419 Information Security Analyst Threat Detection jobs in Kenya
Senior Threat Intelligence Analyst - Information Security
Posted 5 days ago
Job Viewed
Job Description
Responsibilities:
- Conduct in-depth research and analysis of emerging cyber threats, vulnerabilities, and attacker tactics, techniques, and procedures (TTPs).
- Develop and maintain threat intelligence feeds, reports, and dashboards for consumption by security operations, incident response, and executive leadership.
- Monitor and analyze open-source intelligence (OSINT), dark web forums, and other relevant sources for threat indicators.
- Assess the impact of new threats and vulnerabilities on the organization's systems and data.
- Collaborate with incident response teams to provide timely and relevant intelligence during security events.
- Develop and refine threat hunting methodologies based on intelligence findings.
- Build and manage relationships with external threat intelligence communities and vendors.
- Create predictive threat models and provide strategic recommendations for security investments and improvements.
- Contribute to the development and maintenance of the organization's security awareness programs by providing threat landscape insights.
- Mentor junior analysts and share knowledge within the cybersecurity team.
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field. Master's degree or relevant certifications (e.g., CISSP, GIAC) are highly desirable.
- Minimum of 6 years of experience in cybersecurity, with a specialization in threat intelligence, security operations, or incident response.
- Demonstrated expertise in analyzing various types of cyber threats, including malware, phishing, ransomware, and advanced persistent threats (APTs).
- Proficiency with threat intelligence platforms, SIEM tools, and data analysis techniques.
- Strong understanding of networking protocols, operating systems, and common security vulnerabilities.
- Experience with scripting languages (e.g., Python) for automation and data analysis is a significant advantage.
- Excellent analytical, problem-solving, and critical-thinking skills.
- Ability to communicate complex technical information clearly and concisely to both technical and non-technical audiences.
- Proven ability to work independently and collaboratively in a remote team environment.
- A strong ethical compass and commitment to maintaining confidentiality.
Remote Information Security Analyst - Threat Detection Specialist
Posted 21 days ago
Job Viewed
Job Description
Responsibilities:
- Monitor security alerts and logs from various sources (SIEM, IDS/IPS, firewalls, endpoints) to detect potential security incidents.
- Analyze security events and incidents to determine scope, impact, and root cause.
- Investigate and respond to security breaches and cyber threats in a timely and effective manner.
- Develop and refine threat detection rules, signatures, and use cases.
- Conduct vulnerability assessments and penetration testing (or coordinate with external teams).
- Implement and manage security tools and technologies.
- Contribute to the development and maintenance of incident response plans and playbooks.
- Perform forensic analysis of compromised systems when necessary.
- Stay abreast of the latest cybersecurity threats, vulnerabilities, and attack vectors.
- Educate internal teams on security best practices and awareness.
- Prepare detailed reports on security incidents and mitigation strategies.
- Ensure compliance with relevant security standards and regulations.
- Collaborate with IT and other departments to implement security controls.
This is a fully remote position, offering the flexibility to work from your preferred location. Our client is committed to a secure and productive remote work environment, utilizing cutting-edge tools to ensure data protection and operational efficiency. While the role is remote, it is conceptually linked to our client's security operations center near **Mlolongo, Machakos, Kenya**, providing an opportunity to play a vital role in global cybersecurity. We seek proactive and analytical individuals dedicated to safeguarding digital infrastructure.
Information Security Analyst - Threat Detection
Posted 12 days ago
Job Viewed
Job Description
Lead Information Security Analyst - Threat Detection
Posted 21 days ago
Job Viewed
Job Description
Responsibilities:
- Develop and refine threat detection strategies and playbooks.
- Monitor security alerts and events from various sources, including SIEM, IDS/IPS, and endpoint detection systems.
- Conduct in-depth analysis of security incidents to determine root cause, scope, and impact.
- Lead and coordinate incident response activities, including containment, eradication, and recovery.
- Investigate potential security breaches and vulnerabilities.
- Perform threat hunting to proactively identify advanced persistent threats (APTs) and zero-day exploits.
- Recommend and implement security controls to mitigate identified risks.
- Stay current with emerging threats, vulnerabilities, and security technologies.
- Develop and deliver security awareness training to employees.
- Mentor and guide junior security analysts.
- Collaborate with IT and other departments to ensure security best practices are integrated into all operations.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.
- Minimum of 7 years of experience in information security, with a strong focus on threat detection and incident response.
- Proven experience with Security Information and Event Management (SIEM) tools (e.g., Splunk, LogRhythm).
- Hands-on experience with endpoint detection and response (EDR) solutions.
- In-depth knowledge of common attack vectors, malware analysis, and network forensics.
- Experience with vulnerability management and penetration testing concepts.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong understanding of cybersecurity frameworks and regulations.
