Specialist: IT Governance, Risk and Compliance

4 weeks ago


Pretoria, South Africa Secondments Recruitment Full time

**Job Advert Summary**:
The purpose of the position is to develop and maintain the information technology (IT) risk and compliance frameworks, policies, processes and procedures through implementation of best practices and approved IT governance framework. The incumbent is also responsible to monitor compliance to IT security policies and their alignment with the company business objectives, monitor IT disaster recovery plans and execution and their alignment with company business continuity plans and work with risk management and internal audit units to monitor IT internal control system.

**Minimum Requirements**:
GENERAL REQUIREMENTS

Minimum requirement

This position requires a minimum Degree/diploma (NQF 7) in Information Technology/Information Systems or Computer Science PLUS the following certifications:
CISA, CISM, CRISC, CGEIT or CISSP
COBIT Training

Added advantage:
Any post graduate qualification in IT, compliance or Internal/External Audit or risk management will be an advantage.
Minimum 5 years’ experience in IT auditing or ICT governance, risk and compliance in a medium to large organisation, with 3 years managing IT audit teams and working with COBIT 19 processes.

: TECHNICAL COMPETENCIES

IT governance

Reviews information systems for compliance with legislation and specifies any required changes.
Responsible for ensuring compliance with organisational policies and procedures and overall information management strategy.
Implements the governance framework to enable governance activity to be conducted.
Within a defined area of accountability, determines the requirements for appropriate governance reflecting the organisation’s values, ethics and wider governance frameworks.
Communicates delegated authority, benefits, opportunities, costs, and risks.
Assists in reviews of governance practices with appropriate and sufficient independence from management activity.

IT risk management

The planning and implementation of organisation-wide processes and procedures for the management of IT risk to the success or integrity of the business, especially those arising from the use of information technology, inappropriate disposal of IT materials, hardware or data.
Carries out risk management activities within a specific function, technical area or project of medium complexity.
Identifies risks and vulnerabilities, assesses their impact and probability, develops mitigation strategies and reports to the business.
Involves specialists and domain experts as necessary.

Information assurance

The leadership and oversight of information assurance, setting high level strategy and policy, to ensure stakeholder confidence that risk to the integrity of information in storage and transit is managed pragmatically, appropriately and in a cost-effective manner.
Performs technical assessments and/or accreditation of complex or higher-risk information systems.
Identifies risk mitigation measures required in addition to the standard organisation or domain
measures.
Establishes the requirement for accreditation evidence from delivery partners and communicates accreditation requirements to stakeholders.
Contributes to planning and organisation of information assurance and accreditation activities.
Contributes to development of and implementation of information assurance processes.

Information security governance

The management of, and provision of expert advice on, the selection, design, justification, implementation and operation of information security controls and management strategies to maintain the confidentiality, integrity, availability, accountability and relevant compliance of information systems with legislation, regulation and relevant standards.
Explains the purpose of security controls and performs security risk and business impact analysis for medium complexity information systems.
Identifies risks that arise from potential technical solution architectures.
Designs alternate solutions or countermeasures and ensures they mitigate identified risks.
Investigates suspected attacks and supports security incident management.

**Duties and Responsibilities**:
KEY PERFORMANCE AREAS (KPA’s)

Strategic Function

Contribute to the development of IT Risk and compliance frameworks and strategies for company.
Support the implementation of the centre Balance Score Card (BSC) initiatives.

Product Management

IT governance and risk management:
Provide support to the senior leadership team on the service portfolio and governance requirements.
Assess ICT general controls by conducting reviews on various aspects of information security, data privacy and business continuity.
Develop and implement a mitigation plan for ICT general control gaps identified during periodic assessments.
Interpret ICT policies and contribute to development of procedures, standards and guidelines that comply with these.
Develop and maintain a risk register that includes ICT operational, business and strategic risks.
Assess the impact and lik



  • Pretoria, Gauteng, South Africa Frogg Recruitment Full time

    Governance, Risk and Compliance Specialist SandtonOur well-established client is looking for a Governance, Risk and Compliance ("GRC") Specialist with 5+ years of experience with a relevant Risk and Compliance experience.Financial Services, Medical Schemes or Healthcare or Medical Insurance industry.Minimum Requirements:Matric with Bachelor of Commerce (B...


