Director Information Security

3 days ago


Johannesburg, Gauteng, South Africa TransUnion Full time

TransUnion City of Johannesburg, Gauteng, South Africa

Director Information Security

At TransUnion, we know that finding the right people is the reason we're a global leader in credit information and information management services. We strive to provide an environment that allows our talented people to find success and satisfaction. Our Africa Region is looking for an Information Security Director to operate a strategic, comprehensive enterprise information security and cyber risk management program.

TransUnion works with businesses and consumers to gather, analyze, and deliver critical information needed to build strong economies around the world. Protection of that information is critical to our customers and business. As an Information Security Director, you will be responsible for leading our Information Security function across TransUnion Africa. You will drive the execution of our regional Information Security strategy through deployment of security technologies and projects, interfacing with senior IT, business, customer and regulatory leaders, and overseeing the local Information Security team. You will serve as the process owner of all assurance activities related to ensure compliance with the organization's information security policies. A key element of the role is working with executive management to determine acceptable levels of risk for the organization, identifying emerging risks and building mitigation plans. Overall, this position is responsible for a regional information security management program that spans eight African countries.

How You'll Contribute

  • Responsible for enterprise-wide security in the Business Unit, as such you will effectively be the Chief Information Security Officer for the BU, interfacing with TU's key stakeholders in the African region and other international locations, as well as the Global Information Security group.
  • Operate in a matrix organization with functional alignment into Global Information Security and dotted reporting into the regional Technology organization.
  • Work directly with business unit leaders to facilitate risk assessment and risk management processes.
  • In close collaboration with local IT, PMO, and Global Information Security, drive execution of Information Security projects, including technology deployments, ongoing security assessments and other risk management activities as per TU's Information Security strategy and plan.
  • Maintain and enhance an information security management system in accordance with ISO 27001 standards.
  • Support and develop the information security strategy, risk management initiatives, and become a trusted advisor and thought leader to meet business, client and regulatory demands.
  • Understand and interact with related disciplines through regulatory forums, committees, and business engagements to ensure the consistent application of policies and standards across all technology projects, systems and services.
  • Provide leadership, oversight and performance management to the organization's geographically distributed information security department, including coaching and motivation for high performance.
  • Maintain accountability for the Information Security budget in the region.
  • Facilitate certifications, as necessary and determined by the business or Global Information Security, for SSAE 18, PCI DSS and ISO 27001.
  • Partner with business stakeholders across the company to raise awareness of risk management concerns and to drive and influence their resolution.
  • Work within the project and resource prioritization process to ensure security projects and efforts are represented, prioritized and executed.
  • On a regular basis, report status of security posture and progress against objectives to senior management in Global Information Security and regional IT.
  • Maintain a thorough understanding of current security deviations, open assessment and audit findings, and vulnerabilities in TU's security posture.
  • Mobilize and support regional responses to threats and incident investigations in an effective and timely manner.
  • In conjunction and coordination with Global Information Security, maintain and test incident response process and ensure its continued integration with regional and global escalation protocols.
  • Oversee the completion of security audits by customers and data providers.
  • Prepare and contribute in periodic communication and presentations to local TU business and functional leaders regarding regional security posture and direction.
  • Complete annual planning process through ownership and accountability for BU plans for Information Security that align with global strategy but reflect nuances of local needs, where appropriate.
  • Assist with the overall business technology planning, providing a current knowledge and future vision of technology and systems.

What You'll Bring

  • 12 years+ of extensive experience in risk management, information security and IT.
  • 10 years Information Security Management.
  • Degree in Business Administration or a technology-related field required.
  • Professional security management certification in Information Security / Cyber Security or industry qualifications (CISSP, CISM, CISA, CCSP).
  • Strong leadership, project management skills, time management, and problem-solving skills.
  • Ability to work in a virtual, global matrix organization.
  • Innovative thinking and leadership with an ability to lead and motivate cross-functional, interdisciplinary teams.
  • Experience with working with local and regional regulators and authorities such as the National Credit Regulator & the Information Regulator to ensure compliance with local regulations.
  • Experience with contract and vendor negotiations and management including managed services.
  • Experience with designing, developing and implementing security processes, controls and technologies.
  • Working experience with information security solutions in areas such as Identity Management, Vulnerability Management, Content Filtering, DLP, IDS/IPS, FIM and Incident Response.
  • Working knowledge of industry frameworks and standards such as SSAE 18, PCI DSS, and ISO 27001.
  • Knowledge of information security in Windows and Linux operating systems as well as TCP/IP networks.
  • Understanding of web application and product security controls.
  • Experience with performing system audits and security assessments, and in interfacing with external auditors.
  • Experience with reporting security metrics (dashboards, KPIs, KRIs).
  • Ability to operate as an information security business partner and advisor to senior executives and, where necessary, a hands-on contributor on technology deployments and other projects.

