It: Governance, Risk

3 days ago


Pretoria, South Africa Isilumko Staffing Full time

Recruiting a **Governance, Risk & Compliance Security Analyst** to work in - Information Technology: IT Security and Governance (Long Term Insurance Industry). This is a perm position.

**Duties and responsibilities**:
**Audit and Security**
- Ensure security audits are conducted.
- Conduct follow up on security assessments.
- Conduct follow ups on IT audits;
- Develop and implement Cyber Security Framework/s
- Develop; Implement & Manage Vulnerability Management Process.
- Conduct follow up on cybersecurity penetration test & vulnerability assessment as per process.
- Be the 1st point of contact for both internal/ external auditors
- Conduct follow ups on IT audits & ensure closure on findings
- Develop & implement a security awareness program for the organization, agents, 3rd parties & Sales Representatives.
- Reports on security assessments & IT audits.

**Governance**
- Evaluate, enhance & continuously improve IT Governance
- Evaluate policies, procedures, & processes compliance with regulations
- Develop systems & processes to improve our IT governance.
- Develop policies, processes & participate in acquiring technology & implementation of said policies, processes to improve IT GRC
- Report on the regulatory environment & Company compliance threats
- Guide on how legislation & regulations should be implemented.

**Risk Management**
- Provide a Statement of Assurance for the IT in the Combines assurance
- Continuously liaise with the Group Risk Management on new developments (internal) evolution of industry (external) & the risk it introduces, the risk management & mitigation processes & strategies
- Works with IT, Information Security & Business stakeholders to determine the acceptable level of risk for the organization
- Assist in performing Third Party Risk Assessments for new & existing vendor tools, on-premise implementations, & third parties with access to the environment.
- Assist in maturing the Third-Party Risk Management program by defining security controls required of vendors.
- Articulate identified risks to the business for remediation, mitigation & sign-off.
- Identify, monitor & report on Key Risk Indicators

**Compliance and Monitoring**
- Monitor compliance to Cyber Security Framework based on ISO27001/2 & NIST
- Monitor compliance to IT Governance Framework based on ISO 38500; King IV; COBIT
- Monitor compliance to Enterprise Risk Management Framework based on ISO 31000
- Monitor Compliance to Risk Manage Joint Standard with FSCA & Prudential Authority
- Monitor Compliance to Cybersecurity & Resilience Joint Standard with FSCA & Prudential Authority
- Perform assessments of adherence to standards
- Ensure the IT & Information Security team stays abreast of new regulatory, legal, and/or compliance data security requirements.
- Monitor compliance with IT Policies
- Ensure that processes are implemented & followed

**Software Licensing**
- Consolidating & identifying an organization’s license entitlement
- Working out upgrades, downgrades & technology guarantees
- Auditing & managing license agreements
- Dealing with ad-hoc SAM requests
- Negotiate new software contracts & agreements
- Re-harvest unused licenses
- Optimize current entitlement allocation
- Completing projected license modeling exercises for internal projects & to meet organizational growth
- Identifying, implementing & managing software processes & policies around:
**Formal Education**
- Matric
- Diploma/Degree in an IT-related field

**Technical/Legal Certification**
- ITIL
- COBIT Implementer
- CGEIT
- CRISC
- ISO27001 Foundation Certificate
- Certified Software Asset Manager

**Experience**
- IT experience: 10 years
- Insurance **industry experience: 5 years** (advantage)
- Governance Risk and Compliance Experience: 5 years
- Proven experience in implementing Frameworks, Processes & Policies



  • Pretoria, South Africa Secondments Recruitment Full time

    **Job Advert Summary**: The purpose of the position is to develop and maintain the information technology (IT) risk and compliance frameworks, policies, processes and procedures through implementation of best practices and approved IT governance framework. The incumbent is also responsible to monitor compliance to IT security policies and their alignment...


  • Pretoria, South Africa Health Informations Systems Program Full time

    **Vacancies: Health Information Systems Program South Africa NPC (2003/005786/08)** **Location***:Hybrid in South Africa **Start Date **:As soon as possible **About HISP-SA** HISP-SA provides a wide range of digital health solutions including clinical decision support, laboratory systems, mobile health and data management. Our comprehensive suite of...


  • Pretoria, South Africa Professional Sourcing Full time

    **Job Overview**: **Specialist: IT Governance, Risk and Compliance Specialist (24-Month Fixed-Term Contract)** - The position is limited to previously disadvantaged groups due to BBBEE requirements._ - _ **Location: Pretoria, Gauteng** There is a newly created job opportunity available at a **highly recognised financial institution** for a **Specialist: IT...


  • Pretoria, Gauteng, South Africa Absa Group Limited Full time

    Job SummaryThe Absa Group Limited is seeking a Risk Governance Specialist to join its team.Key Responsibilities:Develop and maintain risk management processes and tools to ensure accurate reporting of risk information.Conduct regular risk assessments and control evaluations to identify potential risks and recommend mitigation strategies.Collaborate with...


  • Pretoria, Gauteng, South Africa Absa Group Limited Full time

    Job SummaryWe are seeking a Risk Governance Strategist to join our team at Absa Group Limited. In this role, you will be responsible for developing and implementing risk management frameworks, conducting risk assessments, and providing insights to senior management to support informed decision-making.Key ResponsibilitiesRisk Management Frameworks: Develop...


