IT Governance Risk and Compliance Specialist

2 weeks ago


Johannesburg, Gauteng, South Africa Affirmative Portfolios Full time

Information Technology

JHB North
***:
IT Governance Risk and Compliance Specialist (GRC)

R771 300p/a - Sandton - Permanent

Job Summary

  • The specialist will identify, classify, and document control issues environment by documenting assessment results, recommending corrective action, tracking remediation, evaluating policy and control standard exceptions, and regularly report to IT management
  • Also assist with internal and external auditors performing their mandates.

Qualifications

  • Minimum qualifications: National Diploma in IT/Bachelor or relevant equivalent to NQF Level
  • IT governance certification or ITIL & COBIT mandatory; CRISC, CISSP, CISA or CGEIT certification is strongly preferred
  • An active member of a professional body within ICT

Experience & Technical Skills

  • Minimum of 7 years' experience in IT Governance Risk and Compliance related experience
  • Experience with GRC methodologies, tools, and enablers
  • Handson experience with implementation and monitoring of one or more IT governance frameworks (COBIT, ITIL, ISO, PRINCE II, etc )
  • Excellent understanding of IT operational processes and controls including projects
  • Excellent understanding of Regulatory requirements facing the IT environment (PCI DSS, POPIA, GDPR)
  • Must be persuasive and be able to communicate GRC related concepts to a broad range of technical and nontechnical staff
  • Be able to map business needs to technology solutions
  • Must have a solid understanding of IT governance, Risk management and compliance frameworks
  • Solid understanding of security risks and preventative controls

IT Governance Frameworks

  • Assist in the development and implementation of IT governance, frameworks, IT controls, recommendations from various assessments, and action plans following an appropriate methodology approved by management and aligned with international standards (e.g. COBIT, ITIL, ISO, NIST, PRINCE II, CCM, etc )
  • Assist in the implementation of IT governance, Risk, and compliance in line with the company approved policies and frameworks
  • Assist in the development and implementation IT Governance, Risk Management and Compliance policies, processes, procedures, and IT controls training materials to keep fellow IT colleagues wellinformed of relevant industry, legislative and regulatory requirements, and changes
  • Develop, implement, and monitor reporting mechanism for IT governance, Risk management, and Audit, to support compliance and highlight areas of exposure to management
  • Support the development of policies, processes, and procedures for the IT division, including control document reviews, meeting coordination, assessment, finding mediation, assisting control owner with remediation plan development, tracking findings through remediation, progress monitoring, reporting, and escalation
  • Assess the current adequacy of the business continuity / disaster recovery plans in conjunction with risk management, potential threats to the systems, and then the calculate the impact of potential adverse events
  • Participates in the development, adoption and compliance4 of IT governance framework across various governance committees and structures
  • Perform design and process analysis for IT business processes that impact IT governance
  • Facilitate adoption and continuous improvement of planning practices and processes within IT and the business as a whole

IT Risk Management, Audit

  • Act as a risk and compliance champion for the IT Division
  • Perform adhoc duties as assigned to ensure the smooth functioning of the IT GRC function and maintain a good reputation with Auditors, compliance, and risk departments
  • Maintain and monitor the IT risk framework as aligned to the companies approached enterprise risk management framework
  • Maintain the IT risk register in collaboration with enterprise risk management and drive implantation of mitigation controls of risks (through responsible Senior Managers and/or line of business) within defined period
  • Integrate Cyber Risk Register management practices, processes, procedures, and activities
  • Coordinate periodical internal risk assessments in various IT functions and ensure vulnerability remediation and tracking, examples:
  • IT Audits
  • Application access reviews
  • Active directory reviews
  • Security, network, and vulnerability assessments
  • Conduct IT risk assessments (including projects risks), and analyse the effectiveness of control activities, and report on them with actionable recommendations
  • Ensure that IT risks are identified and monitored continuously
  • Review identified security risks and breaches to ensure the IT assets (software and hardware) and information are always appropriately secured
  • Ensure visibility, management and escalation of IT risks impacting the delivery of IT services
  • Work directly with the clients, third parties and other internal departments such as risk management to facilitate IT risk analysis and risk management pro


  • Johannesburg, Gauteng, South Africa National Risk Managers Full time

    A Medical Insurance Company based in Benoni, Gauteng is looking for a IT Governance, Risk and Compliance Specialist who will assist in the development and implementation of IT Governance frameworks and IT controls following appropriate methodology approved by management that is aligned with international and financial industry standards (e. g, GOI standards...


