Senior Specialist: Cyber Security

1 week ago


Midrand, South Africa Vodafone Full time

**Role purpose**:
The primary purpose of the role is to work within a team of Secure by Design and Security Architecture professionals, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards. In performing this role you will
Identify potential cyber security risks for new products, services and operations and identify controls to minimise, mitigate or remove those privacy and security risks;
Review Design and implementation of the identified controls to ensure they are built into the product (at Design & Build stages);
Provide assurance that privacy and security controls have been implemented before the product goes “live” and product complies with Vodacom/Vodafone Security requirements and applicable laws (at Test & Go-Live stages);
Assess security and privacy risks arising from changes to existing live products that impact the processing of personal data (In-Life); and
Ensuring security and privacy risks are addressed when decommissioning these products (Decommissioning).

You will also be required to drive the delivery of Cyber Security strategy and maturity improvement or risk reduction initiatives into the business unit(s) to which you will be assigned, monitor progress against agreed targets with the objective of safeguarding Vodacom Infrastructure and customer data from Cyber threat actors. This role will involve working with Busines unit, Cyber and IT stakeholders in Vodacom South Africa to drive out Cyber Security baseline requirements - Some of these responsibilities may extend to collaboration with Group Cyber Security and other operating companies to ensure that cyber security controls are consistently applied across markets.

**Your responsibilities will include**:
Support Technology Security awareness programs and educational efforts within the business unit to which you are assigned
Provide accurate and timely reporting of technology security risks identified during secure by design assessments, project engagement and propose remediation and mitigation options in line with policy and good practice
effectiveness and deficiencies in the design and operating effectiveness of information security controls, design and recommend opportunities for continuous improvement.
Manage and conduct formal information security risk analyses, reviews, tests, audits and/or self-assessments.
Design appropriate remedial actions for identified risks, drive remediation of findings and management of risks and exemptions.
Assist to compile a report of information security risks in an appropriate way for different audiences.
Develop, manage and maintain an information security incident management capability.
Collaborate with various key stakeholders, and provide information security advice to stakeholders
Together with CSO team advise on Security decisions for the Agile Team to which you have been assigned and guide the identified Security Champions to imbed security within the CI/CD pipeline. This will include coaching or guiding them:
Coach identified Security Champions to gain practical cyber and DevSecOps understanding and knowledge
Coach Product Owners and all team members on the importance of security requirements
Support product and service development with Secure by Design expertise
Alert Cyber Security to security incidents following Vodafone Standards for reporting.
Report on risk and compliance levels for relevant product and services
Provide input into the definition of the Secure by Design blueprints, patterns and design principles to support product and service development
Give teams recommendations for remediation of vulnerabilities or weaknesses in products or services
Organise chapter meetings/scrums with Security Champions using Agile tool sets and report back to Manager Cyber Secure by Design.
Convert security requirements into stories based on needs.
Give overall guidance on different security activities across Agile teams

**Technical / professional qualifications**:
3 year Technical Diploma/Degree in Information Security, Computer Science or Engineering
An industry certification. The CISSP is strongly preferred, however CCSP, OSCP, CISM, CISA or other relevant certifications will be considered. Security/IT Architecture qualifications such as SABSA, TOGAF etc and relevant security architecture experience will be an added advantage

**Core competencies, knowledge, and experience**:
Minimum of 5 years of experience in a Cyber Security role
Knowledge of common information technology management / compliance frameworks such as ISO/IEC 27001, NIST CSF, ISF, PCI DSS, OWASP, SANS etc.
A deep understanding of Technology Security risks and mitigating solutions
A diverse security background with knowledge and experience in three or more of the Security Domains including: Security Assessment and Testing; Software Development Security; Security Governance and Risk Management; Security Architecture and Engineering; Communicati



  • Midrand, South Africa Vodafone Full time

    **Role purpose**: The primary purpose of the role is to work within a team of Secure by Design and Security Architecture specialists, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards. **In performing this **role,** you will**: Identify potential cyber security risks for...


  • Midrand, South Africa Network Contracting Full time

    **Role Purpose**: The purpose of the role is to manage and lead the Technology Security Cyber Security Baseline Assurance. To further provide security assurance, guidance and support to high profile projects according to company defined policies and requirements, best practice and local/international standards (PCI, SOX, ISO27001, GDPR, POPIA and Cyber Crime...


  • Midrand, South Africa Nexio Full time

    **ROLE REQUIREMENT** - To increase security threat detection capability and defence effectiveness in the Security Assessment Team, and SOC Team in their engagements with customers. - Provides support for Nexio Offensive Security capabilities for the Security Assessment Team, and SOC Team for customers’ engagements. - Direct impact on business resilience...


  • Midrand, South Africa Vodafone Full time

    **Role purpose**: The primary purpose of the role is to work within a team of Secure by Design and Security Architecture professionals, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards. In performing this role you will Identify potential cyber security risks for new...


  • Midrand, South Africa Vodafone Full time

    **Role purpose**: The primary purpose of the role is to work within a team of Secure by Design and Security Architecture professionals, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards. In performing this role you will Identify potential cyber security risks for new...


  • Midrand, South Africa Vodafone Full time

    **Role purpose**: The Senior Specialist: Internal Audit, Tech is responsible for executing Technology and Integrated audits and ad hoc management requests across the Vodacom Group footprint in support of strengthening the control environment. The audit work must be performed in line with the Vodacom Internal Audit methodology and professional standards....


