Senior Cyber Risk Manager: Cib

2 weeks ago


Johannesburg, Gauteng, South Africa Nedbank Full time

Job Purpose

  • To provide expert advice and support on complex aspects within their fields of Cyber Security. To collaboratively perform analysis and support for key stakeholders on complex Cyber Security issues and provide optimum solutions which meet both business and technical requirements while aligning with the Cyber Security strategy and Cyber Resilience Risk Management Framework (CRRMF) of the Group.
  • To analyse and enhance information security related processes with the aim to optimise work within the sphere of Cyber Risk Management. Working independently and/or managing resources to deliver on related tasks. Proactively mentor junior staff.
  • To ensure stability and uptime for areas the incumbent takes responsibility for; which also requires being available on demand to help solve issues outside of normal working hours. In addition, supporting the BISO's in their role or providing support the business cluster in the implementation and execution of the cyber resilience risk management framework that includes implementation of cyber risk assessments, strategy, cyber security programme, policies, standards, reporting of all clusterspecific cyber security programme elements and regulatory matters as it relates to cyber security

Responsibilities:

  • Build relationships with stakeholders to facilitate the flow of knowledge, input and discussion on new products and solutions as required.
  • Leverage on expertise and internal networks to manage and resolve incidents, strengthening relationships.
  • Propose solutions that are practical and effective while meeting Cyber Security requirements of the Group.
  • Provide guidance as needed into the onboarding of vendors for new and existing technologies and services.
  • Contribute to a culture of transformation by participating in culture building initiatives, business strategy, and CSI.
  • Stay abreast of developments in field of expertise, ensuring personal and professional growth.
  • Seek opportunities to improve business processes, models and security systems and controls.
  • Review and provide input into specific Cyber Security Technologies, frameworks and standards.
  • Participate in proof of technology and proof of concept where needed.
  • Oversee the implementation of the changes and check for Cyber Security shortcomings and risks.
  • Keep abreast of information security policies, rules, standards and processes, procedures and practices, as well as business rules, introducing new industry concepts for Cyber Security.
  • Review information security standards in line with cluster specific requirements and engage Group stakeholders accordingly.
  • Oversee and monitor environment per set Cyber Security standards.
  • Review technical project requirements in line with defined Cyber Security standards.
  • Mitigate risks through implementing specific controls for Cyber Security technologies.
  • Ability to work independently (and accurately) as well as provide guidance and mentoring to junior team members.
  • Adopt agile ways of working and ability to perform assurance in different risk/business areas by obtaining the relevant knowledge, training and information, and the ability to critically assess the information at hand to execute on the assurance deliverables.
  • Primary interface between the cluster and CISO office.
  • Represent business as an information security representative on the Cyber Security Risk Committee;
  • Ensure alignment and implementation of CRRMF in clusters.
  • Report of all cluster specific information security program elements;
  • Actively executes the cyber security programme elements and other information and cyber security plans developed by the business.
  • Assist the cluster with identification of critical assets ("crown jewels") and feeding that back into the business impact analysis and risk management processes.
  • Assist with third party supplier information and cyber security risk assessments and assurance
  • Assist business with incident management related to cyber and/or privacy incidents
  • Conclude cyber/privacy impact assessment on new business initiatives
  • Drive compliance to security policies and standards on cluster infrastructure.


Preferred Qualification
  • Honours Degree/Master's Degree in IT / Computer Science / Informatics


Preferred Certifications
  • Certified Information Security Manager (CISM)
  • Certified in Risk and Information Systems Control (CRISC)
  • Certified Information Systems Auditor (CISA)
  • Certified Information Systems Security Professional (CISSP)
  • Certified Ethical Hacker (CEH)


Minimum Experience Level
  • Min 5 years in Cyber Security/Cyber Risk Management Experience
  • 5+ Years IT experience in and IT Support of Administration
  • Intermediate to Advance Understand of IT processes and concepts
  • Exposure in Risk Management practices, monitoring and reporting
  • Representation at Cyber Security Risk Committees or other governance forums.
  • Data Reporting Analytics experience advantageous
  • Technical / Profes


  • Johannesburg, Gauteng, South Africa Standard Bank Of South Africa Limited Full time

    Senior Manager, Non-Financial Risk (Technology) Job Overview Business Segment: Corporate & Investment Banking Location: ZA, undefined, Johannesburg, Baker Street 30 This role is required to provide operational support and oversight of the management and mitigation of significant Non- Financial Risks and vulnerabilities that may arise within the CIB Systems...


  • Johannesburg, Gauteng, South Africa Absa Bank Limited Full time

    Bring your possibility to life Define your career with us With over 100 years of rich history and strongly positioned as a local bank with regional and international expertise, a career with our family offers the opportunity to be part of this exciting growth journey, to reset our future and shape our destiny as a proudly African group.Job SummaryEnsure that...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Job Purpose To evaluate the reliability of internal controls, identifying areas for improvement and monitoring corrective action and to undertake business assurance monitoring reviews that provide assurance on: Adherence to the setout processes from a transactional perspective within the business.Responsibilities: Execution of the assurance reviews noted on...

  • Head: Cyber Risk

    2 weeks ago


    Johannesburg, Gauteng, South Africa Nedbank Full time

    Job Requisition Details REQ# Location: Johannesburg, GautengClosing Date: 15 August 2023- Talent Acquisition: Bongiwe Mchunu- Job Family- Risk, Audit and Compliance Career Stream Enterprise Wide Risk Management Leadership Pipeline Manage ManagersJob PurposeTo ensure that the Group Risk Framework is embedded; operationalised and implemented. Advise business...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Requisition Details & Talent Acquisition Consultant Tshegofatso SemenyaLocation 135 Rivonia Road, Sandton (Nedbank Head Office)Job Family Information TechnologyCareer Stream IT RiskLeadership Pipeline Manage Self: ExpertJob Purpose To manage cyber risk management activities to reduce cyber risk for the bank; Working independently to deliver on work tasks....


