Aviation Security Risk Management Specialist

1 week ago


Midrand, Gauteng, South Africa SACAA Full time

PURPOSE OF THE JOB
The South African Civil Aviation Authority (SACAA) has an exciting opportunity in our Aviation Security department.

We are looking for a talented individual with the relevant skills and experience who will:

- develop and manage an Aviation Security Risk Management System.
- develop and monitor Cyber Security Governance Framework, incorporating norms and standards for managing cyber security within the aviation industry.
- ensure SACAA achieves its objectives and goals of protecting civil aviation data systems from malicious electronic attacks (unlawful interference) and developing means to deal with the consequences of such attacks.

AVIATION SECURITY RISK MANAGEMNET FRAMEWORK

  • Develop and maintain an Aviation Security Risk Management Framework for the South African Aviation industry.
  • Guide the South African Aviation industry on the implementation of a security risk framework and risk management.
  • Establish and manage a security risk assessment and the mitigation process for the aviation industry.
  • Establish a security data collection and analysis system.
  • Maintain the Aviation Security National Risk Context Statement up to date and collate data to inform the Statement.
  • Engage all stakeholders on prevailing aviation security risks as well as mitigation measures to be implemented periodically.

AVIATION CYBER SECURITY FRAMEWORK OVERSIGHT AND REVIEW

  • Develop and oversee the implementation of the cybersecurity framework and strategy, and overarching aviation risk strategy, ensuring effective implementation across the civil aviation industry.
  • Receive and review for approval Cyber Security Strategies and DRP periodically from aviation industry stakeholders.
  • Lead the identification, implementation, and mitigation of security mechanisms.
  • Participate in the development of future standards and requirements in collaboration with industry peers.
  • Lead, develop, manage and maintain the cybersecurity governance deliverable lifecycle including ICAO standards.

MANAGEMENT OF CYBER SECURITY INCIDENTS

  • Develop and implement security incident management, response, and recovery strategies.
  • Advise the Operators on the potential impact on cyber governance/risk/compliance requirements.
  • Provide support for the implementation of risk mitigation strategies when required.

MANAGEMENT OF THE NON-CONFORMANCE REPORTING SYSTEM AND DATABASE

  • Manage the development and monitoring of the nonconformance database, and analysis of trends.
  • Communicate with Operators on new trends and threads concerning cyber security in the aviation environment.

LIAISON AND CONSULTATION

  • Establish a consultative structure for the aviation industry
  • Develop strategy and monitor implementation
  • Provide feedback to SACAA
  • Participate in relevant structures within the aviation industry, risk management and cyber security

Minimum Qualification**:

  • National Diploma or equivalent NQF Level 6 qualification in Computer Science/ Information Technology or related qualification
  • Risk Management certificate would be advantageous

Ideal Qualification:

  • Cyber Security certification (CISM, CISA, CISSP)
  • Quality Management certificate
  • Information Security certification

Experience:

  • 5 years Risk Management including Cyber Security
**Closing Date: 27 January 2023

  • Midrand, Gauteng, South Africa MSD Full time

    Reporting to the Associate Director, Regional Security Middle East Africa (MEA), the Regional Security Senior Specialist will be responsible for supporting Global Security Group (GSG) Operations in Sub-Sahara Africa (French West Africa, English & Portuguese Africa, South Africa). He/She will be responsible for providing primary security support for all...


  • Midrand, Gauteng, South Africa SACAA Full time

    OVERALL PURPOSE OF THE JOBThe purpose of Safety Operations is to ensure the safety and regulatory compliance of air operators, maintenance, and design organisations. The purpose of the role is to develop and execute the Aviation Safety Operations (ASO) Divisional strategy, manage, and provide oversight of various work programmes, including general aviation,...


  • Midrand, Gauteng, South Africa SACAA Full time

    Assessment, Inspections and Oversight**- Evaluation and making recommendations regarding the issuance, amendment and renewal of a Part 96 OC and Part 93 CAOC and the associated operations specifications, and the operator's competence to exercise the privileges of the certificate; Evaluation and making recommendations regarding the issuance, amendment and...


  • Midrand, Gauteng, South Africa Adcorp Holdings Full time

    SynopsisOur Client in the Telecommunications industry is hiring for a Cyber Security Specialist as an Independent Contractor for 12 months. This role will allow you to gain experience in working with one of the largest telecommunications companies in South Africa.HybridMidrand basedon the hunt for an experienced and highly skilled Cyber Security Senior...