  • Pretoria, South Africa Professional Sourcing Full time

    **Job Overview**: **Specialist: IT Governance, Risk and Compliance Specialist (24-Month Fixed-Term Contract)** - The position is limited to previously disadvantaged groups due to BBBEE requirements._ - _ **Location: Pretoria, Gauteng** There is a newly created job opportunity available at a **highly recognised financial institution** for a **Specialist: IT...


  • Pretoria, South Africa Khomeliwa Consulting Full time

    **SPECIALIST: IT GOVERNANCE, RISK & COMPLIANCE, Pretoria, R857k - R1,2m p/a** Our client, the SA Revenue Service (SARS), seeks to appoint the SPECIALIST: IT GOVERNANCE RISK & COMPLIANCE to be based at their head office in Brooklyn, Pretoria. We are looking for a highly skilled, results driven, self-directed specialist with extensive knowledge and...


  • Pretoria, South Africa H&S Labour Brokers cc Full time

    Our client is currently seeking an experienced Specialist: ICT Governance Risk and Compliance based in Pretoria. The main function of this role is to design, develop, implement and maintain ICT Governance, Risk and Compliance strategic frameworks and activities, data privacy compliance reporting and processes as well as conduct regular governance audits and...


  • Pretoria, South Africa Khomeliwa Consulting Full time

    **SENIOR SPECIALIST: IT GOVERNANCE, RISK & COMPLIANCE, Pta,** **R1,3m - R2,0m per annum** Our client, the SA Revenue Service (SARS), seeks to appoint the SENIOR SPECIALIST: IT GOVERNANCE RISK & COMPLIANCE to be based at their head office in Brooklyn, Pretoria. The incumbent will be a highly skilled, results driven, self-directed senior specialist with...


  • Pretoria, South Africa H & S Labour Brokers Full time

    **Pretoria** **Negotiable from: R733, 000 CTC** Our client is currently seeking an experienced Specialist: ICT Governance Risk and Compliance based in Pretoria. The main function of this role is to design, develop, implement and maintain ICT Governance, Risk and Compliance strategic frameworks and activities, data privacy compliance reporting and...


  • Pretoria, Gauteng, South Africa Secondments Recruitment Full time

    Job Advert Summary:The purpose of the position is to develop and maintain the information technology (IT) risk and compliance frameworks, policies, processes and procedures through implementation of best practices and approved IT governance framework. The incumbent is also responsible to monitor compliance to IT security policies and their alignment with the...


  • Pretoria, Gauteng, South Africa H & S Labour Brokers Full time

    PretoriaNegotiable from: R733, 000 CTCOur client is currently seeking an experienced Specialist: ICT Governance Risk and Compliance based in Pretoria.The main function of this role is to design, develop, implement and maintain ICT Governance, Risk and Compliance strategic frameworks and activities, data privacy compliance reporting and processes as well as...


  • Pretoria, South Africa Kamo Placements Full time

    **JOB DESCRIPTION** - Provide an ICT Governance, Risk and Compliance (GRC) framework, including data compliance and cybersecurity risk aligning ICT with the overall objectives of company. - Coordinate the development and implementation of ICT policies, standards, processes and procedures and ensure that data compliance standards are adhered to throughout the...


  • Pretoria, South Africa Kamo Placement Full time

    Gauteng, Tshwane (Pretoria) - Annually Cost To Company (Market related, Negotiable) To design, develop, implement and maintain ICT Governance, Risk and Compliance strategic frameworks and activities, data privacy compliance reporting and processes as well as conduct regular governance audits and take corrective action on behalf of the company to support...


