Client Information Security and Compliance Manager

2 weeks ago


Midrand, Gauteng, South Africa Advanced Projects and People Full time

Introduction
The purpose of the role is to ensure that the security services are delivered as described in the SOW/agreement.

Duties & Responsibilities

Compliance Management:

  • Measuring performance against SLA's.
  • Identifying major interventions to be planned for the next month.
  • Understanding the IT Policies and Processes within the cross functional service streams, related to Information Security.
  • Aligning to the transition and transformation deliverables and dates as required.
  • Conforming to the client's Logical Access Management Policies, including federated identity management, authentication service and privileged access management.
  • Supporting the client with evidence and information required for investigations and intelligence services, compliant with legal requirements.
  • Providing and maintaining a risk dashboard, including risk portfolio management and compliance to the client Information Security policies and standards.
  • Ensuring that the necessary cryptographic services, including for data in transit, in use and at rest, are available for the services provided by the Supplier and all external the client Suppliers as specified within the Cross Functional and Cloud Services scope of work.

Client Management:

  • Meeting with the Client's Service Provider representatives.
  • Presenting the monthly reports and discussing potential areas of improvement and remedial action where required.
  • Timeously informing the Client's Information Security Manager when and where it becomes aware of risks or vulnerabilities as per the risk management process.
  • Participating in the appropriate meeting and governance forums.
  • Providing capabilities that ensure secure service selection without the impairment of service availability and secure, rapid transition among the Cloud Suppliers under arbitrage. The Supplier must ensure that the required service level targets are met by all primary Cloud Suppliers.

Security Compliance:

  • Security Consulting on in scope security services.
  • Organising monthly security meetings to review all operational issues experienced during the month.
  • Providing security monitoring services.
  • Ensuring that T-Systems' security monitoring services are integrated with the client's Security Incident and Event Management solutions.
  • Providing assurance that the infrastructure used to deliver services to the client is secured against unauthorised access and compliant with the client Information Security Standards.
  • Ensuring that any infrastructure used to enable the Supplier to deliver services to the client is secure and patched.
  • Providing data protection services to ensure secure data life cycle management, data leakage prevention, and IP protection, for the services to be rendered to the client.
  • Ensuring that the security of the facilities hosting infrastructure used to deliver services to the client, comply with the client's Policies.
  • Containing any malware outbreak within the period specified within the service level targets.

Document and Report Compliance:

  • Creating process documentation/workflows, knowledge articles and selfservice guidance for relevant processes.
  • Documenting the information security and compliance management process from RACI documents to clarify the Responsible, Accountable, Consulted and Informed roles to clarify and define roles and responsibilities in the cross functional service offering.
  • Compiling a report, which will include commentary indicating the key areas of deficiencies, as well as recommendations for improvement.

Desired Experience & Qualification

  • Previous working experience in a management role for 3 to 5 years within an IT service provider environment.
  • Diploma, Degree or Certificates in Information Technology and/or MBA or equivalent NQF level.
  • ITIL /CISM / CISSP certification
  • Excellent organizational and time management skills
  • Outstanding communication and presentation skills
  • Great analytical skills
  • Ability to identify opportunities for system enabled process improvement
  • Ability to function effectively in a matrix structure
  • Demonstrate credible and influential leadership through technical security knowledge and execution.
  • Strong facilitation, negotiation and conflict resolution skills.

Job Types:
Full-time, Temporary

Ability to commute/relocate:

  • Midrand, Gauteng: Reliably commute or planning to relocate before starting work (required)

Experience:

  • IT service provider management: 3 years (required)
Application Deadline: 2023/01/13

  • Midrand, Gauteng, South Africa DBSA Full time

    The purpose of this role is to perform information security responsibilities such as developing, coordinating and implementing policies, standards, and procedures to safeguard the bank's information systems and data. Ensuring that information security policy is aligned with the bank's business strategy & benchmarked with best practice.Strategic Focus:Define...

  • Area Security Manager

    2 weeks ago


    Midrand, Gauteng, South Africa MECS Africa Full time

    South Africa, Gauteng - Midrand R R Annually Cost To CompanyMy client is seeking an Area Security Manager to develop and roll out the best security practices for one of their sections.Please note - COVID Vaccination required.Requirements: Diploma or Degree or higher in (Policing / Security, business administration, public relations). Good fluency in English...


  • Midrand, Gauteng, South Africa Sabenza Information Technology Full time

    We seek the development skill set and expertise of a Unified Endpoint Management to join team a dynamic team that will be doing Unified Endpoint Management and ProtectionLocation: Gauteng Hybrid Working model.Qualifications and Experience: A university degree in a relevant field of study (e.g. computer science, engineering, sciences) or a comparable...


