Senior Manager: Cyber Risk

4 weeks ago


Johannesburg, South Africa Absa Bank Limited Full time

Bring your possibility to life Define your career with us
- With over 100 years of rich history and strongly positioned as a local bank with regional and international expertise, a career with our family offers the opportunity to be part of this exciting growth journey, to reset our future and shape our destiny as a proudly African group.Job Summary

Ensure that all activities for the centre of competence and duties assigned are carried out in full compliance with regulatory requirements, enterprise-wide risk management and governance, management frameworks (and other applicable guidelines), internal policies and standards

**Job Description**:
The Senior Manager : Cyber Risk - Third-Party Risk Centre of Excellence will act as Subject Matter Expert, advisor, consultant, and coordinator group wide, therefore must:
Understand the business value chain and leverage from all sub-functions and activities.

Stay abreast of market, tools, methodologies, practice changes and act as an advisor to guide business in managing the applicable risks exposures and provide Research and Development services, support and systems pertaining to Third-Party Cyber Risk.

Be responsible for designing, implementation and monitoring of group-aligned and integrated risk governance, insights & reporting in terms of third-party cyber risks exposure.

Provide advisory, insights and specialist support services to the central functions and business units’ processes relating to third-party management in terms of the relevant risk types.

Consult all available enterprise frameworks to shape and inform the PPSG’s (Procedures, Policies, Standards and Guidelines) to be adapted by the COE as they relate to the management of third-party cyber risks and provide specialist support to all Business Heads, Executives and Line Management with required governance, controls, monitoring and group wide reporting, in terms of the relevant risk types.

Develop and implement group wide third-party cyber risk proactive and preventative models, controls, processes, systems and tools, KPIs, key risk drivers, and associated risk impacts.

Identify potential risks using data, dashboards, and/or other relevant metrics by analyzing risk information. Provide advice and recommendations regarding any emerging risks, trends, and early detection of issues for the relevant risk types by employing their capacity and tools to be innovative while recognizing and respecting the need to be prudent in Third-Party risk management.

Support and promote an effective risk culture, where there is an open, proactive, and constructive dialogue in the management of the relevant risk types and enable management to monitor the effectiveness of the control environment and to take action to prevent, mitigate and remediate the relevant risk types, where required.

Key Accountabilities and Responsibilities

Training and Communication

Leadership and Stakeholder Management

Engage and coordinate internal stakeholders across various business areas and functions across the group and external stakeholders (e.g., regulators and other third-parties). Provide strong leadership (of self), direction and display role model behaviors, inspiring others to work together to achieve the strategic vision. Build effective working relationships with key stakeholders and information flows across the business units, risk functions and the various entities. Assist the business units on execution of strategy by providing advice on risk/control and challenge decisions that pose risk. Advise leadership on emerging global third-party risk trends and advise accordingly. Support and influence the organization in improving the third-party risk management through digitization, automation, standardization, and simplification.

Third-Party Risk Management and Governance

Advise on risk decisions and escalate risk decisions to the relevant Head. Assess the relevance and performance of the third-party risk indicators and thresholds as defined in the monitoring tools and methodologies, leveraging on the business risk appetite or materiality thresholds. Partner with the second line of defense and in-business unit teams to provide guidance on issue/action documentation, tracking, escalation, and remediation. Investigate third-party matters affecting the relevant business risk profile, which may pose an undue risk. Oversee deep dive and lessons learnt exercises for material risks, including the review, challenges, and tracking/escalation of findings. Review and lead major remediation plans for adequacy, completeness, and progress. Escalate any unresolved concerns directly to the Business Heads. Ensure that third-party processes, control requirements and governance frameworks that impact the relevant risk types are documented and understood by all interacting members of the team and value chain. Create and maintain a central communication portal (knowledge base) for the COE to ensure knowledge content is up to date and rele



  • Johannesburg, Gauteng, South Africa Absa Bank Limited Full time

    Bring your possibility to life Define your career with us With over 100 years of rich history and strongly positioned as a local bank with regional and international expertise, a career with our family offers the opportunity to be part of this exciting growth journey, to reset our future and shape our destiny as a proudly African group.Job SummaryEnsure that...