  • Pretoria, South Africa Kamo Placement Full time

    Gauteng, Tshwane (Pretoria) - Annually Cost To Company (Market related, Negotiable) To design, develop, implement and maintain ICT Governance, Risk and Compliance strategic frameworks and activities, data privacy compliance reporting and processes as well as conduct regular governance audits and take corrective action on behalf of the company to support...


  • Pretoria, South Africa Kamo Placements Full time

    **JOB DESCRIPTION** - Provide an ICT Governance, Risk and Compliance (GRC) framework, including data compliance and cybersecurity risk aligning ICT with the overall objectives of company. - Coordinate the development and implementation of ICT policies, standards, processes and procedures and ensure that data compliance standards are adhered to throughout the...


  • Pretoria, South Africa Palesa Mbali Group Full time

    Our client, an established company in the insurance industry, is seeking an experienced IT Security, Governance, Risk and Compliance Analyst to evaluate, enhance and continuously improve systems and processes, monitoring and reporting on risks identified. **Key Activities**: - Security Audits - IT Governance - Risk Management - Compliance and Monitoring -...


  • Pretoria, South Africa SABS Full time

    **Job Advert Summary**: **About SABS** The South African Bureau of Standards (SABS) is mandated to develop, promote and maintain South African National Standards (SANS); promote quality in connection with commodities, products and services; and render conformity assessment services and assist in matters connected therewith. Working for the SABS opens the...


  • Pretoria, Gauteng, South Africa Absa Group Limited Full time

    Job OverviewThe Absa Group Limited is seeking a highly skilled Senior Governance Risk and Compliance Specialist to join its team in Sandton, Gauteng. This role will play a critical part in ensuring the embedment of compliance risk management governance, risk, and controls into CIB Compliance processes.


  • Pretoria, Gauteng, South Africa IT Ridge Technologies Full time

    About the RoleWe are seeking an experienced ESG Specialist to join our team at IT Ridge Technologies. This is a unique opportunity to contribute to the development and implementation of our Environmental, Social, and Governance (ESG) strategy.Key Responsibilities:Develop and implement ESG plans across various business units to ensure alignment with company...


  • Pretoria, South Africa South African Qualifications Authority (SAQA) Full time

    A qualification in the legal field at NQF Level 9 on the 10 Level NQF and registration with the Chartered Governance Institute of Southern Africa will be advantageous. A minimum of 3 years senior management level experience or 10 years management experience is required with knowledge of Board and Board committee support, providing legal or corporate...


  • Pretoria, Gauteng, South Africa Absa Group Limited Full time

    Job Title: Senior Operational Risk and Governance SpecialistWe are seeking a highly skilled and experienced Senior Operational Risk and Governance Specialist to join our team at Absa Group Limited.


  • Pretoria, Gauteng, South Africa IT Ridge Technologies Full time

    Company OverviewIT Ridge Technologies is a leading technology company that specializes in providing innovative solutions to businesses. Our mission is to empower organizations with cutting-edge technology and expertise to drive growth and success.About the RoleWe are seeking an experienced Strategic Data Governance Lead to join our team. The successful...


  • Pretoria, Gauteng, South Africa South African Library for the Blind Home Full time

    Job OverviewThis senior role is responsible for providing oversight and guidance to the SALB Accounting Authority on governance, risk management, and internal controls.


  • Pretoria, South Africa South African Reserve Bank Full time

    The main purpose of this position is to develop and drive the implementation of information and technology (IT) governance frameworks, standards and processes, continually improve the maturity of IT governance at the South African Reserve Bank (SARB) and to ensure alignment to enterprise governance and the relevant legislative/regulatory...


  • Pretoria, South Africa Affirmative Portfolios Full time

    **Director: Information Security, Governance & Risk - Pretoria -** **All-inclusive remuneration package R1 073 187.00** **Purpose of the Post**: **Key Performance Areas**: - Establish and maintain an Information Security Management System (ISMS). - Define and manage information security risk treatment plan. - Protect against malware and monitor and review...


  • Pretoria, South Africa South African Bank Note Company Full time

    **Purpose** To provide specialist governance, risk and compliance (GRC) related management support and advisory services to management across the SABN, whilst maintaining the approved GRC methodologies as aligned to the risk and compliance management frameworks. Develop and maintain ethical practices, business continuity planning, records management, to...

  • Market Risk Analyst

    4 months ago


    Pretoria, South Africa IT Ridge Technologies Full time

    Job Overview:The purpose of this position is to assess, monitor, and manage market risk exposures in alignment with the organization’s risk tolerance.Responsibilities:Analyse, assess, and evaluate financial, market, and business information to report on market risks.Facilitate informed decision-making on foreign exchange, gold, and other fixed-income...

  • Market Risk Analyst

    4 months ago


    Pretoria, South Africa IT Ridge Technologies Full time

    Job Overview:The purpose of this position is to assess, monitor, and manage market risk exposures in alignment with the organization’s risk tolerance.Responsibilities:Analyse, assess, and evaluate financial, market, and business information to report on market risks.Facilitate informed decision-making on foreign exchange, gold, and other fixed-income...