  • Midrand, South Africa Vodafone Full time

    **Role purpose**: **Your responsibilities will include**: The incumbent will direct, develop, implement and maintain a comprehensive Vodacom-wide vulnerability management strategy. Defining, implementing and efficiently maintaining technology security controls and requirements Ensure timely delivery of technology security vulnerability reports and support...


  • Midrand, South Africa Communicate Recruitment Full time

    This is a call for all seasoned Internal Auditors with technical computer auditing experience. **Duties**: - Execute annual audit plans. - Document great audit reports. - Managing relationships with senior stakeholders. - Lead technology audit projects. - Lead cyber security and IT related audits. - Infrastructure computer auditing. - Execution of the...

  • Cyber Security Specialist

    Found in: Adzuna ZA B C2 - 4 days ago


    Midrand, South Africa Adzuna ZA B C2 Full time

    EXPERIENCE:+ 10 years experience in IT industry+ 5 years experience in Technical Information Security positionsAlignment and experience with good practices essential (CoBIT, ISO17799 or equivalent)Understanding of network protocols, cryptography, operating systems, and security tools is essentialThe ability to analyze data, identify patterns, and draw...

  • Cyber Security Specialist

    Found in: Talent ZA 2A C2 - 4 days ago


    Midrand, South Africa Gijima Holdings Full time

    EXPERIENCE:+ 10 years experience in IT industry+ 5 years experience in Technical Information Security positionsAlignment and experience with good practices essential (CoBIT, ISO17799 or equivalent)Understanding of network protocols, cryptography, operating systems, and security tools is essentialThe ability to analyze data, identify patterns, and draw...

  • Cyber Security Specialist

    Found in: Whatjobs ZA C2 - 5 days ago


    Midrand, South Africa Gijima Holdings Full time

    EXPERIENCE: + 10 years experience in IT industry + 5 years experience in Technical Information Security positions Alignment and experience with good practices essential (CoBIT, ISO17799 or equivalent) Understanding of network protocols, cryptography, operating systems, and security tools is essential The ability to analyze data, identify patterns, and draw...


  • Midrand, South Africa MSD Full time

    Reporting to the Associate Director, Regional Security Middle East Africa (MEA), the Regional Security Senior Specialist will be responsible for supporting Global Security Group (GSG) Operations in Sub-Sahara Africa (French West Africa, English & Portuguese Africa, South Africa). He/She will be responsible for providing primary security support for all...


  • Midrand, South Africa Cisco Systems Full time

    **Overview** The primary focus of the role is to build credibility & trust with Partner Senior Executives and to inspire investments in Cisco-centric security practices. There will be two key partner focused objectives: **influencing partner sales teams & driving strategic alignment.** First, influencing partner business transformation in the form of new...


  • Midrand, South Africa Vodafone Full time

    **Role purpose**: The PAM Senior Specialist is responsible for ensuring that the PAM product is implemented and rolled out throughout the Vodacom group. This role is responsible for all the checkpoints during the delivery lifecycle of PAM support, maintenance, and roll out. This role is responsible for managing the product and the associated projects that...


  • Midrand, South Africa Vodafone Full time

    **Role purpose**: The PAM Senior Specialist is responsible for ensuring that the PAM product is implemented and rolled out throughout the Vodacom group. This role is responsible for all the checkpoints during the delivery lifecycle of PAM support, maintenance, and roll out. This role is responsible for managing the product and the associated projects that...

  • Cyber Security Specialist

    Found in: Talent ZA 2A C2 - 1 week ago


    Midrand, South Africa Gijima Holdings Full time

    RESPONSIBILITIES:Administration of Vulnerability Management Security Solutions and researching, designing & developing additional protection technologiesInstallation, management & support of the following Products: Tenable.IO and associated products and Qualys and associated productsPresenting vulnerabilities in client meetings at a CIO/CEO levelKeeping...

  • Cyber Security Specialist

    Found in: Whatjobs ZA C2 - 7 days ago


    Midrand, South Africa Gijima Holdings Full time

    RESPONSIBILITIES: Administration of Vulnerability Management Security Solutions and researching, designing & developing additional protection technologies Installation, management & support of the following Products: Tenable.IO and associated products and Qualys and associated products Presenting vulnerabilities in client meetings at a CIO/CEO level Keeping...


  • Midrand, South Africa DBSA Full time

    The purpose of this role is to perform information security responsibilities such as developing, coordinating and implementing policies, standards, and procedures to safeguard the bank’s information systems and data. Ensuring that information security policy is aligned with the bank’s business strategy & benchmarked with best practice. **Strategic...


  • Midrand, South Africa Nexio Full time

    **ROLE PURPOSE** As part of the Customer-facing Nexio SOC team, the Specialist: Cybersecurity Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity incidents within a Security Operations Center. The Cybersecurity Analyst utilizes incident handling methodologies to validate security events, assess severity levels, and...


  • Midrand, South Africa Open Source (Pty) Ltd Full time

    **Essential Skills**: - Cisco ASA, Fortinet Firewall /IPS, Cisco FirePower, Cisco FMC, Tipping Point, Tufin UNIX/Linux. Cyber Security understanding, Troubleshooting skills, wireshark / tcpdump - capture / analysis - Linux administration, scripting - Monitoring & Alerting Virtualization - Experience with Cisco & HP - Azure Cloud Experience - Secured SD-WAN...