Manager: IT Risks

2 weeks ago


Bellville, Western Cape, South Africa University of the Western Cape Full time

IT Risk Identification

  • Identify and classify potential threats and vulnerabilities to the University's people, information, processes and technology to enable IT risk analysis,
  • Develop a comprehensive set of IT risk scenarios, and identify accountable stakeholders, based on available information to determine the potential impact to business objectives and operations,
  • Maintain the IT risk register to help ensure that identified IT risk scenarios are accounted for and incorporated into the institutional risk profile,
  • Identify risk appetite and tolerance defined by senior leadership and key stakeholders to ensure alignment with business objectives,

IT Risk Assessment

  • Analyse risk scenarios based on institutional criteria (e.g. business processes, technology etc.) to determine the likelihood and impact of an identified risk,
  • Identify the current state of existing controls and evaluate their effectiveness for IT risk mitigation,
  • Review the results of risk and control analysis to assess any gaps between current and desired states of the IT risk environment,
  • Ensure that risk ownership is assigned at the appropriate level to establish clear lines of accountability,
  • Communicate the results of risk assessments to senior management and appropriate stakeholders to enable riskbased decision making.

IT Risk Response & Mitigation

  • Consult with risk owners to select and align recommended risk responses with business objectives and enable informed risk decisions.
  • Assist risk owners, where needed, with the development of risk action plans
  • Consult on the design and implementation or adjustment of mitigating controls to ensure that the risk is managed to an acceptable level.
  • Maintain the IT Risk and Control Matrix.
  • Assist control owners in developing control procedures and documentation to enable efficient and effective control execution.
  • Validate that risk responses have been executed according to the risk action plans.
  • Collaborate in the development of a risk awareness program to promote a risk aware culture and facilitate risk training.

IT Risk and Control Monitoring & Reporting

  • Define and establish key risk indicators (KRls) and thresholds based on available data, to enable monitoring of changes in risk.
  • Monitor and analyse key risk indicators (KRls) to identify changes or trends in the IT risk profile.
  • Facilitate the identification and monitoring of metrics and key performance indicators (KPls) to enable the measurement of risk control performance across relevant IT domains (e.g. data management; SDLC; project & program management; IT service continuity & disaster recovery; IT operations management).
  • Report on the performance of, changes to, or trends in the overall IT risk profile and control environment to management and relevant stakeholders to enable decision making.

IT audit Co-ordinate engagements

Minimum Requirements

Minimum Requirements:
Qualification, Skills and Experience


  • A Bachelor's degree in Information Systems, or an equivalent NQF7 accredited qualification,
  • An accredited, internationally recognised IT Risk Management certification,
  • IT Service Management experience incident and problem management,
Years' experience in an enterprise IT environment,

  • A minimum of 3 years' relevant IT Risk Management and/or IT audit experience in an enterprise environment,
  • Proficiency in legal, regulatory, standards, governance and other compliance requirements pertaining to IT Risk Management and a higher education environment (e.g. COBIT, ISO2700x, ISO31000, COSO, NIST, CIS, POPIA, GDPR etc.),
  • Advanced proficiency in MS Office (MS Word, Excel, Power Point),
  • Excellent English Communication skills (verbal and written),
  • Excellent reportwriting skills,
  • Strong facilitation and interpersonal skills,
  • Strong business acumen.

Preferred Requirements:
Qualification, Skills and Experience


  • The international CRISC (Certified in Risk and Information Systems Control) certification,
  • An accredited certification in Problem Management (e.g. Kepner Tregoe or related ITIL intermediate course),
  • COBIT5 certification in IT Governance,
  • Experience in developing and maintaining IT Risk management policies, processes and procedures aligned to recognised industry leading practice,


Good understanding of threats and vulnerabilities relating to: data management; the software development lifecycle (SDLC); project & program management; IT service continuity and disaster recovery; IT operations.

Proficiency in business process review tools and techniques.

Proficiency in capability assessment models and improvement techniques and strategies. Good understanding of information security concepts and principles.
Experience working in the Higher Education sector would be advantageous.