  • Johannesburg, South Africa Nedbank Full time

    **Job Purpose** - To provide expert advice and support on complex aspects within their fields of Cyber Security. To collaboratively perform analysis and support for key stakeholders on complex Cyber Security issues and provide optimum solutions which meet both business and technical requirements while aligning with the Cyber Security strategy and Cyber...


  • Johannesburg, South Africa Khomeliwa Consulting Full time

    **SENIOR MANAGER: IT GOVERNANCE, RISK AND CYBER SECURITY, Sandton,** **R800k - R1,2m p/a** Our client is a short-term insurance company and they seek to appoint the Senior Manager: IT Governance, Risk and Cyber Security. The incumbent will report to the CIO. **JOB PURPOSE** To drive the successful delivery of the IT Governance, Risk and Cyber Security,...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Job Purpose To provide expert advice and support on complex aspects within their fields of Cyber Security. To collaboratively perform analysis and support for key stakeholders on complex Cyber Security issues and provide optimum solutions which meet both business and technical requirements while aligning with the Cyber Security strategy and Cyber Resilience...

  • Manager : Cyber Risk

    4 weeks ago


    Johannesburg, South Africa Nedbank Full time

    Minimum Experience Level- 4-5 years of Cyber Risk management experience - Experience in a bank preferred. - **_Please contact the Nedbank Recruiting Team at +27 860 555 566_


  • Johannesburg, South Africa Isilumko Staffing Full time

    A top company in the Energy and Chemical Industry is seeking a highly skilled and experienced Senior IT Auditor with a strong background in Cyber Security to join their dynamic team. As a Senior IT Auditor - Cyber Security, you will play a key role in evaluating and enhancing the security of our IT systems and processes. Key Responsibilities:Cyber Security...

  • Head: Cyber Risk

    2 weeks ago


    Johannesburg, Gauteng, South Africa Nedbank Full time

    Job Requisition Details REQ# Location: Johannesburg, GautengClosing Date: 15 August 2023- Talent Acquisition: Bongiwe Mchunu- Job Family- Risk, Audit and Compliance Career Stream Enterprise Wide Risk Management Leadership Pipeline Manage ManagersJob PurposeTo ensure that the Group Risk Framework is embedded; operationalised and implemented. Advise business...


  • Johannesburg, South Africa Nedbank Full time

    **Requisition Details & Talent Acquisition Consultant** - 131543 - Tshegofatso Semenya**Location** - 135 Rivonia Road, Sandton (Nedbank Head Office)**Job Family** - Information Technology **Career Stream** - IT Risk**Leadership Pipeline** - Manage Self: Expert **Job Purpose** - To manage cyber risk management activities to reduce cyber risk for the bank;...


  • Johannesburg, South Africa PC Staffing Solutions Full time

    **PURPOSE OF THE JOB**: To drive the successful delivery of the IT Governance, Risk and Cyber Security, strategy implementation and theeffective running of the Office of the CIO by ensuring the attainment of the Sasria objectives internally and externally. **Qualifications**: - Information Technology (IT) related Bachelors Degree at NQF level 7 as...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Requisition Details & Talent Acquisition Consultant Tshegofatso SemenyaLocation 135 Rivonia Road, Sandton (Nedbank Head Office)Job Family Information TechnologyCareer Stream IT RiskLeadership Pipeline Manage Self: ExpertJob Purpose To manage cyber risk management activities to reduce cyber risk for the bank; Working independently to deliver on work tasks....


