Business Information Security Officer

2 weeks ago


Johannesburg, Gauteng, South Africa Nedbank Full time

Job Purpose

  • The BISO must support the business cluster in the implementation and execution of the cyber resilience risk management framework that includes implementation of cyber risk assessments, strategy, cyber security programme, policies, standards, reporting of all clusterspecific cyber security programme elements and regulatory matters as it relates to cyber security

Responsibilities:

  • Drive compliance to cybersecurity policies and standards on cluster infrastructure.
  • Primary interface between the cluster and CISO office.
  • Represent business as a cybersecurity representative on the CyRC.
  • Ensure alignment and implementation of CRRMF in clusters.
  • Assisting with driving and implementation of the top cyber focus areas within clusters where relevant
  • Monitor and oversight of cyber risk within the clusters.
  • Guide business in the cyberrelated initiatives to ensure the management of the cyber risk profile of the cluster. Assists the cluster in the completion of cyber resilience risk assessments, ensuring that they are understood, captured in the risk management processes, that appropriate controls are embedded in the daytoday operation, and remediation of noncompliance is documented and addressed.
  • Report of all cluster specific cyber resilience program elements.
  • Work closely together with all stakeholders with regards to information security.
  • Actively executes the cyber resilience programme elements and other information and cybersecurity plans developed by the business.
  • Assist the cluster with identification of critical assets from a confidentiality point of view ("crown jewels") and feeding that back into the business impact analysis and risk management processes.
  • Assist the CISO office with conducting cybersecurity assurance examinations on identified Crown Jewels.
  • Document and maintain a cybersecurity profile for each cluster environment (to provide an overall picture of the environment, which will support riskbased decisions and cybersecurity related activities at cluster level).
  • Work with the business to develop processes and procedures to ensure cybersecurity policies and standards are integrated.
  • Manage third party cyber and privacy risk management process for the cluster.
  • Assisting with the implementation of the DLP strategy within the clusters
  • Assist stakeholders with resolution of identified cyberrelated incidents within the clusters.
  • Coordinate and assist with cyber awareness and training for the cluster.
  • Active involved in cybersecurity assessments and monitor cluster specific cybersecurity concerns.
  • Assisting business to manage cyber risk, ensuring that the cluster operate within the cyberrisk appetite of the Bank and management of the threshold breaches where relevant.

Job Responsibilities Continue

  • Essential Qualifications
  • NQF Level
  • Advanced Diplomas/National 1st Degrees


Preferred Qualification
  • Honours/Master's Degree in IT / Computer Science / Informatics


Essential Certifications
  • CISSP, CISM or relevant qualifications (this is essential certification )
  • Minimum Experience Level years in Information Security Experience
  • Exposure in Risk Management Monitoring
  • Data Reporting Analytics experience

Technical / Professional Knowledge

  • Administrative procedures and systems
  • Banking knowledge
  • Data analysis
  • Governance, Risk and Controls
  • Microsoft Office
  • Principles of project management
  • Relevant regulatory knowledge
  • Relevant software and systems knowledge
  • Business writing skills
  • Information Security Threats and Attact vectors
  • Cluster Specific Operational Knowledge
  • System Development Life cycle(SDLC)
  • TCP/IP
  • Information Security terms and definitions
  • Basic computer concepts
  • Relevant Operating System
  • Information Security policies and procedures
  • Vendor Management Principles


Behavioural Competencies
  • Coaching
  • Collaborating
  • Decision Making
  • Influencing
  • Innovation
  • Technical/Professional Knowledge and Skills
- **_Please contact the Nedbank Recruiting Team at _

  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Requisition Details & Talent Acquisition Contact REQ Tshego SemenyaCluster Information TechnologyCareer Stream It RiskLeadership Pipeline Manage Self: ExpertPosition Business Information Security OfficerJob Purpose The BISO must support the business cluster in the implementation and execution of the cyber resilience risk management framework that includes...


  • Johannesburg, Gauteng, South Africa WePlace Full time

    Gauteng, JHB - Northern Suburbs Market Related Annually Basic Salary We have an exciting opportunity as an Information Security Officer based at our client in the Commercial Banking sector which is located in Sandton.Role Description: The focus of the role will be to assess, identify and address the cyber and information security risks in the division. We...


  • Johannesburg, Gauteng, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Officer based in SelbyRequirements:7 years' experience in technology security or risk management roles of which should include:4 years in technology policy writing.4 years' experience in designing implementing and closing technology general control gaps.3 years' experience in directly...


  • Johannesburg, Gauteng, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Officer based in Selby.Requirements:7 years' experience in technology security or risk management roles of which should include:4 years in technology policy writing.4 years' experience in designing implementing and closing technology general control gaps.3 years' experience in directly...


  • Johannesburg, Gauteng, South Africa Integralis Full time

    As the Information Security Officer, you will be responsible for the information security vision, strategy, governance, management, processes and user education. The role also requires technical abilities to assist the team in improving the security posture.Purpose:Assist the management team in creating and executing the security strategy and updating the...


  • Johannesburg, Gauteng, South Africa Kontak Recruitment Full time

    Information Security Officer (JB4536) Remote, (Suitable for candidates in Gauteng Only) XXX-XXXX.00 to XXX-XXXX.00 Annually CTC Permanent A retailer operating in the travel retail sector is looking for a professional Information Security Officer. The ...Matric & Relevant tertiary qualificationOne or more of the below certifications would be...


