Ict Information Security and Risk Specialist

1 week ago


Midrand, South Africa DBSA Full time

The purpose of this role is to perform information security responsibilities such as developing, coordinating and implementing policies, standards, and procedures to safeguard the bank’s information systems and data. Ensuring that information security policy is aligned with the bank’s business strategy & benchmarked with best practice.

**Strategic Focus**:
Define and implement ICT Security strategy for the bank

Establish a framework for the implementation of an Information Security Management System (ISMS) that reflects the bank’s security needs and objectives

Develop ICT Security Policies, Processes, Procedures and Standards in line with industry benchmarks and where applicable best practices

Oversees the planning, execution and management of projects related to compliance, control assurance, risk management, security and infrastructure / information asset protection

Provide strategic / tactical direction and consultation on information security and compliance

Design an effective ICT Security Architecture

**Key Responsibilities**:
**Financial Management**:
Develop an effective stakeholder Service Level Agreement Management for ICT Security

Advise ICT management on cost effective solutions for Information Security solutioning

Implement cost effective ICT Security solutions

**Information Security Management**:
Design and coordinate the processes for the detection, investigation and correction of ICT security breaches and incidents

Assess and implement the controls needed to protect the bank’s information as well as information from third parties

Plan and participate in ICT Continuity and Disaster Recovery process;
Perform periodic reporting to key stakeholders regarding the bank’s ICT Security state

Provide ICT security advisory services to the different BU’s within the bank

Initiates and conduct independent corporate security risk assessments

Coordinate corrective actions for identified security vulnerabilities and gaps.

Work with the CIO, Executive team, and Group Risk Management to determine acceptable levels of risk for the enterprise (Risk Champion)

Maintain ICT Risk Management at strategic and operational level

Ensure effectiveness and maturity growth of the bank’s ICT Security Program

Ensure ICT Assets are safeguarded to protect the information

Ensure privacy and security of data and segregation of duties in maintaining confidentiality, availability and integrity of information

Develop and provide appropriate awareness training / plans and communication

***Capacity Building**:
Conduct continuous market research on trends and best practice relating to ICT Security

Establish communication programs that will raise and maintain awareness of information security throughout DBSA

Conduct awareness sessions to ensure that DBSA staff are educated of their roles and responsibilities relative to information security governance

**Expertise & Technical Competencies**:
**QUALIFICATIONS & EXPERIENCE**

B. degree (IT/Information systems) or BTech in IT or Information Security

Post graduate qualification in ICTSecurity information Management will be advantageous.

4 - 6 Years of experience in ICT Information Security Management and / or IT Risk Management

**Skills & Knowledge**

Relevant certification (CISM, CISA, CRISC)

Strong technical background and knowledge

Exposure to cyber risk frameworks (NIST, ISF, Iso27001/2, FFIEC)

Ability to create metrics, presentations to various stakeholders

IT Governance and risk management experience

Practical experience in IT or Information Security and Information Risk management role.

Exposure to cyber security or SOC monitoring.

Optional: CoBIT, TOGAF, ITIL

Must be analytical and investigative.

Must display good decision making and problem-solving skills.

**TECHNICAL COMPETENCIES**

**Planning & Organizing**

Is relied on to help others plan and organise their workload.

Effectively uses advanced time management processes to deal with high workload and tight deadlines.

Organises, prioritises and schedules tasks so they can be performed within budget and with the efficient use of time and resources.

Achieves goals in a timely manner, despite obstacles encountered, by organising, reprioritising and re-planning

**Negotiation Skills**

Possesses an understanding of various unspoken communications from other parties and can decipher hidden agendas.

Is able to successfully conclude negotiations which require the development of an emotional as well as factual argument.

Is able to develop mutually-beneficial potential solutions.

**Written Communication**

Understands that different writing styles are required for different documents or audiences.

Write effective correspondence, prepares questions and reports, statements of circumstance and briefing notes.

Reviews others’ documents for clarity and impact.

Has a solid mastery of writing principles such as grammar, sentence construction etc.

**Required Personal Attributes**:
**BE



  • Midrand, Gauteng, South Africa Merafong ICT Full time

    Merafong ICT seeks an Information Security Analyst to join its team. As a critical member of the organization, you will play a key role in ensuring the security and integrity of our systems and data.Key Responsibilities:Conduct incident response and management activities to identify, contain, and remediate security incidents.Develop and maintain threat...


  • Midrand, Gauteng, South Africa Merafong ICT Full time

    About the OpportunityWe are seeking an Information Security Engineer to join our team at Merafong ICT. As a key member of our cybersecurity team, you will be responsible for identifying and analyzing sophisticated threats and vulnerabilities using advanced tools and techniques.Key Responsibilities:Advanced Threat Detection: Identify and analyze sophisticated...


  • Midrand, Gauteng, South Africa Careers at DLK Group Full time

    Careers at DLK Group is seeking an Information Security Specialist to join our team. As an Information Security Specialist, you will be responsible for protecting our organization's digital assets and networks from threats and unauthorized access.Key ResponsibilitiesNetwork Security:Implement and maintain a robust security posture across our network...


  • Midrand, Gauteng, South Africa Merafong ICT Full time

    Cybersecurity Operations SpecialistThe ideal candidate for this role will have 3-5 years of experience in a SOC environment and prior work in IT or cybersecurity. You will be responsible for overseeing security systems and alerts to detect unusual activity, reviewing and investigating alerts generated by security tools, and implementing strategies to contain...


