Senior Infrastructure Security Engineer

https://www.swanitrecruitment.co.za/latest-jobs/294-senior-infrastructure-security-engineer/infrastructure/western-cape/job2024-11-20 14:20:522025-01-18 Swan IT Recruitment South Africa
Job Type Permanent
Area Western Cape, South AfricaCape Town, South Africa Western Cape South Africa
Sector IT - InfrastructureIT - Cybersecurity
Salary R1 200 000 – R1 500 000 Per Annum
Start Date 2025
Job Ref VR/26047
Description

Swan iT is searching for a Senior Infrastructure Security Engineer to join a client in Cape Town.


This candidate will serve as a technical leader and guide as needed on technical efforts initiated by the Cybersecurity, Infrastructure, and Operations teams and projects outside of Security.


Responsibilities:



  • Active Directory Security Management

    • Design and manage security configurations for AD environments, including multi-domain forests

    • Perform regular security assessments and audits of AD infrastructure

    • Develop and enforce security policies related to AD, including password policies, account lockout policies, and privileged access management



  • Identity and Access Management (IAM)

    • Manage the lifecycle of AD accounts, groups, and organisational units (OUs)

    • Implement and manage Role-Based Access Control (RBAC) and least privilege access models



  • Incident Response and Threat Mitigation

    • Coordinate technical response during investigations into infrastructure security-related security incidents, including unauthorised access, privilege escalation, and breaches (primary point of contact for the CSIRT)

    • Develop and maintain incident response playbooks related to AD, firewalls, and VPN

    • Collaborate with the Security Operations Center (SOC) to detect and respond to AD and other infrastructure threats.

    • Implement measures to protect AD against common threats like Pass-the-Hash, Golden Ticket attacks, and Kerberoasting



  • Infrastructure Management:

    • Implement disaster recovery solutions for AD, including backup and restore processes

    • Plan and coordinate lifecycle and capacity management of the SIEM service (software version upgrades, hardware upgrades and migrations, deployment of new infrastructure)

    • Ensuring compliance with regulatory standards, industry best practices, and company policies and standards



  • Collaboration and Communication:

    • Work closely with cybersecurity, compliance, architecture, and infrastructure & operations teams to align infrastructure security with overall organisational goals

    • Provide technical leadership and mentoring to junior engineers and other IT staff.

    • Prepare and present reports on AD security posture to senior management and stakeholders

    • Timely and accurate communication of project status reports, risks and issues to key stakeholders

    • Represent team as senior technical subject matter expert and key decision maker in project meetings and activities; function as a member of the extended central Cyber Security team during weekly progress meetings, ISO Forums; and participate in the annual strategic planning of the central Cyber Security Team

    • Contribute to both Cybersecurity and Infrastructure & Operations roadmaps and overviews to key stakeholders and internal customers

    • Management and oversight of 3rd party consultants assigned to specific projects

    • Manage SIEM service provider

    • Coordinate technical efforts in support of new initiatives to improve Cyber resilience in the group




Requirements:



  • Bachelor’s degree in Computer Science, Information Technology, or a related field. Equivalent experience may be considered

  • Certifications such as CISSP, CISM, Microsoft Certified: Identity and Access Administrator Associate, or similar

  • At least 7 years of experience in IT security, with at least 5 years focused on Active Directory

  • Proven experience in managing and securing multi-domain AD environments

  • Experience with AD integration in hybrid cloud environments

  • Experience in the technologies involved in networking, firewalls, Windows and Unix/Linux Operating Systems and internet protocols

  • Experience with security tools such as Microsoft Entra ID Protection, Checkpoint or FortiGate firewalls and SIEM tools

  • Experience with AD migrations, mergers, or restructuring

  • Experience with logging systems and log analysis


Apply today!

Apply Later
Sign in
Register
Apply
Later
Similar Jobs
  • Senior Integration Engineer
    South Africa, Western Cape
    Infrastructure
    R900 000 – R1 000 000 Per Annum

    Swan iT is searching for a Senior Integration Engineer for a permanent position in Cape Town.

    The ideal candidate will be responsible for analysing, designing, integrating and building solutions that enable operations and business strategic goals.

    Responsibilities:

    Define a...
  • Network Engineer
    South Africa, Western Cape
    Infrastructure
    R600 000 – R750 000 Per Annum

    Our client in the medical industry is searching for a Network Engineer to join them in Stellenbosch. The main purpose of this job is to conduct installation and management of the company Network Infrastructure and Security.

    Responsibilities:

    Design and manage Network performance wi...
  • Snr Specialist: IT Unified Communications
    South Africa, Johannesburg
    Infrastructure
    R600 000 – R750 000 Per Annum

    Swan iT is searching for a Snr Specialist: IT Unified Communications to join a client in Johannesburg. As a Senior Cisco CCNP specialist your responsibility is to assist in the Architectural design and high-level support of the Networks environment which includes the optimisation of connectivity ...

Email Me Jobs Like This
Subscribed to similar jobs notifications
We use cookies to provide you with the best possible browsing experience on our website. You can find out more below.
Cookies are small text files that can be used by websites to make a user's experience more efficient. The law states that we can store cookies on your device if they are strictly necessary for the operation of this site. For all other types of cookies we need your permission. This site uses different types of cookies. Some cookies are placed by third party services that appear on our pages.
+Necessary
Necessary cookies help make a website usable by enabling basic functions like page navigation and access to secure areas of the website. The website cannot function properly without these cookies.
ResolutionUsed to ensure the correct version of the site is displayed to your device.
essential
SessionUsed to track your user session on our website.
essential

More Details
Welcome to Swan SA – our Africa and Middle East division. If you require our UK & EU, Asia and Americas division, please click here