Information Security Lead

2 weeks ago


Johannesburg, South Africa Harris Computer Full time

Join Interfile—South Africa’s leading Electronic Bill Presentment & Payment (EBPP) fintech—where we design, build, and run large-scale digital services used by millions, partnering with top banks, major corporates, and government. You’ll work on modern architectures across both new builds and enhancements in a culture that prizes innovation, seamless integration, and exceptional delivery. We’re customer-obsessed and known for helping organizations modernise. Our Fourways office—right across from Montecasino—offers a modern workspace with a Vitality-certified gym, canteen, and great chill areas. Purpose of the role: Lead and continuously improve our information security posture across on-prem and cloud—covering platforms, hardware, networks, and data centres. You’ll drive vulnerability remediation through both automation and hands-on work, ensure compliance with POPIA, and design, implement, and uplift security standards and frameworks (e.g., ISO 27001/27002, NIST CSF 2.0). You’ll also own risk management and incident response while championing a security-first culture across the business. Responsibilities: Security Assessment & Management Conduct regular security assessments across infrastructure, applications, and data environments. Implement and manage SAST and DAST tools and processes. Track, report, and drive remediation of vulnerabilities and security issues. Security Posture & Reporting Develop and maintain dashboards and reports that clearly communicate the organization’s security posture. Define and track KPIs for security posture, remediation velocity, and compliance. Collaborate with internal teams to ensure visibility and accountability for remediation efforts. Automation & Remediation Design and implement automated security controls and remediation workflows. Work with DevOps and IT teams to integrate security into CI/CD pipelines. Compliance & Regulatory Alignment Ensure alignment with POPIA and other applicable data protection regulations. Support audits and compliance reporting requirements. Work with legal and compliance teams to ensure data handling aligns with privacy laws. Standards & Frameworks Contribute to the design and rollout of security standards such as ISO 20027. Align security practices with NIST CSF 2.0 and other relevant frameworks. Risk Management Conduct risk assessments and maintain a security risk register. Collaborate with business units to understand and mitigate security risks tied to operations and products. Incident Response & Forensics Develop and maintain incident response plans. Lead investigations into security breaches and coordinate post-incident reviews. Security Awareness & Training Design and deliver security awareness programs for staff. Promote a security-first culture across technical and non-technical teams. Third-Party & Vendor Security Assess and manage security risks related to vendors, partners, and third-party services. Ensure contracts and SLAs include appropriate security clauses. Secure Architecture & Design Participate in solution architecture reviews to ensure security is embedded from the start. Advise on secure design patterns and threat modeling. Requirements (Essential): Bachelor’s degree in Information Security, Computer Science, or related field. At least one security certification: CISSP, CISM, CEH, CompTIA Security+, ISO 27001 Lead Implementer (or similar). 5+ years in an information security role (or similar). Proven security experience across infrastructure, applications, and data environments. Hands-on with SAST/DAST tools (e.g., SonarQube, OWASP ZAP, Burp Suite). Strong vulnerability management and remediation workflow expertise. Familiarity with automation/scripting (e.g., Python, PowerShell) and CI/CD tooling. Working knowledge of POPIA and other data-protection regulations. Experience with security frameworks (e.g., NIST CSF, ISO 27001/27002). Ability to communicate technical risks and remediation plans to non-technical stakeholders. Nice to Have (Desirable) Proactive, detail-oriented, strong sense of ownership. Comfortable collaborating across multiple teams and disciplines. Passion for security, compliance, and continuous improvement. Multiple or advanced security certifications. #J-18808-Ljbffr



  • Johannesburg, South Africa Kalagadi Manganese | View - Information Security Officer Full time

    Overview The Information Security Officer is responsible for protecting the organisation’s information assets by implementing and maintaining effective information security policies, procedures, and controls. This role ensures compliance with security standards, mitigates risks, and supports business continuity while safeguarding confidential and sensitive...


  • Johannesburg, South Africa Wolfpack Information Risk Full time

    A leading information security firm is looking for a Head of Human Resources to lead their information security efforts. The candidate will be responsible for risk management, compliance monitoring, and educating staff on cybersecurity best practices. A Bachelor's degree in a related field and relevant certifications are necessary. Experience in IT security...


  • Johannesburg, South Africa Kalagadi Manganese | View - Information Security Officer Full time

    A leading mining company in Johannesburg is seeking an experienced Information Security Officer responsible for protecting information assets and ensuring compliance with security standards. The role involves developing and implementing security policies, managing security systems, and conducting risk assessments. Candidates should have a Bachelor's degree...


  • Johannesburg Metropolitan Area, South Africa Wolfpack Information Risk Full time R240 000 - R320 000 per year

    Our client is looking for an Information Security Officer (ISO) to join their team on a 12 month contract with a view to extend if a good fit.Key Responsibilities:To support the ISO team to achieve the following across all entities within the group:Risk Management: Identifying, accepting, developing solutions for, and mitigating risks.Maintain a risk...


  • Johannesburg, South Africa Wolfpack Information Risk Full time

    Head of Human Resources at Wolfpack Information Risk (Pty) Ltd Our client is looking for an Information Security Officer (ISO) to join their team on a 12 month contract with a view to extend if a good fit. Key Responsibilities To support the ISO team to achieve the following across all entities within the group: Risk Management: Identifying, accepting,...

  • Security Analyst

    1 week ago


    Johannesburg, Gauteng, South Africa Information Security Architects (ISA) Full time R400 000 - R800 000 per year

    Information Security Architects – Security AnalystInformation Security Architects (ISA) is a leading and trusted Managed Security Services Provider (MSSP) on the African continent. Established in the 1990s, ISA has evolved from a focus on firewall and anti-virus technologies to delivering a full suite of cutting-edge security services. We support our...


  • Johannesburg, South Africa Harris Computer Full time

    Join Interfile—South Africa’s leading Electronic Bill Presentment & Payment (EBPP) fintech—where we design, build, and run large‑scale digital services used by millions, partnering with top banks, major corporates, and government. You’ll work on modern architectures across both new builds and enhancements in a culture that prizes innovation,...


  • Johannesburg, South Africa TransUnion Full time

    TransUnion's Job Applicant Privacy Notice **What We'll Bring**: TransUnion works with businesses and consumers to gather, analyze, and deliver critical information needed to build strong economies around the world. Protection of that information is critical our customers and business. As an Information Security Director, you will be responsible for leading...


  • Johannesburg, South Africa NTT Ltd. Full time

    NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...


  • Johannesburg, South Africa NTT Ltd Full time

    NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...