- Exceptional communication and leadership skills, with the ability to articulate complex technical issues to both technical and non-technical audiences.
- Relevant security certifications such as CISSP, GCIH, GCFA, or CEH are highly desirable.
Information Security Analyst, Threat Detection & Response
Posted 21 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor security infrastructure for threats and vulnerabilities using SIEM, IDS/IPS, and other security tools.
- Analyze security alerts and logs to identify potential security incidents and breaches.
- Investigate security incidents, determine root causes, and coordinate remediation efforts.
- Develop and implement incident response playbooks and procedures.
- Conduct vulnerability assessments and penetration testing.
- Stay current with the latest threat intelligence, attack vectors, and security technologies.
- Provide security awareness training and guidance to employees.
- Assist in the development and enforcement of security policies and standards.
- Collaborate with IT and other departments to ensure security is integrated into all systems and processes.
- Generate reports on security incidents, vulnerabilities, and remediation progress.
- Participate in on-call rotations for incident response as needed.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 3-5 years of experience in information security, with a focus on threat detection and incident response.
- Strong understanding of networking protocols, operating systems, and common attack vectors.
- Hands-on experience with SIEM tools (e.g., Splunk, ELK Stack), IDS/IPS, firewalls, and endpoint security solutions.
- Knowledge of vulnerability management and penetration testing methodologies.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong written and verbal communication skills, vital for remote collaboration and reporting.
- Ability to work independently, manage priorities effectively, and remain calm under pressure in a remote environment.
- Relevant certifications such as CompTIA Security+, CEH, CISSP are highly desirable.
- Experience with scripting languages (e.g., Python, PowerShell) for automation is a plus.
Senior Information Security Analyst (Threat Detection)
Posted 21 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor security events and alerts from various sources (SIEM, IDS/IPS, EDR) to identify potential security incidents.
- Conduct in-depth investigations of security breaches, malware infections, and other cyber threats.
- Develop and refine threat detection rules, signatures, and correlation logic within SIEM and other security tools.
- Perform forensic analysis of compromised systems to determine root cause and scope of incidents.
- Develop and execute incident response plans, coordinating with relevant stakeholders during security incidents.
- Stay current with the latest cybersecurity threats, vulnerabilities, and attack vectors.
- Conduct vulnerability assessments and penetration testing to identify weaknesses in systems and applications.
- Develop and implement security best practices, policies, and procedures.
- Provide technical guidance and mentorship to junior security analysts.
- Automate security tasks and processes where possible to improve efficiency.
- Create detailed incident reports, post-incident reviews, and recommendations for security enhancements.
- Collaborate with IT and development teams to implement security controls and remediation measures.
This role is based in Embu, Embu, KE , but is conducted entirely remotely, demanding excellent self-management, analytical prowess, and the ability to operate effectively in a distributed team. We are looking for a seasoned security professional with a passion for protecting digital assets and a proactive mindset towards threat mitigation. The ideal candidate will be adept at identifying and neutralizing complex cyber threats.
Qualifications:
- Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field.
- Minimum of 4-6 years of experience in information security, with a focus on threat detection, incident response, and security operations.
- Deep understanding of network protocols, operating systems (Windows, Linux), and common attack vectors.
- Hands-on experience with SIEM tools (e.g., Splunk, QRadar), EDR solutions, and threat intelligence platforms.
- Proficiency in digital forensics and malware analysis techniques.
- Strong understanding of security frameworks and best practices (e.g., NIST, ISO 27001).
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong communication and documentation skills, with the ability to articulate technical findings clearly.
- Relevant security certifications such as CISSP, CEH, GIAC, or Security+.
- Ability to work independently and as part of a collaborative remote team.
Lead Information Security Analyst - Threat Detection & Response
Posted 21 days ago
Job Viewed
Job Description
Be The First To Know
About the latest Information security analyst threat detection Jobs in Kenya !
Remote Information Security Analyst - Threat Detection
Posted 21 days ago
Job Viewed
Job Description
Responsibilities:
- Monitor security alerts and events from various sources, including SIEM systems, IDS/IPS, firewalls, and endpoint detection tools.
- Analyze security incidents to determine their scope, impact, and root cause, employing advanced threat detection and analysis techniques.
- Respond to security breaches and cyber-attacks by initiating incident response protocols, coordinating containment efforts, and leading recovery operations.
- Conduct vulnerability assessments and penetration testing to identify weaknesses in systems and applications.
- Develop and maintain security policies, procedures, and best practices to safeguard company assets.
- Implement and manage security controls, including access management, data encryption, and network security measures.
- Stay informed about emerging threats, vulnerabilities, and cybersecurity trends, providing proactive recommendations for security enhancements.
- Collaborate with IT teams to implement security patches, updates, and configuration changes.
- Conduct security awareness training for employees to promote a security-conscious culture.
- Document security incidents, investigations, and resolution steps for audit and compliance purposes.