  • Midrand, South Africa SACAA Full time

    **OVERALL, PURPOSE OF THE JOB** Responsible for implementing, managing, and maintaining the security measures that protect the organization’s ICT systems and infrastructure. **Security System Management** - Configure, manage, and monitor security tools, including firewalls, antivirus software, intrusion detection/prevention systems, and encryption...


  • Midrand, Gauteng, South Africa Merafong ICT Full time

    About Our CompanyMerafong ICT is a leading provider of cybersecurity solutions. We are committed to helping our clients protect their networks and systems from cyber threats. As a Senior Network Security Professional with Merafong ICT, you will have the opportunity to work on a wide range of challenging projects and develop your skills and expertise in the...


  • Midrand, South Africa RJPersonnel Full time

    1years - Manage, install, configure, upgrade operating systems and software. - Using standard business and administrative packages - Install, assemble, configure computers, monitors, network infrastructure and peripherals, such as cables and printers. - Help in maintaining departmental LAN. - Analyze and monitor the ICT connectivity environment. Advise on...


  • Midrand, Gauteng, South Africa Merafong ICT Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Specialist to join our team at Merafong ICT. As a key member of our cybersecurity team, you will be responsible for identifying and analyzing sophisticated threats and vulnerabilities using advanced tools and techniques.Key Responsibilities:Advanced Threat Detection: Identify and analyze...

  • Ict Support

    7 days ago


    Midrand, South Africa IIE MSA and IIE Varsity College Full time

    **Direct Reporting Line**: Head: ICT Support **Varsity College** is an educational brand of The Independent Institute of Education (The IIE). The IIE enjoys the reputation of being at the forefront of private higher education in South Africa and is registered with the Department of Higher Education and Training (DHET) to provide higher education...


  • Midrand, South Africa A 1L Realization (Pty) Ltd Full time

    Role purpose: The primary purpose of the role is to work within a team of Secure by Design and Security Architecture specialists, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Clients policies and standards. In performing this role you will: - Identify potential cyber security risks for new...


  • Midrand, South Africa DBSA Full time

    The role of the Infrastructure Specialist is to ensure that the Banks’ Information Communication and Technology infrastructure services are available in line with the Service Level Agreement between the Information Communication and Technology Unit and business. **Key Responsibilities**: - Contribute to the formulation of Request for Proposals, Service...

  • Head: ICT Solutions

    5 days ago


    Midrand, Gauteng, South Africa Six Sense Consulting Full time

    QUALIFICATIONS & EXPERIENCE:Minimum Requirements:A Postgraduate Diploma or Degree in Information Technology, Computer Science, Commerce or Engineering.A minimum of 5 years experience in ICT Technology at a management level.A minimum of 5 years in managing medium to large-sized projects in an ICT environment.A minimum of 3 years of management experience,...


  • Midrand, Gauteng, South Africa Merafong ICT Full time

    About the TeamOur team at Merafong ICT is made up of experienced professionals who are passionate about cybersecurity. We are dedicated to helping our clients protect their networks and systems from cyber threats. As a Threat Intelligence Lead with Merafong ICT, you will have the opportunity to work on a wide range of challenging projects and develop your...

  • Esd Administrator

    3 days ago


    Midrand, South Africa Mediro ICT Full time

    Administration & Co-ordination Provide analytical, project management, and administrative support in the development of an ESD ICT Sector Strategy as a subset of the company Group. To deliver strategies and plans to identify and access technology and supply chain suppliers and channel partners In managing delivery by ICT hubs/ incubators supported by the...


  • Midrand, Gauteng, South Africa Merafong ICT Full time

    Threat Intelligence AnalystThe Threat Intelligence Analyst will be responsible for utilizing threat intelligence feeds to stay updated on the latest threats and vulnerabilities. This includes integrating relevant information into incident response strategies and collaborating with IT teams to ensure a unified approach to cybersecurity.This position requires...


  • Midrand, South Africa Construction Education & Training Authority Full time

    **JOB PURPOSE AND PROFILE** The ICT Project Manager is responsible for overseeing and guiding Information and Communications Technology (ICT) projects from initiation to completion, ensuring they are completed on time, within scope, and on budget. The role demands collaboration with cross-functional teams and stakeholders, ensuring the alignment of ICT...


  • Midrand, Gauteng, South Africa Merafong ICT Full time

    Security Operations Center Analyst Level 2Job ResponsibilitiesIncident Response and ManagementIncident Triage: Assessing incoming security alerts and determining the appropriate response based on the severity and nature of the threat. This includes prioritizing incidents that require immediate attention.Investigation: Conducting in-depth analysis of...


  • Midrand, South Africa Vodafone Full time

    **.**: **When it comes to igniting a team of trailblazers, we're number 1.** The number 1 Top Employer in South Africa. Certified by the Top Employer Institute 2024. **Role Purpose/Business Unit**: - The primary purpose of the role is to work within a team of Secure by Design and Security Architecture professionals, in collaboration with the Privacy and...


  • Midrand, Gauteng, South Africa Merafong ICT Full time

    Advanced Threat Detection: Identify and analyse sophisticated threats and vulnerabilities using advanced tools and techniques.Incident Response Leadership: Lead and coordinate response efforts for major security incidents.Forensic Analysis: Conduct deep-dive forensic analysis to understand the root cause and impact of security breaches.Threat Hunting:...


  • Midrand, Gauteng, South Africa Merafong ICT Full time

    Incident Response ExpertWe are seeking an experienced Incident Response Expert to join our team. In this role, you will conduct in-depth analysis of escalated security incidents, utilizing various tools and methodologies to uncover the root causes and potential impacts.As a member of the Merafong ICT team, you will work collaboratively with IT and other...