← Back to Connect Jobs
CONNECT VERIFIED

Senior Security Analyst

Ozow

Cape Town, Western Cape · On-site · Posted 25 Sept 2026

Create your free job-seeker profileGet matched to roles like this. Free, no card needed.
FREE JOB ALERTS

Get alerts for Senior Security Analyst jobs in Cape Town

One email when new matching roles go live on CallTech Connect. Unsubscribe any time.

About this role

<p><strong><span data-contrast="auto">Meet Ozow</span></strong><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:100,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <p><span data-contrast="auto">Ozow is a leading fintech company that’s redefining digital payments in South Africa and beyond, making payments more accessible, secure, and convenient for businesses and consumers alike. As a fast-growing player in the sector, we foster a culture of innovation, diversity, and inclusivity.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <p><strong><span data-contrast="auto">More about this Ozow fantastic position</span></strong><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:100,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <p><span data-contrast="auto">The Senior Security Analyst is the most senior hands-on security specialist at Ozow, accountable for the strength of our security posture and for protecting the integrity, availability, and confidentiality of our systems and data. Reporting into the Infrastructure Manager, this role owns and evolves the security programme rather than only executing it.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <p><span data-contrast="auto">This is a deeply technical role for someone who enjoys both breaking and securing systems, and who is ready to set direction. You will set the standards, lift security capability across the business, and translate technical risk into decisions that leadership, auditors, banks, and merchants can act on.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <p><strong><span data-contrast="auto">Your role and responsibilities</span></strong><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:100,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <p><em><span data-contrast="auto">Security direction and technical leadership</span></em><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:100,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Own and evolve the security roadmap with the Infrastructure Manager, sequenced by risk and business impact.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Define security standards, baselines, and testing methodology, and hold teams to them.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Mentor engineers and infrastructure specialists, and set the testing strategy: what is tested, how often, and to what depth.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Report security posture, risk, and progress to senior leadership in terms the business can act on.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <p><em><span data-contrast="auto">Offensive security and assurance</span></em><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:100,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Lead hands-on penetration testing across infrastructure, cloud workloads, applications, APIs, and endpoints.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Design and run adversary simulations and red team exercises to validate real-world defensive capability.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Validate remediation through retesting, and drive a purple-team approach with Engineering.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <p><em><span data-contrast="auto">Security operations and incident response</span></em><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:100,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Own the selection, implementation, and tuning of security tooling (SIEM, EDR, scanners, WAFs, IDS/IPS).</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Set the detection and monitoring strategy, and define escalation paths and response playbooks.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Act as technical lead during incidents, coordinating Infrastructure, Engineering, and Risk through to closure.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Run post-incident reviews and turn findings into permanent control improvements.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <p><em><span data-contrast="auto">Vulnerability management and hardening</span></em><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:100,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Own vulnerability management end to end across cloud infrastructure, applications, CI/CD pipelines, and endpoints.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Define risk-based prioritisation and remediation SLAs, and drive closure across teams.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Act as design authority on secure architecture, least privilege, segmentation, and encryption.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Define and enforce secure configuration baselines, aligned to CIS Benchmarks where applicable.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <p><em><span data-contrast="auto">Automation and enablement</span></em><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:100,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Automate repeatable security work: triage, reporting, evidence collection, and remediation tracking, and own external penetration testing engagements end to end.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Define safe, controlled GenAI use cases for security, including the guardrails around them.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Embed security into engineering practice, pipelines, and workflows (DevSecOps).</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <p><em><span data-contrast="auto">Compliance, governance, and stakeholders</span></em><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:100,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Lead the technical workstream for audits across PCI DSS, ISO 27001, POPIA, and relevant SARB directives.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Own internal security policies and standards, and advise Risk on where risk acceptance is appropriate.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Lead technical responses for merchant and bank due diligence and security questionnaires.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <p><strong><span data-contrast="auto">You are an ideal candidate if you have</span></strong><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:100,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></p> <ul> <li><span data-contrast="auto">Bachelor’s degree in computer science, Information Security, or a related field, or equivalent experience.