  • Johannesburg, Gauteng, South Africa Elite Search and Selection Full time

    Gauteng, JHB - Northern Suburbs R R Monthly Cost To Company (Various Exco Team Benefits)ROLE: Chief Information Security OfficerLOCATION:Johannesburg - Sandton Area - Office BasedAre you an experienced and visionary IT professional with a passion for cybersecurity? Are you ready to take the reins and safeguard the digital ecosystem of a rapidly expanding...


  • Johannesburg, Gauteng, South Africa Kontak Recruitment Full time

    "Information Security Officer (JB4444) Remote, (Suitable for candidates in Gauteng Only) XXX-XXXX.00 to XXX-XXXX.00 Annually CTC Permanent A retailer operating in the travel retail sector is looking for a professional Information Security Offi...Matric & Relevant tertiary qualification One or more of the below certifications would be...


  • Johannesburg, Gauteng, South Africa Kontak Recruitment Full time

    "Information Security Officer (JB4444) Remote, (Suitable for candidates in Gauteng Only) XXX-XXXX.00 to XXX-XXXX.00 Annually CTC Permanent A retailer operating in the travel retail sector is looking for a professional Information Security Offi...Matric & Relevant tertiary qualification One or more of the below certifications would be advantageous: CISSP:...


  • Johannesburg, Gauteng, South Africa Kontak Recruitment Full time

    "Information Security Officer (JB4444) Remote, (Suitable for candidates in Gauteng Only) XXX-XXXX.00 to XXX-XXXX.00 Annually CTC Permanent A retailer operating in the travel retail sector is looking for a professional Information Security Offi...Matric & Relevant tertiary qualification One or more of the below certifications would be advantageous: CISSP:...


  • Johannesburg, Gauteng, South Africa Standard Bank Of South Africa Limited Full time

    Business Segment: Business & Commercial Banking Location: ZA, GP, Johannesburg, Simmonds Street 5 To implement the Group Cyber Resilience strategy securing platforms ecosystems 3rd party integration protecting sensitive data, applications and supporting infrastructure from infiltration or misuse guiding security capabilities in client segment and solutions....


  • Johannesburg, Gauteng, South Africa Security Bank & Trust Co. Full time

    Johannesburg: Information Security Officer (Remote)EDUCATION &EXPERIENCE:Matric & Relevant tertiary qualification.One or more of the below certifications would be advantageous:CISSP:Certified Information Systems Security ProfessionalCISA:Certified Information Systems AuditorCISM:Certified Information Security Manager KPAs 5 years experience in Cyber...


  • Johannesburg, Gauteng, South Africa Security Bank & Trust Co. Full time

    Johannesburg: Information Security Officer (Remote)EDUCATION &EXPERIENCE:Matric & Relevant tertiary qualification.One or more of the below certifications would be advantageous:CISSP:Certified Information Systems Security ProfessionalCISA:Certified Information Systems AuditorCISM:Certified Information Security Manager KPAs 5 years experience in Cyber...


  • Johannesburg, Gauteng, South Africa F & G Sourcing Specialist Full time

    Our Security Services client is seeking a skilled, professional Information Security Officer to join their team in Johannesburg.Salary: R R77 000 per MonthBenefits:The CTC consist of the following:Employer contributes 100% towards Medical aid (CTC) Employer contributes 100% towards Provident Fund Performance bonus: not guaranteed based on the performance of...


  • Johannesburg, Gauteng, South Africa Sanlam Full time

    Who are we?Sanlam Developing Markets [SDM] (a wholly-owned subsidiary of Sanlam Life Limited) is one of the top financial services providers in the South African entry-level and emerging middle market. It aims to understand the unique requirements of clients and offers a wide range of simple and affordable financial solutions that cover needs such as funeral...


  • Johannesburg, Gauteng, South Africa Recruitment Matters Africa Full time

    Our client is looking for a Data Protection/Information Security Officer to join their team.The Director Data Protection & Compliance Programs is responsible to ensure departments in SSA Countries adhere to the company's Data Protection/Privacy standards and to the IT Infrastructure and Service Management standards, i.e. Information Security.Compliance will...


  • Johannesburg, Gauteng, South Africa Hera Group Full time

    Are you a visionary leader with a passion for cybersecurity and a proven track record of driving security initiatives? Hera Group, a prominent company operating across Africa, is seeking an accomplished Chief Information Security Officer (CISO) to steer our cybersecurity strategies and ensure digital resilience.About Us:Hera Group is a trailblazing force in...


  • Johannesburg, Gauteng, South Africa FirstRand Full time

    About us, purpose, experience and qualificationsabout us:- make a promise- be deeply invested- value our differences- build trust, not territory- have courage- always do the right thingpurpose: To address the risk management of the FNB information security environment and the definition and maintenance of information security policy; To contain our...


  • Johannesburg, Gauteng, South Africa ABC Worldwide Full time

    Information Security Manager will be responsible for implementing and monitoring IT security strategies for all platforms across IT function with organization. He will provide assistance to manage the risk to the platform assigned and will ensure business alignment, effective governance, system and infrastructure availability, integrity and...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Job Classification- REQ:Refilwe Falatsi:- Closing Date: 15 March 2024:Division: Wealth Centre | Risk:- Employment Equity Statement: Preference will be given to Individuals from Underrepresented Groups. Job Family Information Technology Career Stream It Risk Leadership Pipeline Manage Self: Expert FAIS AffectedJob Purpose To collaboratively perform indepth...