passionate about protecting client environments from evolving cyber threats. As a Level 2 SOC Analyst, you will investigate escalated security incidents, coordinate containment and remediation activities, mentor junior analysts, and contribute to the continuous improvement of our SOC operations.
Key Responsibilities
- Investigate and manage escalated cybersecurity incidents from detection through to resolution.
- Perform advanced analysis of endpoint, network, cloud and identity-based security events.
- Correlate threat intelligence with security alerts to determine risk and impact.
- Assess vulnerabilities and provide security context during investigations.
- Coordinate containment and remediation activities with internal teams and clients.
- Produce clear incident reports and technical documentation.
- Escalate complex or high-severity incidents when required.
- Support, mentor and coach Tier 1 SOC Analysts.
- Contribute to SOC process improvements, threat detection tuning and operational excellence.
Required Technical Skills & Experience
2+ years' experience in a Security Operations Centre (SOC) or Cybersecurity Incident Response role.
Strong understanding of:
- Endpoint Detection & Response (EDR)
- SIEM platforms
- Windows and Linux operating systems
- Networking fundamentals
- Microsoft 365 and Azure security
Experience investigating malware, phishing, ransomware and account compromise incidents.
Knowledge of MITRE ATT&CK, Indicators of Compromise (IOCs), and threat intelligence.
Experience working with Wazuh SIEM and Cybereason MDR technologies an advantage.
Strong analytical, troubleshooting and problem-solving skills.
Excellent written and verbal communication skills.
Ability to work rotational shifts, including nights, weekends and public holidays.
Qualifications
- Security+, CySA+, CEH, GCIH, GCIA or equivalent cybersecurity certifications.
- Experience with Wazuh, Cybereason, Microsoft Defender, Sentinel or similar platforms.
- Familiarity with vulnerability management and threat intelligence tools.
What We Offer
- Opportunity to work within a modern Managed Security Operations Centre.
- Exposure to diverse client environments and emerging cyber threats.
- Ongoing technical training and professional development.
- Career progression within a growing cybersecurity company.
- Collaborative and supportive team environment.