Information Security Governance Risk

2 weeks ago


Johannesburg, Gauteng, South Africa Black Pen Recruitment Full time
Our client holds a prominent position as the leading licensed platform for stablecoin on/off-ramp services in Africa. They are dedicated to pioneering innovative solutions within the African stablecoin landscape.

Job Type:
Full Time l Remote

Role Overview

Requirements:

  • Bachelor's degree in discipline related to functional work or role
  • Industry recognized certifications such as CISM, CRISC, CISA, or equivalent
  • 7+ years of experience in IT Governance or Security Governance working in either a
  • Software Development, FinTech or financial institution.
  • Experience working in an IT Governance, Risk and Compliance role
  • Strong understanding of compliance frameworks including SOC 2 Type 2, ISO 27001, GDPR, PCI DSS
  • Experience leading a company through an audit process for obtaining / maintaining compliance certification such as SOC 2 Type 2, ISO 27001, PCI DSS
  • Strong risk assessment framework knowledge and experience performing risk assessments covering key risks and controls.
  • Very strong communication (verbal and written) skills and the ability to present with clarity
  • Strong project management and organization skills

Responsibilities

  • Coordinate the development of best practice policies and standards based on various governance frameworks
  • Ensure all IT controls are documented and assigned control owners to establish accountability.
  • Ensure that risk factors and events are addressed in a costeffective manner and in line with business objectives
  • Assist the IT Governance, Risk & Compliance function in maturing the Information
  • Security and Technology Risk Management methodology through improvements in standardized risk assessments
  • Update and maintain a robust technology risk and control framework and ensure proper alignment to relevant industry frameworks (e.g., COBIT, SOC 2, ISO 27001, NIST, etc.).
  • Monitoring IT controls across the organization
  • Assist in the validation of IT control alignment to various industry standards, framework, and requirements (e.g., COBIT, SOC 2, ISO 27001, NIST, etc.)
  • Assist in Information Security and Technology Risk Management governance activities including coordinating monthly risk committee meetings with management from IT, Risk and Business Units
  • Policy creation, updates, and overall management and organization of shared documentation
  • Control Self Assessments and Control Gap Analysis
  • Third party risk management and reporting
  • Support Security Duediligence activities with both regulators and business prospects
  • Maintaining a Risk Register
  • Documenting and evaluating policy exception requests
  • Responsible for developing and deriving KPIs from a controls baseline
  • Overall analytics of the GRC program and creation and distribution of reporting metrics / dashboarding where appropriate
  • Maintenance of the global scope of IT assets, controls, control owners, risks, etc. that make up the IT GRC program
  • Creation, documentation and maintenance of governance processes to oversee IT GRC programs


  • Johannesburg, Gauteng, South Africa National Risk Managers Full time

    A Medical Insurance Company based in Benoni, Gauteng is looking for a IT Governance, Risk and Compliance Specialist who will assist in the development and implementation of IT Governance frameworks and IT controls following appropriate methodology approved by management that is aligned with international and financial industry standards (e. g, GOI standards...


  • Johannesburg, Gauteng, South Africa National Risk Managers (Pty) Ltd Full time

    A Medical Insurance Company based in Benoni, Gauteng is looking for a IT Governance, Risk and Compliance Specialist who will assist in the development and implementation of IT Governance frameworks and IT controls following appropriate methodology approved by management that is aligned with international and financial industry standards (e. g, GOI standards...


  • Johannesburg, Gauteng, South Africa Unique Personnel Full time

    Job Number 72871Job Type PermanentJob Title Security, Risk and Governance ManagerComputer Skills Risk management,Cybersecurity,Compliance management,GovernanceIndustry Computer ITCity JohannesburgProvince Gauteng Identify control deficiencies in the design and operating effectiveness of information security controls. Design, recommend and implement...


  • Johannesburg, Gauteng, South Africa Energy at Work Projects Full time

    Head of IT Security and GRC is responsible for overseeing the organisation's information security program and ensuring compliance with governance, risk management, and regulatory requirements. This senior leadership role will develop and implement a comprehensive security strategy, manage a team of IT security and GRC professionals, and work closely with...


  • Johannesburg, Gauteng, South Africa Integralis Full time

    As the Information Security Officer, you will be responsible for the information security vision, strategy, governance, management, processes and user education. The role also requires technical abilities to assist the team in improving the security posture.Purpose:Assist the management team in creating and executing the security strategy and updating the...


  • Johannesburg, Gauteng, South Africa Scitech Placements Full time

    We are looking for a IT Governance, Risk and Compliance Specialist, East RandOverview:As an IT Governance, Risk and Compliance Specialist, you will be responsible for assisting in the development and implementation of IT Governance frameworks and IT controls. This will involve working closely with cross-functional teams to identify, assess, and mitigate...