- Participate in security audits and ensure compliance with relevant industry regulations and standards.
- Develop and refine incident response plans and playbooks.
- Assist in the evaluation and implementation of new security technologies and solutions.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. Relevant certifications such as CISSP, Security+, CEH, or GIAC are highly desirable.
- Minimum of 4-6 years of experience in information security, with a focus on threat detection, incident response, and vulnerability management.
- Proven experience with SIEM tools (e.g., Splunk, LogRhythm), IDS/IPS, firewalls, and endpoint security solutions.
- In-depth knowledge of common attack vectors, malware, and intrusion techniques.
- Strong understanding of network protocols, operating systems (Windows, Linux), and cloud security principles (AWS, Azure, GCP).
- Excellent analytical and problem-solving skills, with the ability to think critically under pressure.
- Strong written and verbal communication skills, capable of explaining complex technical issues to both technical and non-technical audiences.
- Demonstrated ability to work independently, prioritize tasks, and manage time effectively in a remote setting.
- Experience with scripting languages (e.g., Python, PowerShell) for automation is a plus.
- Familiarity with regulatory compliance frameworks (e.g., GDPR, ISO 27001) is beneficial.
Senior Information Security Analyst - Threat Detection & Response
Posted 21 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor security alerts and logs from various sources (SIEM, IDS/IPS, EDR, etc.) to detect and investigate potential security incidents.
- Perform in-depth analysis of security events, including malware analysis, forensic investigation, and root cause analysis.
- Develop and refine threat detection rules, signatures, and use cases to improve the effectiveness of security tools.
- Lead and manage incident response activities, including containment, eradication, and recovery efforts.
- Conduct vulnerability assessments and penetration testing, providing recommendations for remediation.
- Stay current with the latest threat intelligence, attack vectors, and security best practices.
- Develop and maintain incident response playbooks, procedures, and documentation.
- Collaborate with IT teams and business units to implement security controls and address identified risks.
- Provide security awareness training and guidance to end-users and technical staff.
- Participate in on-call rotations for security incident response as needed.
Qualifications:
- Bachelor's degree in Computer Science, Information Security, or a related field; relevant certifications (CISSP, GCIA, GCIH, OSCP) are highly desirable.
- 5+ years of experience in information security, with a strong focus on security operations, threat detection, and incident response.
- Proficiency with SIEM tools (e.g., Splunk, QRadar, LogRhythm) and security monitoring technologies.
- Hands-on experience with endpoint detection and response (EDR) solutions and network security monitoring.
- Knowledge of common attack frameworks (e.g., MITRE ATT&CK) and threat actor tactics, techniques, and procedures (TTPs).
- Experience with scripting languages (e.g., Python, PowerShell) for automation of security tasks.
- Strong analytical and problem-solving skills with meticulous attention to detail.
- Excellent written and verbal communication skills, with the ability to articulate complex security issues clearly.
- Ability to work independently and collaboratively in a remote team environment.
- Understanding of cloud security principles (AWS, Azure, GCP) is a plus.
Remote Information Security Analyst - Threat Detection & Incident Response
Posted today
Job Viewed
Job Description
Responsibilities:
- Monitor security information and event management (SIEM) systems for suspicious activities and potential threats.
- Analyze security alerts, logs, and network traffic to identify and validate security incidents.
- Conduct thorough investigations of security breaches and provide detailed incident response reports.
- Develop and implement incident response plans and procedures.
- Perform vulnerability assessments and penetration testing to identify security weaknesses.
- Recommend and implement security controls and configurations to mitigate identified risks.
- Stay updated on the latest cybersecurity threats, vulnerabilities, and attack vectors.
- Collaborate with IT and other teams to implement security best practices across the organization.
- Develop and maintain security documentation, policies, and procedures.
- Conduct security awareness training for employees.
- Assist in the management of security tools and technologies.
- Participate in security audits and compliance efforts.
- Continuously evaluate and improve the effectiveness of security monitoring and response capabilities.
- Provide expertise on security matters to stakeholders across the organization.
- Contribute to the development of threat intelligence capabilities.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 3-5 years of experience in information security, with a focus on threat detection and incident response.
- Strong understanding of networking protocols, operating systems, and cybersecurity principles.
- Experience with SIEM tools (e.g., Splunk, QRadar, ELK Stack) and security technologies (e.g., firewalls, IDS/IPS, EDR).
- Proficiency in analyzing security logs and network traffic.
- Knowledge of incident response frameworks (e.g., NIST, SANS).
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong communication and reporting skills, with the ability to explain technical concepts to non-technical audiences.
- Relevant security certifications such as Security+, CEH, CISSP are highly desirable.
- Ability to work independently and manage time effectively in a remote environment.
- This role is based in Mombasa, Mombasa, KE but is performed entirely remotely.