What we offer

We aim high — and are reaching for new heights every day. This is a terrific time to join our team as we build on our commitment to integrity, service, reliability and innovation. These values stand behind the decisions we make every day, as well as our relationships at work and with the clients we serve. We believe in the power to achieve and are taking it in bold new directions.

Who we are

A global leader in credit information and information management services, TransUnion gives businesses, consumers and the global community the power to achieve their goals. Businesses count on us to better manage risk and customer relationships. Consumers are able to better manage credit to achieve their financial goals. In communities around the world, we help build strong economies and give people the power to achieve their dreams.

Exceptional opportunities are coming as we build on this strong foundation. Our ambitious growth strategy includes substantial new investment worldwide, a wide range of new solutions to help our clients succeed like never before, and new ideas for expanding our reach in every part of our dynamic and fast-moving industry. We're on an exciting journey and you can be a part of it. We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law.

Seniority level

Director

Employment type

Full-time

Job function

Information Technology

#J-18808-Ljbffr

  • Johannesburg, Gauteng, South Africa Office of the Chief Justice South Africa Full time

    Job title : Deputy Director: Information SecurityJob Location : Gauteng, JohannesburgDeadline : April 10, 2025Quick Recommended LinksJobs by Location Job by industries REQUIREMENTS :Matric certificate and a three-year National Diploma in Computer Engineering, Information Technology or equivalent qualification at NQF Level 6 (360 Credits) as recognized by...


  • Johannesburg, Gauteng, South Africa Network Recruitment Full time

    **Job Overview**We are seeking an experienced Information Technology Director to lead our company's information technology operations.The successful candidate will be responsible for planning, implementing, and maintaining all aspects of our IT infrastructure, ensuring the security, efficiency, and reliability of our systems.


  • Johannesburg, Gauteng, South Africa TransUnion Full time

    About the RoleWe are seeking an experienced Security Director to lead our information security function across TransUnion Africa.This role will be responsible for executing our regional information security strategy through deployment of security technologies and projects, interfacing with senior IT, business, customer and regulatory leaders, and overseeing...


  • Johannesburg, Gauteng, South Africa mPHATEK Systems Full time

    OverviewmPHATEK Systems is a leader in providing cutting-edge technology solutions. We are seeking a highly skilled Information Security Expert to join our security team.Job DescriptionWe are looking for an experienced Information Security Expert who can lead our information security initiatives. The successful candidate will have a strong background in...


  • Johannesburg, Gauteng, South Africa Isilumko Staffing (JHB) Full time

    We are seeking a dynamic and experienced Information Security Manager to lead our efforts in safeguarding sensitive information and maintaining robust security frameworks. The successful candidate will play a key role in managing information security risks, implementing policies, and ensuring compliance with industry standards to protect our organization...


  • Johannesburg, Gauteng, South Africa Isilumko Staffing (JHB) Full time

    Main Purpose of the Job:We are seeking a skilled and experienced Information Security Manager (ISM) to oversee and manage the overall planning, implementation, and management of the organisation's information security strategies. The ideal candidate will be responsible for ensuring the integrity, confidentiality, and availability of all information assets...


  • Johannesburg, Gauteng, South Africa The Levelup Full time

    Level Up Johannesburg, Gauteng, South AfricaInformation Security EngineerThe Information Security Engineer will be responsible for ensuring the security of our information systems and protecting them against unauthorized access, modification, or destruction. The role involves hands-on operations with various security tools and platforms, as well as the...


  • Johannesburg, Gauteng, South Africa Datacentrix Full time

    Job title : Information Security AnalystJob Location : Gauteng, JohannesburgDeadline : March 18, 2025Quick Recommended LinksJobs by Location Job by industries Managed Talent Solutions client in the mining sector is looking for a Information Security Analyst on a 12 month fixed term contract. Must have +6 years experience in conducting risk assessments that...


