Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

SOC Engineer

S-RM
CompanyS-RM
CategoryEngineering
LocationCape Town
RemoteOn-site (inferred)
EmploymentNot stated
LevelNot stated
SalaryNot stated by the employer
Posted21 May 2026
Last verified30 Jul 2026
SourceEmployer career page (greenhouse)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
SOC Engineer , South Africa   (Hybrid)       WHO WE ARE   S-RM is a global intelligence and cyber security consultancy.  Since 2005, we’ve helped some of the most demanding clients in the world solve some of their toughest information security challenges.       We’ve been able to do this because of our outstanding people.  We’re committed to developing sharp, curious, driven individuals who want to think critically, solve complex problems, and achieve success.       But we also know that work isn’t everything. It’s about the lives and careers it helps us build.  We’re immensely proud of this  culture  and we invest in our people’s wellbeing, learning, and ideas every day.     We’re excited you’re thinking about joining us.   WORKING IN CYBER AT S-RM   Our Cyber Security division is the fastest-growing part of S-RM. The cyber sector is always evolving, and our  Advisory ,  Managed Services , and  Incident Response  practices are in more demand than ever.      We’re building a team to meet this challenge.  We’re quick to respond, innovate, and improve.  We don’t get too hung up on hierarchy or bureaucracy.  If your ideas are good enough, we’ll empower you to implement them.  If you’re the best person to talk to a customer, you’ll get that opportunity, regardless of the title in your email signature. And when you need a hand, your team will always have your back.     We also don’t believe there’s a typical cyber security professional.  We’ve built a team of intelligence analysts, technical specialists, software developers, investigators, risk managers, and more.  You’ll always find a range of perspectives and expertise to help you learn and grow.      If that sounds like your kind of team, we’d like to hear from you.           THE ROLE   As  SOC  Engineer, you will drive the technical onboarding of MSSP customers and ensure comprehensive security monitoring coverage through log ingestion and detection engineering. The ideal candidate will have strong  expertise  in SIEM administration, log source integration, and  detection  rule development. Additionally, having experience with customer-facing technical roles, data parsing and normalization, and threat detection frameworks such as MITRE ATT&CK, will get you ahead.   Key Responsibilities   Customer Onboarding & Integration: You will lead the technical onboarding of new MSSP customers, including scoping log sources,   deploying collection  infrastructure  and  validating  end-to-end data flow. This includes   managing onboarding timelines, coordinating with customer IT teams, and ensuring a smooth transition into active monitoring.   Log Ingestion & Data Engineering: You will implement log ingestion pipelines, including parsing, normalization, and   enrichment of diverse log sources. This   includes troubleshooting ingestion failures, managing data quality, and  optimizing  volume and retention across a multi-tenant   architecture.   Detection Engineering: You will develop, tune, and  maintain  detection logic aligned   to customer environments and threat landscapes. This includes reducing false positive rates  and  
HOUSE AD982,094 openings. Erioun finds yours.Scored against your own profile, every hour.Try the radar →