  • Midrand, Gauteng, South Africa DBSA Full time

    The purpose of this role is to perform information security responsibilities such as developing, coordinating and implementing policies, standards, and procedures to safeguard the bank's information systems and data. Ensuring that information security policy is aligned with the bank's business strategy & benchmarked with best practice.Strategic Focus:Define...


  • Midrand, Gauteng, South Africa SACAA Full time

    Oversight activities -Inspections and audits**- Plan inspections and audits as per laid-down ISO Procedures Conduct oversight activities following set guidelines and submit comprehensive reports Evaluate risk assessment reports and make appropriate recommendations Conduct risk assessments and recommend mitigation measuresAdministration Perform jobrelated...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:The primary purpose of the role is to work within a team of Secure by Design and Security Architecture specialists, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards.Your responsibilities will include:Provide technology security assurance, guidance and support...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role Purpose:The primary purpose of the role is to support Cyber GRC functions which are all interdependent and would require good teamwork.To ensure the best delivery, exposure and create backfill capability with succession planning, the role and function for a Cyber GRC specialist would require expertise in the following areas broadly covered...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:The primary purpose of the role is to work within a team of Secure by Design and Security Architecture specialists, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards.In performing this role, you will:Identify potential cyber security risks for new products,...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:The primary purpose of the role is to work within a team of Secure by Design specialists, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards. In performing this role you willIdentify potential cyber security risks for new products, services and operations and...


  • Midrand, Gauteng, South Africa SACAA Full time

    OVERALL, PURPOSE OF THE JOBTo determine and monitor Civil Aviation Security Standards for airports, airline operators and General Aviation Operators to ensure compliance.ANNUAL PLANNING Develop and monitor the execution of annual plans for airports and airlines:Oversight Plan for Cargo Security and Dangerous Goods Departmental Business and Operational Plan...

  • Manager Risk

    1 week ago


    Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:To create a governance framework and oversee the implementation and monitoring of risk, compliance and regulatory controls across the:VodaPay e-commerce ecosystem which comprises of various mini-apps and the Digital Lifestyle Services portfolio, which comprise of multiple internal content services, DCB and WASP products and services.To manage...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:Cyber Defence is one of MPA's critical Cyber Security teams. The Cyber Defence team's mission is to deliver a highly effective end to end 24x7 Cyber Defence service. They are responsible for proactively identifying threats and vulnerabilities; detecting and mitigating cyber events; and managing cyber security incident responses to minimise...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:The primary purpose of the role is to work within a team of Secure by Design and Security Architecture professionals, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards. In performing this role you willIdentify potential cyber security risks for new products,...

  • Security Specialist

    1 week ago


    Midrand, Gauteng, South Africa Jurumani Solutions Full time

    Jurumani offers an environment where creativity and the practice of building things is believed to be fundamentally useful to both the Client and Jurumani Solutions. Providing opportunity to focus on making products and business operating capabilities work, which means we often are more concerned with how systems align, orchestrate and integrate to achieve...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:Your responsibilities will include:The incumbent will direct, develop, implement and maintain a comprehensive Vodacom-wide vulnerability management strategy.Defining, implementing and efficiently maintaining technology security controls and requirementsEnsure timely delivery of technology security vulnerability reports and support for...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:Your responsibilities will include:Provide supervisory technology security assurance, guidance, and support to the Vodacom Group.Assure that security is embedded in IT systems and Network Infrastructure (Mobile, IS, and Enterprise) across the Vodacom Group.Defining, implementing, and efficiently maintaining technology security controls and...


  • Midrand, Gauteng, South Africa Communicate Recruitment Full time

    One of the biggest Banks in the world has a senior market risk opportunity in their Traded Market Risk Team. The role itself is new, which gives you the opportunity to build up the function and the processes that will be followed before putting a team together that would report to you. This is an opportunity to collaborate across various business units, take...


  • Midrand, Gauteng, South Africa Vodafone Full time

    Role purpose:Defining Cyber Governance, Risk & Compliance to:To lead the ongoing evaluation of security policies, and relevant standards and support the continuous improvement of the security governance program.To ensure that comprehensive Information Security Risk management programs are established.Ensure the alignment of Information Security Risk...


  • Midrand, Gauteng, South Africa SACAA Full time

    OVERALL, PURPOSE OF THE JOBThe overall purpose of the job covers the following areas:To foster a positive image of the SACAA to international stakeholders through strategic communicationPromoting safety protocols by formulation defect notices and Airworthiness directives ensuring high standards and compliance within the aviation industry.To conduct...