  • Risk Governance

    2 weeks ago


    Johannesburg, Gauteng, South Africa TransUnion Full time

    TransUnion's Job Applicant Privacy NoticeWhat We'll Bring:Supporting the administration and operation of key UK risk governance activities (e.g. UK ORC), producing risk reporting and administering UK policy governance processes.What You'll Bring:Key tasks and accountabilities:Reporting to the Director of UK Risk and Compliance, and fulfilling the following...


  • Johannesburg, Gauteng, South Africa Affirmative Portfolios Full time

    Information TechnologyJHB North***: IT Governance Risk and Compliance Specialist (GRC)R771 300p/a - Sandton - PermanentJob Summary The specialist will identify, classify, and document control issues environment by documenting assessment results, recommending corrective action, tracking remediation, evaluating policy and control standard exceptions, and...


  • Johannesburg, Gauteng, South Africa The Recruitment Agency South Africa (TRASA) Full time

    IT Governance, Risk and Compliance Specialist1. Job SummaryAssist in the development and implementation of IT Governance frameworks and IT controls following appropriatemethodology approved by management that is aligned with international and financial industry standards (e. g, GOIstandards (PA), Joint Standards (PA & FSCA), COBIT, ITIL, ISO, NIST, PRINCE...


  • Johannesburg, Gauteng, South Africa FirstRand Full time

    About us, purpose, experience and qualificationsabout us:- make a promise- be deeply invested- value our differences- build trust, not territory- have courage- always do the right thingpurpose: To address the risk management of the FNB information security environment and the definition and maintenance of information security policy; To contain our...

  • IT Governance

    2 weeks ago


    Johannesburg, Gauteng, South Africa ARCS Full time

    Key Accountabilities: Implements security controls, risk assessment framework, and program that aligns to regulatory business requirements. Evaluates security standards, risks and procedures, and controls to manage risks. Implements processes, such as GRC (governance, risk, and compliance. Develops reporting metrics, dashboards, and artifacts. Automate and...


  • Johannesburg, Gauteng, South Africa Telebest Full time

    Requirements:8 years' working in Cyber Security of which:5 years has been managing security operations and teams.3 years has been managing IT Security supplier performanceExpert knowledge of Information Security tools and techniques, IT Governance standards and methodologies, Information Security legislation and regulations and software development...


  • Johannesburg, Gauteng, South Africa NTT Full time

    Continue to make an impact with a company that is pushing the boundaries of what is possible. At NTT DATA, we are renowned for our technical excellence, leading innovations, and making a difference for our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can continue to grow, belong, and thrive.Your career here...


  • Johannesburg, Gauteng, South Africa PC Staffing Solutions Full time

    PURPOSE OF THE JOB:To drive the successful delivery of the IT Governance, Risk and Cyber Security, strategy implementation and theeffective running of the Office of the CIO by ensuring the attainment of the Sasria objectives internally and externally.Qualifications: Information Technology (IT) related Bachelors Degree at NQF level 7 as recognized by SAQA...


  • Johannesburg, Gauteng, South Africa Telebest Full time

    Requirements:8 years' working in Cyber Security of which:5 years has been managing security operations and teams.3 years has been managing IT Security supplier performanceExpert knowledge of Information Security tools and techniques, IT Governance standards and methodologies, Information Security legislation and regulations and software development...


  • Johannesburg, Gauteng, South Africa FirstRand Bank Limited Full time

    Description Hello Future Information Security Administrator D Welcome to FNB, the home of the #changeables. We design for the shapeshifters and deliver products and services that make us incredibly proud of people that make it happen. As part of our talent team, you will be surrounded by unique talents, diverse minds, and an adaptable environment that...


  • Johannesburg, Gauteng, South Africa FirstRand Full time

    Job DescriptionHello Future Information Security Administrator DWelcome to FNB, the home of the #changeables. We design for the shapeshifters and deliver products and services that make us incredibly proud of people that make it happen. As part of our talent team, you will be surrounded by unique talents, diverse minds, and an adaptable environment that...


  • Johannesburg, Gauteng, South Africa Sanlam Full time

    Who are we?Sanlam Developing Markets [SDM] (a wholly-owned subsidiary of Sanlam Life Limited) is one of the top financial services providers in the South African entry-level and emerging middle market. It aims to understand the unique requirements of clients and offers a wide range of simple and affordable financial solutions that cover needs such as funeral...


  • Johannesburg, Gauteng, South Africa ABC Worldwide Full time

    Information Security Manager will be responsible for implementing and monitoring IT security strategies for all platforms across IT function with organization. He will provide assistance to manage the risk to the platform assigned and will ensure business alignment, effective governance, system and infrastructure availability, integrity and...


  • Johannesburg, Gauteng, South Africa People Source Full time

    Experience in Governance, Enterprise Risk Management and Compliance. Define and manage information and cyber security strategic requirements and execution. Direct the design of security systems. Manage the Information Security Team.Opportunity within a large organisation which has an increasing focus on digitalisation involving the deployment of various...