  • Johannesburg, Gauteng, South Africa Fidelity Services Group Full time

    We are seeking a highly experienced Area Security Director to oversee our security operations across multiple areas. The successful candidate will have a strong background in security management and be able to make strategic decisions.Key Responsibilities:Overseeing security operations across multiple areas.Ensuring all security officers meet contractual...


  • Johannesburg, Gauteng, South Africa LevelUp (Pty) Ltd Full time

    About the Role:We are looking for an Information Security Specialist to ensure the security of our organization's information systems. This includes designing and implementing secure networks and systems, conducting regular system tests, and developing technical solutions to mitigate security vulnerabilities.Duties & Responsibilities:Design and implement...


  • Johannesburg, Gauteng, South Africa Level Up Full time

    Level-Up Johannesburg, Gauteng, South AfricaJoin or sign in to find your next jobJoin to apply for the Information Security Engineer role at Level-UpInformation Security Engineer will be responsible for ensuring the security of our information systems and protecting them against unauthorized access, modification, or destruction. The role involves hands-on...


  • Johannesburg, Gauteng, South Africa Data Centrix Full time

    Requirements:An undergraduate or postgraduate qualification in computer science, business informatics, engineering/technology or equivalent Professional certifications and experience in Information Security from industry standard security frameworks: ISACA, BCS, CIPP, ITIL, Crest, ISC2, COMPTIA and key security vendors including Microsoft, Crowdstrike,...


  • Johannesburg, Gauteng, South Africa Data Centrix Full time

    Job Description We require an experienced Director of Enterprise Security to join our team at Data Centrix. In this role, you will be responsible for developing and implementing comprehensive security strategies that align with our business objectives. Your expertise in security architecture, engineering, and management will enable us to protect our assets...


  • Johannesburg, Gauteng, South Africa mPHATEK Systems Full time

    About the Role:The Mobile Security Lead will be responsible for leading technical teams or projects, with 7+ years' experience in information security or a related field. The ideal candidate will have specific experience in mobile application security, as well as a deep understanding of iOS and Android security models.


  • Johannesburg, Gauteng, South Africa Standard Bank Group Full time

    We are seeking an experienced Security Systems Director to lead our Physical Security Conformance and Systems Function within Real Estate Services. This role is responsible for establishing and maintaining the standards of Physical Security equipment, procedures, policies, and specifications throughout the Standard Bank Group.The ideal candidate will have a...


  • Johannesburg, Gauteng, South Africa TransUnion Full time

    About the RoleWe are seeking an experienced Regional Information Security Head to lead our information security function across TransUnion Africa.This role will be responsible for executing our regional information security strategy through deployment of security technologies and projects, interfacing with senior IT, business, customer and regulatory...


  • Johannesburg, Gauteng, South Africa TransUnion Full time

    About the RoleWe are seeking a Chief Information Security Officer to lead our information security function across TransUnion Africa.This role will be responsible for executing our regional information security strategy through deployment of security technologies and projects, interfacing with senior IT, business, customer and regulatory leaders, and...

  • Site Director

    6 days ago


    Johannesburg, Gauteng, South Africa Fidelity Services Group Full time

    Job DescriptionThe Site Director - Retail Security will be responsible for managing three retail outlets within the Mall of Africa Shopping Centre. This individual will ensure that all site-specific security requirements are met, while also providing exceptional customer service to our clients.Key ResponsibilitiesManage security operations of three retail...


  • Johannesburg, Gauteng, South Africa Datacentrix Full time

    Job title : Regional Business Information Security ManagerJob Location : Gauteng, JohannesburgDeadline : March 18, 2025Quick Recommended LinksJobs by Location Job by industries Managed Talent Solutions client in the mining sector is looking for a Regional Business Information Security Manager with  experience in managing information security operations for...


  • Johannesburg, Gauteng, South Africa SSR Personnel Full time

    About UsWe are SSR Personnel, a leading recruitment agency specializing in cybersecurity and intelligence roles. We are seeking an experienced Information Security Professional to join our team as a Cybersecurity Expert.Job Description:The Cybersecurity Expert will analyze digital and non-digital data to detect emerging threats and support investigations...