  • Johannesburg, Gauteng, South Africa National Risk Managers (Pty) Ltd Full time

    A Medical Insurance Company based in Benoni, Gauteng is looking for a IT Governance, Risk and Compliance Specialist who will assist in the development and implementation of IT Governance frameworks and IT controls following appropriate methodology approved by management that is aligned with international and financial industry standards (e. g, GOI standards...


  • Johannesburg, Gauteng, South Africa IT Ridge Technologies Full time

    This role will have broad accountability for ICT governance, risk and compliance related functions including ICT policies, standards, risk, and controls management. This role is a key contributor to IT Strategy, which includes developing frameworks aligned to the appropriate industry standards, creating the required forums, and establishing appropriate...


  • Johannesburg, Gauteng, South Africa FROGG Recruitment Full time

    Governance, Risk and Compliance Specialist SandtonOur well-established client is looking for a Governance, Risk and Compliance ("GRC") Specialist with 5+ years of experience with relevant Risk and Compliance experience.Salary: Market-Related CTCMinimum Requirements: Matric with Bachelor of Commerce (B Com) Degree (Finance / Accounting / Legal Certificate in...


  • Johannesburg, Gauteng, South Africa Scitech Placements Full time

    We are looking for a IT Governance, Risk and Compliance Specialist, East RandOverview:As an IT Governance, Risk and Compliance Specialist, you will be responsible for assisting in the development and implementation of IT Governance frameworks and IT controls. This will involve working closely with cross-functional teams to identify, assess, and mitigate...


  • Johannesburg, Gauteng, South Africa The Recruitment Agency South Africa (TRASA) Full time

    IT Governance, Risk and Compliance Specialist1. Job SummaryAssist in the development and implementation of IT Governance frameworks and IT controls following appropriatemethodology approved by management that is aligned with international and financial industry standards (e. g, GOIstandards (PA), Joint Standards (PA & FSCA), COBIT, ITIL, ISO, NIST, PRINCE...


  • Johannesburg, Gauteng, South Africa Six Sense Full time

    Gauteng, JHB - Northern Suburbs Annually Cost To Company (Market related)A well-established short term insurer is seeking to appoint a IT Governance Risk and Compliance (GRC) SpecialistQualifications: National Diploma in IT /Bachelor or Relevant equivalent to NQF Level IT Governance certification or ITIL & COBIT mandatory; CRISC, CISSP, CISA or CGEIT...


  • Johannesburg, Gauteng, South Africa LENOHLAHLA CONSULTING Full time

    KEY PERFORMANCE AREASStrategy & Leadership - Lead conceptualisation, design and implementation of the overall Governance, Risk & Compliance strategy aligned to the business needs, Companys vision and business strategy. Provide the Governance, Risk & Compliance input into the long-term Companys strategy. Set clear targets for the Governance, Risk & Compliance...


  • Johannesburg, Gauteng, South Africa Antal International Network Full time

    You are open to considering joining a vibrant and innovative company holding both non-life and life insurance licenses, as their new Risk and Compliance Specialist Our client is committed to ensuring regulatory adherence and effective risk management across the group. As a Risk and Compliance Specialist, you'll work closely with the Head of Risk and...

