- Published on
SOUTH AFRICAN SPECIAL RISK INSURANCE ASSOCIATION (SASRIA)
CYBER INCIDENT RESPONSE TECHNICIAN
Details
Closing Date
2026/08/17
Reference Number
SAS260731-1
Job Title
Cyber Incident Response Technician
Job Type
Permanent
Division
Business Change and Technology
Department
IT GRC
EE Occupational Levels
Level 4 & 5: Skilled, Technical and Academically Qualified
Location - Town / City
Johannesburg
Location - Province
Gauteng
Location - Country
South Africa
Job Advert Summary
The major focus for this role is ensuring Sasria’s security posture is maintained by proactively identifying, tracking, and mitigating IT incidents. The role is also responsible for assisting in risk management, compliance management, procurement of IT services, audit issue resolution, and IT governance.
Minimum Requirements
Qualifications
Diploma/Degree in IT related studies
Cybersecurity certifications will be an added advantage
Experience
1-2 years’ experience in IT security, risk management, or compliance monitoring.
Familiarity with patch management processes, and IT governance frameworks.
Knowledge of cybersecurity tools is advantageous
Duties and Responsibilities
Incident monitoring and response
- Monitor, track, and respond to IT security incidents in collaboration with the Managed Security Operations Center (MSOC)
- Assist in triaging, investigating, and mitigating cybersecurity threats and vulnerabilities.
- Support in incident containment, eradication, and recovery phases of the Incident Response Lifecycle.
- Document and report incidents following the Sasria’s Incident Response Plan (IRP).
- Assist in developing and updating incident response documentation and playbooks
Risk and compliance management
- Support the GRC team in identifying, assessing, and mitigating IT risks.
- Track the status and effectiveness of risk mitigation actions.
- Complete KRIs for risk reporting.
- Assist in tracking and reviewing Policies, Procedures and Standards to ensure alignment with governance frameworks.
- Help ensure compliance with GOI 5, FSCA IT Joint Standard, POPIA, RICA, Cybercrimes Act, and other applicable industry regulations and legislations.
- Provide support in risk assessments related to IT services and vendor management.
- Work with the team on resolving IT audit findings and implementing corrective actions.
Procurement of IT goods and services
- Assist in procurement processes for GRC, ensuring compliance with internal policies and regulatory requirements.
- Work with Legal, Finance, and IT teams to ensure all IT service contracts align with governance and security standards.
Audit Findings Resolution & Compliance Monitoring
- Assist in tracking IT audit findings and ensure remediation actions are implemented effectively.
- Support the closure of compliance findings by ensuring documentation, procedural updates and CRMP are completed.
- Assist in compiling reports for internal audits, regulatory reviews, Manco and Board committee meetings.
Patch management
- Track and deploy security patches for critical systems.
- Ensure timely patching of vulnerabilities identified during incident response.
- Collaborate with IT teams to test and validate patches before deployment.
- Maintain patch management records for audit and compliance tracking.
Policy
We are committed to Employment Equity when recruiting internally and externally. It is company policy to promote from within wherever possible. Therefore, please be aware that internal candidates will be considered first before reviewing external applicants, provided that this supports achievement of our Employment Equity goals.