  • Johannesburg, Gauteng, South Africa Six Sense Consulting Full time

    Qualification: 8 10 years financial services experience in a senior position Advanced Diplomas/National 1st Degrees Minimum required qualification: Commercial or related degree CISA; CRISK; CISM (or another relevant IT Qualification Cyber experience in a Banking institute Ability to operate at a Senior level Leadership experience leading team. Significant...


  • Johannesburg, South Africa Nedbank Full time

    **Requisition Details & Talent Acquisition Consultant** - REQ 131674 - Tshegofatso Semenya**Job Family** - Risk, Audit and Compliance**Career Stream** - Auditing**Leadership Pipeline** - Manage Self Professional**Job Purpose** - To perform assurance activities in the form of control reviews and risk assessments on various cyber elements in the bank, -...


  • Johannesburg, Gauteng, South Africa PC Staffing Solutions Full time

    PURPOSE OF THE JOB:To drive the successful delivery of the IT Governance, Risk and Cyber Security, strategy implementation and theeffective running of the Office of the CIO by ensuring the attainment of the Sasria objectives internally and externally.Qualifications: Information Technology (IT) related Bachelors Degree at NQF level 7 as recognized by SAQA...


  • Johannesburg, South Africa Nedbank Full time

    **Requisition Details & Talent Acquisition Contact** - REQ 133209- Tshego Semenya- Location: Johannesburg- Closing date: 26 April 2024**Cluster** - Group Risk**Career Stream** - Auditing**Leadership Pipeline** - Manage Self Professional**Position** - Audit Portfolio Manager: Cyber**Job Purpose** - The objective and scope of work of GIA is to determine...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Requisition Details & Talent Acquisition ContactREQ Tshego SemenyaLocation: JohannesburgClosing date: 26 April 2024ClusterGroup RiskCareer StreamAuditingLeadership PipelineManage Self ProfessionalPositionAudit Portfolio Manager: CyberJob PurposeThe objective and scope of work of GIA is to determine whether the Group's systems of internal controls, risk...

  • Client Manager

    4 weeks ago


    Johannesburg, South Africa Aon Full time

    **Job Description**: **Risk Consultant - Cyber** Aon South Africa is recruiting a Risk Consultant in our Cyber team, based on a hybrid bases at our offices in Sandton. Aon South Africa provides integrated solutions to help clients understand and improve their risk profile to increase profitability and protect their interests. The Cyber Solutions team...

  • Client Manager

    4 weeks ago


    Johannesburg, South Africa Aon Corporation Full time

    Posting Description: **Client Manager - Cyber** Aon South Africa is recruiting a Client Manager in our Cyber team, based on a hybrid bases at our offices in Sandton. Aon South Africa provides integrated solutions to help clients understand and improve their risk profile to increase profitability and protect their interests. The Cyber Solutions team works...

  • Cyber Security

    2 weeks ago


    Johannesburg, Gauteng, South Africa Tower Group Full time

    Cyber Security Specialist required on a Fixed Term Contract in Midrand to oversee and manage initiatives within the financial services, insurance, and lending sector.A Deep understanding of cyber security practices and trends as well as leadership skills necessary to guide a team of professionals in implementing and maintaining an effective and comprehensive...


  • Johannesburg, South Africa Specd Full time

    **The Job Requirements**: - Lead and manage the Cyber Security team. - Provide technical expertise and support to the team as needed. - Develop and implement security policies and procedures. - Manage incident response and investigate potential security breaches. - Monitor and develop robust security controls and protocols. - Collaborate with internal and...

  • Senior Risk Manager

    3 weeks ago


    Johannesburg, South Africa Nedbank Full time

    **Requisition Number and Talent Acquisition Number** - REQ: - **131364** - Location: Sandton, Johannesburg- Closing Date: 05 February 2024- Talent Acquisition: - **Saranya Govender** - Job Family- Risk, Audit and Compliance - Career Stream- Enterprise Wide Risk Management - Leadership Pipeline- Manage Self: Professional **Job Purpose** - To ensure that...