  • Risk Governance

    2 weeks ago


    Johannesburg, Gauteng, South Africa TransUnion Full time

    TransUnion's Job Applicant Privacy NoticeWhat We'll Bring:Supporting the administration and operation of key UK risk governance activities (e.g. UK ORC), producing risk reporting and administering UK policy governance processes.What You'll Bring:Key tasks and accountabilities:Reporting to the Director of UK Risk and Compliance, and fulfilling the following...


  • Johannesburg, Gauteng, South Africa eSoft Development and Technologies Full time

    Objective of this Scope of WorkThe scope of work defines the roles and responsibilities of the required Information Governance Specialist.Scope of Services Definition The Information Governance Specialist will work under the guidance of the Information Governance Manager in EIM in Business Solutions and Technology Department (BSTD). Information...


  • Johannesburg, Gauteng, South Africa Ultra Personnel Full time

    Degree in LawCertified Anti Money Laundering Specialist (CAMS) will be an added advantageMinimum of 2-5 years compliance-related experience is essentialInsurance and financial services industry experience is preferredPrimarily you will be responsible for the development and monitoring implementation of business risk and compliance framework as well as...


  • Johannesburg, Gauteng, South Africa eSoft Development and Technologies Full time

    Data governance specialists have a wide range of responsibilities, which can include:Reviewing data sources to identify any gaps in coverage that require additional data collection efforts Developing and implementing data security policies to protect sensitive data from unauthorized access or use Establishing data standards for a company's database...


  • Johannesburg, Gauteng, South Africa Energy at Work Projects Full time

    Head of IT Security and GRC is responsible for overseeing the organisation's information security program and ensuring compliance with governance, risk management, and regulatory requirements. This senior leadership role will develop and implement a comprehensive security strategy, manage a team of IT security and GRC professionals, and work closely with...


  • Johannesburg, Gauteng, South Africa FirstRand Full time

    Job DescriptionTo facilitate effective operational and risk reporting to management and governance committees by effectively managing operational aspects within the business, compensating controls that are created, implemented and maintained to minimize risks as well as ensure there is alignment amongst information management artefacts, ie: Data SLAs,...


  • Johannesburg, Gauteng, South Africa Standard Bank Of South Africa Limited Full time

    To provide specialist board support and secretarial services to allocated portfolios of subsidiary companies' boards, and board and management committees to ensure compliance of the organisation in relation to financial and legal practices, as well as issues of corporate governance. Provide specialist advice and guidance to directors and management,...


  • Johannesburg, Gauteng, South Africa Hollard Recruitment Full time

    Job Advert Summary:Hello there....., an exciting new opportunity has just become available at our Hollard Group Risk within our Risk and Compliance area. We are looking to recruit a Risk and Compliance AnalystHollard Group Risk (HGR) is a specialist group risk underwriter and focuses on the provision of group covers in South Africa.The Risk and Compliance...

  • Compliance Specialist

    2 weeks ago


    Johannesburg, Gauteng, South Africa FirstRand Full time

    Job DescriptionHello Future Compliance SpecialistWelcome to FNB, the home of the #changeables. We design for the shapeshifters and deliver products and services that make us incredibly proud of people that make it happen.As part of our team in FNB Life Governance Legal and Compliance team, you will be surrounded by unique talents, diverse minds, and an...

  • Compliance Specialist

    2 weeks ago


    Johannesburg, Gauteng, South Africa FirstRand Full time

    Job DescriptionTo monitor processes and related controls in accordance with compliance methodology and minimum standards and provide support to experienced Regulatory Risk and Compliance professionals that require robust regulatory compliance advice and guidanceHello Future Compliance SpecialistWelcome to FNB, the home of the #changeables. We design for the...


  • Johannesburg, Gauteng, South Africa Unique Personnel Full time

    Job Number 68927Job Type PermanentJob Title Risk and Compliance OfficerComputer Skills Ms OfficeIndustry Insurance BrokeringCity JohannesburgProvince Gauteng Establishing, implementing, and maintaining a regulatory compliance management framework and function within the business in accordance with the overall risk management framework and group and licence...