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">8+ years in cybersecurity, offensive security, security engineering, or security operations, including clear ownership of a security programme or domain.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Deep hands-on penetration testing and adversary simulation experience, and experience leading incidents through to root cause and closure.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">A track record in vulnerability management at scale, including setting SLAs and driving remediation across teams you do not manage.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Deep working knowledge of ISO 27001, NIST, PCI DSS, CIS Benchmarks, and OWASP, and how to evidence them under audit.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Experience selecting and implementing security tooling, not only operating it, strong AWS security expertise or another major cloud, and scripting ability.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto"><strong>Advantageous</strong>: OSCP, OSCE, CRTO, CREST, CISSP, or AWS Security Specialty, and regulated-environment experience.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Able to influence without authority, and to take a technical risk to an executive, an auditor, or a merchant and be understood.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Self-directed and pragmatic, focused on practical risk reduction over perfect security.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:40,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul><div class="content-conclusion"><p><strong><span data-contrast="auto">Your skills and competencies</span></strong></p> <ul> <li><span data-contrast="none">You eagerly embrace change, absorb cross-functional skills, and connect ideas across disciplines to drive fresh thinking and innovation.</span><span data-ccp-props="{}">&nbsp;</span></li> <li><span data-contrast="none">Ability to initiate, develop, maintain and leverage outstanding relationships to influence a wide network, both inside and outside the company.</span><span data-ccp-props="{}">&nbsp;</span></li> <li><span data-contrast="none">A trailblazer who steps up, takes charge, and creates meaningful impact—those driven by performance and purpose to lead from the front and make a real difference every day.</span><span data-ccp-props="{}">&nbsp;</span></li> <li><span data-contrast="none">You thrive in collaboration, embrace inclusion, and bring a genuine curiosity for global cultures—valuing collective success over individual credit.</span><span data-ccp-props="{}">&nbsp;</span></li> <li><span data-contrast="none">Demonstrate strategic foresight, sound judgement, and the ability to make confident decisions under uncertainty, always working toward the best possible outcomes.</span><span data-ccp-props="{}">&nbsp;</span></li> <li><span data-contrast="none">You challenge norms, champion innovation, and constantly seek growth—for themselves, their team, and the solutions they build.</span><span data-ccp-props="{}">&nbsp;</span></li> <li><span data-contrast="none">You are a decisive doer—those who take initiative, follow through with confidence, and ensure results through courageous, hands-on leadership.</span><span data-ccp-props="{}">&nbsp;</span></li> <li><span data-contrast="none">We value optimism, agility, and the strength to persevere under pressure—balancing performance with positivity, even in challenging environments.</span><span data-ccp-props="{}">&nbsp;</span></li> <li><span data-contrast="none">You are driven, proactive individuals who take ownership, face challenges with grit, and consistently push for excellence—not just as participants, but as catalysts for success.</span><span data-ccp-props="{}">&nbsp;</span></li> </ul> <p><strong>Interview process</strong>&nbsp;</p> <p>During the interview process you will meet with the People team, the hiring manager, and relevant CSuite. Our process may include psychometric and technical assessments, giving you an opportunity to demonstrate your strengths, skills and potential beyond your CV and interview.</p> <p><strong>In office perks</strong>&nbsp;</p> <ul> <li>Healthy breakfast, lunches and snacks</li> <li>Monthly team connects&nbsp;</li> <li>On-site Barista&nbsp;</li> </ul> <p><strong>Perks for South African based employees</strong></p> <ul> <li>Medical aid subsidy</li> <li>Group Risk Insurance</li> <li>Generous paid annual leave &nbsp;&nbsp;</li> <li>Birthday leave</li> <li>Learning and Development opportunities&nbsp;</li> <li>Mentorship programme</li> <li>Quarterly team building&nbsp;</li> <li>Community initiatives&nbsp;</li> <li>Access to cutting edge technology - <a href="https://ozow.com/tech-stack">Ozow Tech Stack</a></li> </ul> <p><strong>Our Employee Value Proposition</strong></p> <p>Join Ozow and become part of an elite force that challenges the ordinary and achieves the extraordinary. If you're driven to make an impact, embrace challenges, and seek unparalleled opportunities for growth, your journey starts here.</p> <p><strong>Compliance</strong></p> <p><span class="NormalTextRun CommentStart CommentHighlightPipeRest CommentHighlightRest SCXW7022158 BCX8">As </span><span class="NormalTextRun CommentHighlightPipeRest SCXW7022158 BCX8">a fintech company, we prioritize data security, confidentiality, regulatory and compliance. Due to the sensitive nature of our work, we require individuals with </span><span class="NormalTextRun SCXW7022158 BCX8">a high level</span><span class="NormalTextRun SCXW7022158 BCX8"> of integrity and trustworthiness to ensure adherence to financial regulations and industry standards. Given the sensitive nature of our work, all employees are expected to </span><span class="NormalTextRun SCXW7022158 BCX8">demonstrate</span><span class="NormalTextRun SCXW7022158 BCX8"> professionalism, accountability, and a commitment to ethical conduct in line with financial regulations and industry standards</span></p> <p><strong>Ready to be exceptional?<em> </em>Apply now!</strong>&nbsp;</p> <p><strong>Keen to know more?</strong>&nbsp;</p> <p>Interested in joining our rocket ship?&nbsp;&nbsp;</p> <p>To find out more about life at&nbsp;Ozow, head over to our Careers Page <a href="https://ozow.com/ozow-careers/">here!</a></p></div>

AWSCybersecurityExcelAIiOSGitUI
LOCATION
Cape Town, Western Cape
WORK MODE
On-site
JOB TYPE
Not specified
POSTED
25 Sept 2026

Source: Ozow Careers

MORE JOBS LIKE THIS

More Senior Security Analyst jobs

Browse all matching jobs →