  • Pretoria, Gauteng, South Africa Khomeliwa Consulting Full time

    SPECIALIST:IT GOVERNANCE, RISK & COMPLIANCE, Pretoria, R857k - R1,2m p/aOur client, the SA Revenue Service (SARS), seeks to appoint the SPECIALIST:IT GOVERNANCE RISK & COMPLIANCE to be based at their head office in Brooklyn, Pretoria.We are looking for a highly skilled, results driven, self-directed specialist with extensive knowledge and experience in the...


  • Pretoria, South Africa Affirmative Portfolios Full time

    **Information Technology** **Pretoria** ***: **JOB OUTLINE** **Specialist: ICT Governance Risk and Compliance** **PERMANENT** **PRETORIA** **Department -** Corporate Services **Sub division** - ICT **Reports to -** Head: ICT & Knowledge Management **Overview**: Design, develop, implement and maintain ICT Governance, Risk and Compliance strategic...


  • Pretoria, South Africa South African Bank Note Company Full time

    **Purpose** To provide specialist governance, risk and compliance (GRC) related management support and advisory services to management across the SABN, whilst maintaining the approved GRC methodologies as aligned to the risk and compliance management frameworks. Develop and maintain ethical practices, business continuity planning, records management, to...


  • Pretoria, South Africa HR Genie Full time

    Our Client a leading organization firm is seeking a Specialist: Compliance Risk to join their team in Pretoria. They offer stability, growth, attractive salary along with excellent benefits and a great working environment. About the Position An Exciting opportunity is available for a highly skilled, results driven, self-directed specialist with extensive...


  • Pretoria, Gauteng, South Africa Khomeliwa Consulting Full time

    SENIOR SPECIALIST:IT GOVERNANCE, RISK & COMPLIANCE, Pta,R1,3m - R2,0m per annumOur client, the SA Revenue Service (SARS), seeks to appoint the SENIOR SPECIALIST:IT GOVERNANCE RISK & COMPLIANCE to be based at their head office in Brooklyn, Pretoria.The incumbent will be a highly skilled, results driven, self-directed senior specialist with extensive knowledge...


  • Pretoria, South Africa Secondments Recruitment Full time

    **Job Advert Summary**: To provide leadership, plan, and manage a large Information and Communication Technology (ICT) Division with regards to ICT Governance, ICT risks and Compliance risks using best industry practices and standards, identify non-conformance and ensure remediation, mitigation and/or positive acceptance of risk. Ensure compliance of all ICT...


  • Pretoria, South Africa SABS Full time

    **Job Advert Summary**: **About SABS** The South African Bureau of Standards (SABS) is mandated to develop, promote and maintain South African National Standards (SANS); promote quality in connection with commodities, products and services; and render conformity assessment services and assist in matters connected therewith. Working for the SABS opens the...


  • Pretoria, Gauteng, South Africa SABS Full time

    Job Advert Summary:About SABSThe South African Bureau of Standards (SABS) is mandated to develop, promote and maintain South African National Standards (SANS); promote quality in connection with commodities, products and services; and render conformity assessment services and assist in matters connected therewith. Working for the SABS opens the mind to the...


  • Pretoria, Gauteng, South Africa South African Bank Note Company Full time

    PurposeTo provide specialist governance, risk and compliance (GRC) related management support and advisory services to management across the SABN, whilst maintaining the approved GRC methodologies as aligned to the risk and compliance management frameworks. Develop and maintain ethical practices, business continuity planning, records management, to safeguard...


  • Pretoria, South Africa HR Genie Full time

    Our Client a leading organization firm is seeking a Senior Specialist: Compliance Risk to join their team in Pretoria. They offer stability, growth, attractive salary along with excellent benefits and a great working environment. About the Position An exciting opportunity is available for a highly skilled, results driven, self-directed senior specialist...