Required Competencies:

  • Diagnostic information gathering,
  • Analytical thinking and problemsolving skills,
  • Demonstrated ability to work unsupervised to m


  • Bellville, Western Cape, South Africa Sabenza IT Full time

    IT Risk & Compliance Manager IT Manager - ITBelville - Western Cape - South AfricaWelcome to the dynamic realm of insurance, where every transaction is underpinned by trust and security. In this landscape of digital innovation and evolving regulatory frameworks, the role of an IT Risk & Compliance Manager stands as a guardian of integrity and resilience.Key...

  • IT Risk Administrator

    2 weeks ago


    Bellville, Western Cape, South Africa Sabenza IT Full time

    IT Risk Administrator IT Manager - ITBelville - Western Cape - South AfricaOur clients who are giants in the financial and insurance industry who are responsible for the provision of a digitally enabled technology are in search of an IT Risk Administrator based in Cape Town Receive great benefits like Provident funds, medical aids, and various insurance...

  • Risk Manager

    2 weeks ago


    Bellville, Western Cape, South Africa Exceed Recruitment and Human Resource Consultants Full time

    Reference: 9314 CMConsultant: Christa MostertStrong analytical and problem-solving skills, with the ability to assess legal risks and provide strategic advice.Excellent communication and interpersonal skills, with the ability to effectively collaborate with internal stakeholders and external legal counsel.Attention to detail and the ability to interpret...

  • IT Risk Administrator

    2 weeks ago


    Bellville, Western Cape, South Africa Sanlam Full time

    Who are we?Sanlam Group Technology is responsible for the provision of a digitally enabled technology service as a group COE, drive business and transformation and provide group-wide digital and data architecture. We operate the various technology platforms and shared services, ensure Cyber and Information Security resilience, and act as technology...

  • IT Risk Administrator

    2 weeks ago


    Bellville, Western Cape, South Africa Sanlam Full time

    Who are we?Sanlam Group Technology is responsible for the provision of a digitally enabled technology service as a group COE, drive business and transformation and provide group-wide digital and data architecture. We operate the various technology platforms and shared services, ensure Cyber and Information Security resilience, and act as technology...

  • Risk Surveyor

    2 weeks ago


    Bellville, Western Cape, South Africa Santam Full time

    What will you do?This career opportunity is available at Santam Commercial Underwriting, Survey Department for a Risk Surveyor to be based in Cape Town.Conducting desktop and physical surveys.Review external surveys as required and provide summery of the risk and risk reduction requirements. What will make you successful in this role?The role of a risk...


  • Bellville, Western Cape, South Africa Sanlam Full time

    Who are we?Sanlam Corporate forms part of the Sanlam Group which offers retail and corporate life insurance, health and investment products in South Africa. Our vision is to be the preferred partner to Corporate and Public Sector by providing an awesome client experience and comprehensive solutions that enable the financial resilience and prosperity of those...

  • Risk Manager: 9314 Cm

    2 weeks ago


    Bellville, Western Cape, South Africa Exceed Recruitment and Human Resource Consultants Full time

    Reference: 9314 CMConsultant:Christa Mostert Strong analytical and problemsolving skills, with the ability to assess legal risks and provide strategic advice. Excellent communication and interpersonal skills, with the ability to effectively collaborate with internal stakeholders and external legal counsel. Attention to detail and the ability to interpret...


  • Bellville, Western Cape, South Africa Progressive IT Resourcing Full time

    What will you do?The Business Information Security Officer (BISO) is responsible for identifying and assessing the information security requirements of the business. The BISO in conjunction with the Business CIO, is responsible for the establishment and maintenance of an Information Security Management System (ISMS) and ensure that the appropriate...

  • Head of Legal, Risk

    2 weeks ago


    Bellville, Western Cape, South Africa Sanlam Full time

    Who are we?- Sanlam Fintech is a newly established digital first business within the Sanlam Group on a mission to democratise financial advice and solutions for everyone across the African continent. We exist to pioneer inclusive financial confidence helping people build strong foundations to bridge the gap in generational wealth. Our culture is that of...