  • Midrand, Gauteng, South Africa Rectron Full time

    Information Systems Manager required to find and implement effective strategies that will build world class technical solutions with the use of cutting-edge technologies.Qualification & Experience required: Matric Higher education Relevant degree / diploma Team leadership experience Min 4 years' experience in handson Software development, cloud solutions and...


  • Midrand, Gauteng, South Africa Adcorp Holdings Full time

    SynopsisOur Client in the Telecommunications industry is hiring for a Cyber Security Specialist as an Independent Contractor for 12 months. This role will allow you to gain experience in working with one of the largest telecommunications companies in South Africa.HybridMidrand basedon the hunt for an experienced and highly skilled Cyber Security Senior...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:Your responsibilities will include:The incumbent will direct, develop, implement and maintain a comprehensive Vodacom-wide vulnerability management strategy.Defining, implementing and efficiently maintaining technology security controls and requirementsEnsure timely delivery of technology security vulnerability reports and support for...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:The Manager - Cybersecurity Prevent will coordinate the team, tools, processes and operations of the Cyber Security Prevent Team responsible for managing, optimizing and deploying Cybersecurity solutions and capabilities to safeguard the information assets and reduce the Cybersecurity risk for M-Pesa Africa and its customers. The role holder...


  • Midrand, Gauteng, South Africa WSP Africa Full time

    Job DescriptionWSP's Security Engineering and Operations Team is responsible for managing the global organization's security technologies and systems. The role of Director Security Operations reports directly to the Global Vice President Security Engineering and Operations and is responsible for leading our Security Operations Centre and working with the...

  • Area Security Manager

    2 weeks ago


    Midrand, Gauteng, South Africa Enshrine Placements Full time

    Area Security Manager - Midrand, Gauteng - Job-3692Area Security Manager needed to develop and roll out the best security practices for the security discipline at North Stations.Position details:Type: PermanentReports to: Security Business Unit ManagerReporting, total staff compliment:Job titles of direct reports: Assistant Station Head Security, Security...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:Your responsibilities will include:Provide supervisory technology security assurance, guidance, and support to the Vodacom Group.Assure that security is embedded in IT systems and Network Infrastructure (Mobile, IS, and Enterprise) across the Vodacom Group.Defining, implementing, and efficiently maintaining technology security controls and...

  • Security Architect

    2 weeks ago


    Midrand, Gauteng, South Africa XET SOLUTIONS Full time

    Job Description:We are in search of an individual who will be in charge of developing database solutions, installing and configuring information systems, analyzing structural requirements for innovative software, migrating data from outdated systems, and designing conceptual and logical data models.About the Company: We are a leading company in the tech...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:The primary purpose of the role is to work within a team of Secure by Design and Security Architecture specialists, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards.Your responsibilities will include:Provide technology security assurance, guidance and support...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role Purpose:The primary purpose of the role is to support Cyber GRC functions which are all interdependent and would require good teamwork.To ensure the best delivery, exposure and create backfill capability with succession planning, the role and function for a Cyber GRC specialist would require expertise in the following areas broadly covered...


  • Midrand, Gauteng, South Africa She Recruits Full time

    BSc or similar degree in IT/Computer Science/EngineeringSkills and experience required:Proven experience in the management of information systems as a whole4-6 years' experience as an IT manager.Excellent technical management, information analysis and computer hardware/software systemsHands-on experience with computer networks, network administration and...


  • Midrand, Gauteng, South Africa Liquid Tech (Pty) Ltd. Full time

    Role PurposeTo deliver day-to-day managed security services (MSS), related to SOC deliverables. Critical in this regard is to execute according to Standard Operating Procedure (SOP) expectations and meeting all related service level agreements (SLAs).It is further expected that these services will be enhanced and matured so that customer value can be...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:The primary purpose of the role is to work within a team of Secure by Design and Security Architecture professionals, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards.In performing this role you will:Identify potential cyber security risks for new products,...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:The primary purpose of the role is to work within a team of Secure by Design and Security Architecture specialists, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards.In performing this role, you will:Identify potential cyber security risks for new products,...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:The primary purpose of the role is to work within a team of Secure by Design specialists, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards. In performing this role you willIdentify potential cyber security risks for new products, services and operations and...


  • Midrand, Gauteng, South Africa BMM Testlabs Full time

    Date Posted: Jul 26, 2023Location: Midrand, South AfricaJob Description:MAIN RESPONSIBILITIES (include, but are not limited to)**:Conduct comprehensive audits of client ́s security systems and procedures both in a remote and onsite fashion. Ensure compliance of client ́s policies with industry standards, and regulatory requirements. Mentor and coach junior...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:Defining Cyber Governance, Risk & Compliance to:To lead the ongoing evaluation of security policies, and relevant standards and support the continuous improvement of the security governance program.To ensure that comprehensive Information Security Risk management programs are established.Ensure the alignment of Information Security Risk...