  • Johannesburg, Gauteng, South Africa Six Sense Consulting Full time

    Qualification: 8 10 years financial services experience in a senior position Advanced Diplomas/National 1st Degrees Minimum required qualification: Commercial or related degree CISA; CRISK; CISM (or another relevant IT Qualification Cyber experience in a Banking institute Ability to operate at a Senior level Leadership experience leading team. Significant...


  • Johannesburg, Gauteng, South Africa PC Staffing Solutions Full time

    PURPOSE OF THE JOB:To drive the successful delivery of the IT Governance, Risk and Cyber Security, strategy implementation and theeffective running of the Office of the CIO by ensuring the attainment of the Sasria objectives internally and externally.Qualifications: Information Technology (IT) related Bachelors Degree at NQF level 7 as recognized by SAQA...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Requisition Details & Talent Acquisition ContactREQ Tshego SemenyaLocation: JohannesburgClosing date: 26 April 2024ClusterGroup RiskCareer StreamAuditingLeadership PipelineManage Self ProfessionalPositionAudit Portfolio Manager: CyberJob PurposeThe objective and scope of work of GIA is to determine whether the Group's systems of internal controls, risk...

  • Cyber Security

    2 weeks ago


    Johannesburg, Gauteng, South Africa Tower Group Full time

    Cyber Security Specialist required on a Fixed Term Contract in Midrand to oversee and manage initiatives within the financial services, insurance, and lending sector.A Deep understanding of cyber security practices and trends as well as leadership skills necessary to guide a team of professionals in implementing and maintaining an effective and comprehensive...

  • Cyber Security

    2 weeks ago


    Johannesburg, Gauteng, South Africa Tower Group Full time

    Cyber Security Specialist role available on a Fixed Term Contract in Midrand. Opportunity to lead initiatives in the financial services, insurance, and lending sector. Seeking someone with a deep understanding of cyber security practices and trends, along with strong leadership skills to manage a team of professionals in effectively implementing and...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Requisition Details & Talent Acquisition Contact REQ Tshego Semenya Location: JohannesburgClosing date: 26 April 2024ClusterGroup RiskCareer StreamAuditingLeadership PipelineManage Self ProfessionalPosition Audit Portfolio Manager: CyberJob PurposeThe objective and scope of work of GIA is to determine whether the Group's systems of internal controls, risk...


  • Johannesburg, Gauteng, South Africa HR Genie Full time

    The role of the Cybersecurity Consultant includes contribution to technical insights relevant to client engagements and internal projects. Actively establish, maintain and strengthen internal and external relationships. Execution of cybersecurity engagements.The Cybersecurity Senior Consultant will be responsible for the following key activities to achieve...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Requisition Details & Talent Acquisition Consultant REQ Tshegofatso SemenyaJob Family Risk, Audit and ComplianceCareer Stream AuditingLeadership Pipeline Manage Self ProfessionalJob Purpose To perform assurance activities in the form of control reviews and risk assessments on various cyber elements in the bank, Collaborate with other functions in the bank to...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Job Family- Risk, Audit and Compliance Career Stream Operational Risk Leadership Pipeline Manage Self: ProfessionalJob Purpose To develop and monitor the implementation of the Operational Risk Management Framework in Nedbank and its subsidiaries to comply to regulatory requirements and ensure alignment to international best practiceResponsibilities: IT Risk...


  • Johannesburg, Gauteng, South Africa National Risk Managers Full time

    A Medical Insurance Company based in Benoni, Gauteng is looking for a IT Governance, Risk and Compliance Specialist who will assist in the development and implementation of IT Governance frameworks and IT controls following appropriate methodology approved by management that is aligned with international and financial industry standards (e. g, GOI standards...


  • Johannesburg, Gauteng, South Africa SNG GrantThornton Full time

    Responsibilities: Manage and lead a team of cyber security professionals; Undertake project planning, execution and management of cyber security assignments; Manage and or perform cybersecurity managed services assignments; Form partnerships with cybersecurity third parties and OEMs Manage Third Parties and OEMs and partnerships; Manage and provide...


  • Johannesburg, Gauteng, South Africa Hollard Recruitment Full time

    Job Advert Summary:Your role.Your businessEstablished in Australia in 1999 and still privately owned, we offer a variety of specialised products such as competitive General, Pet and Bicycle Insurance through our Agencies and Partners. At Hollard we are agile, continuously growing and gaining market share.Your TeamReporting into the Cyber Security Manager...


  • Johannesburg, Gauteng, South Africa National Risk Managers (Pty) Ltd Full time

    A Medical Insurance Company based in Benoni, Gauteng is looking for a IT Governance, Risk and Compliance Specialist who will assist in the development and implementation of IT Governance frameworks and IT controls following appropriate methodology approved by management that is aligned with international and financial industry standards (e. g, GOI standards...


  • Johannesburg, Gauteng, South Africa Boardroom Appointments Full time

    Key purpose:As a member of the Global IT Team, you will help develop and maintain the cyber security program and serve as the de facto technical security expert. This role is responsible to provide support and oversight to internal and external teams to ensure incidents and threats are properly handled.Duties and responsibilities: Support the design,...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Job Purpose To recommend and or grant credit to place quality assets on to the book and continued risk management across Nedbank CIBResponsibilities:Validate client and supporting information by assessing the contents of the documents. Approve funding by making decision based on the credit policy guideline in conjunction with relevant Nedbank strategy and...