  • Bellville, Western Cape, South Africa Sanlam Full time

    Who are we?Sanlam Life and Savings (SLS) is focused on serving our retail and corporate clients in South Africa and further developing our strategic advantages in the South African market. Sanlam Life and Savings consists of three clusters - Sanlam Corporate, Sanlam Retail Mass and Sanlam Retail Affluent. The Sanlam Life and Savings Office provides strategic...

  • Director: Risk

    2 weeks ago


    Bellville, Western Cape, South Africa Cape Peninsula University of Technology Full time

    Faculty- Support / Admin Department- Department- Cape Peninsula University of Technology -> Protection Services -> Protection Services- Campus/ Location- Bellville Campus - Bellville, Cape Town, WC ZA (Primary)- Job Type- Permanent- Occupational Function- Support / Admin- Number of Positions- 1- Annual Salary Package (incl. Medical Aid rate based on...


  • Bellville, Western Cape, South Africa Sanlam Full time

    Who are we?SanlamConnect is dedicated to supporting, growing, and empowering clients with affordable, easy and suitable solutions, primarily through face-to-face intermediary channels, but also directly. We have approximately 2,000 tied advisers and 2,000 supporting independent brokers, all dedicated to meet the financial needs of our clients.Our vision:We...


  • Bellville, Western Cape, South Africa Progressive IT Resourcing Full time

    Our ClientCompany Group Technology is responsible for the provision of a digitally enabled technology service as a group COE, drive business and transformation and provide group-wide digital and data architecture. We operate the various technology platforms and shared services, ensure Cyber and Information Security resilience, and act as technology...

  • Risk Analyst X2

    2 weeks ago


    Bellville, Western Cape, South Africa Health Solutions Full time

    Introduction Through our clientfacing brands Metropolitan and Momentum, with Multiply (wellness and rewards programme), and our other specialist brands, including Guardrisk and Eris Property Group, the group enables business and people from all walks of life to achieve their financial goals and life aspirations. We help people grow their savings, protect...


  • Bellville, Western Cape, South Africa Santam Full time

    Who are we?Santam is the market leader in the general insurance industry in Southern Africa. We are a large, diversified, expanding and transforming company and whilst based in South Africa, we are rapidly moving into a number of emerging markets, both in Africa and Asia. Our success is rooted in our passion for our clients and everything we do is centred on...

  • Senior Agile Coach

    2 weeks ago


    Bellville, Western Cape, South Africa Progressive IT Resourcing Full time

    Our ClientCompany Group Technology is responsible for the provision of a digitally enabled technology service as a group COE, drive business and transformation and provide group-wide digital and data architecture. We operate the various technology platforms and shared services, ensure Cyber and Information Security resilience, and act as technology...

  • Senior Scrum Master

    2 weeks ago


    Bellville, Western Cape, South Africa Progressive IT Resourcing Full time

    Purpose of the roleThe Agile Coach is responsible for equipping squad members with the right knowledge, tools and training to use agile to its full potential. The role involves understanding where squads are in their journey and offering the right approach to support their growth. To enable continuous improvement the Coach asks the right questions, provides...

  • Actuarial Consultant

    2 weeks ago


    Bellville, Western Cape, South Africa Progressive IT Resourcing Full time

    What will you do?Under general supervision, performs assignments of actuarial-related duties such as preparing, performing and analyzing actuarial research and audits. Other duties include collecting data from various databases and performing standard mathematical calculations.What will make you successful in this role?Job PurposeOur clients dynamic Product...


  • Bellville, Western Cape, South Africa Progressive IT Resourcing Full time

    What will make you successful in this role?The ability to fulfill a leading role in the following output:PAM (jumpbox and vault) and strong passwords User and Service account Access reviews on NetIQ and clean up (where it is the responsibility of the Database Administrator) Database hardening and reporting Encryption Resolve database platform related audit...