Business Information Security Officer

2 weeks ago


Cape Town, South Africa 5th Dimension Consulting Full time

Jan 30, 2024 | Information Technology (IT)

**Job Role**

Be responsible for identifying and assessing the Cyber and Information Security requirements of the business.

Responsible for the establishment and maintenance of an Information Security Management System (ISMS) and ensure that the appropriate cyber and information security controls are implemented, maintained and aligned with the Group governance requirements (i.e. PSPGs and Group Cyber Resilience Framework).

**Responsibilities**
- Establish and manage an Information Security Programme
- Implement cybersecurity awareness campaigns.
- Participate in Group Information Security Programme (GISP) initiatives.
- Information Security Governance and assurance
- Document processes and artefacts that prove that the relevant governance and assurance processes were implemented as designed.
- Information Security Incident response and Cyber Crisis Management
- Application (including Cloud) and Infrastructure Security, and Cybersecurity Education, Training and Awareness.
- Implement processes and controls as agreed with the Group CISO, GISP and the Business CIO.
- Be responsible for quality and cost effectiveness of delivery of information security services in the BU and will report on these metrics to the GISP.
- Provide regular feedback to Manco on Group-wide information security issues.
- Report to the GISP Manager on new initiatives, plans and progress which will be discussed at the Group Cyber Sub-Committee.
- Review and improve existing IT and Information Risk assessment, reporting and management practices.
- Update the IT and Information Security Risk register.
- Document security risk management action plan. This must include relative priorities of agreed actions; ownership of the actions; agree timelines. Must have an action plan to implement these initiatives.
- Up to date and complete Cloud technology outsourcing and third-party register (where applicable).
- Review and respond to PSPG and risk acceptance requests within the agreed time.
- Clear and timely communication to management and users regarding planned group awareness campaigns. Risk assessment that identifies a requirement for additional awareness or targeted education, training, and awareness interventions.
- Alignment with the Group annual security education, training and awareness plan.
- Document logical access review schedule for Line of Business Applications, review results, facilitate resolution, progress report on resolution of issues that were identified during the reviews.
- Review and respond to all security related Audit findings.
- Report all Cyber Security incidents, or information security incidents (including privacy related incidents) where the compromise was through technology to the Group.
- Be a primary contact for Cyber Security incidents that are identified by the Group Technology.
- Ensure appropriate actions are taken when policy breaches are identified in the BU.
- Assist by facilitating engagement and communication with key stakeholders in the Cluster during a major incident.
- Produce Quarterly Group ISO Forum and GISP reports.
- Ensure that security ‘gates’ are a formal part of the SDLC/ Agile/ relevant solution development methodology.
- Interventions and role-players must be clearly specified.
- Active participation in Group sanctioned industry bodies (e.g. ISF Live, ISACA, FS-ISAC)
- Timeous escalation of new, high or escalating cybersecurity risks.
- Facilitate workshops and risk documentation during Control Self Assessments, or Crown Jewel Risk Assessment processes.
- Find & provide root cause analysis and implement permanent and/or long term fixes for cyber related incidents
- Strong understanding of integration between Workstations and Network/Servers.
- Installations and monitoring of devices using automated tools (e.g. SCCM) & scripting.
- Responsible to maintain a configuration register of assets and licenses.

**Requirements**:
**_Qualifications_**
- Bachelors Degree in Information Technology, Commerce, Science, or Social science.
- In force Cyber and Information Security Certifications (such as CISM, CISSP, CCSP, CISA, ISO 27000 Lead Implementer/ Auditor). **OR**:

- Evidence of current studies towards these certifications.

**_Experience_**
- Minimum 5 years relevant experience.

**_Knowledge and Skills_**
- Project Management
- Reporting and Administration
- Business Requirements Definition
- Compliance Monitoring
- Emerging Technologies



  • Cape Town, South Africa Talent 24 Full time

    **Are you ?** Obsessed with protecting data? Passionate about data privacy and information security? Cool and calm under pressure? Able to work independently? Have an eye for detail? As a global lifestyle management business with presence in over 22 locations globally and more than 1200 employees, to accommodate this growth and ensure that the company...


  • Cape Town, South Africa Hospitality Pro Recruitment Full time

    Are you ? Obsessed with protecting data? Passionate about data privacy and information security? Cool and calm under pressure? Able to work independently? Have an eye for detail? If you answered YES to the above questions, then we want to talk to YOU. We are looking for an Information Security Officer for a leading global lifestyle management company with...


  • Cape Town, Western Cape, South Africa Talent 24 Full time

    Are you ?Obsessed with protecting data? Passionate about data privacy and information security? Cool and calm under pressure? Able to work independently? Have an eye for detail?As a global lifestyle management business with presence in over 22 locations globally and more than 1200 employees, to accommodate this growth and ensure that the company continues to...


  • Cape Town, Western Cape, South Africa Hospitality Pro Recruitment Full time

    Are you ?Obsessed with protecting data? Passionate about data privacy and information security? Cool and calm under pressure? Able to work independently? Have an eye for detail?If you answered YES to the above questions, then we want to talk to YOU.We are looking for an Information Security Officer for a leading global lifestyle management company with a...


  • Cape Town, Western Cape, South Africa Barratt and Co Full time

    Job Overview: Our client is seeking a dynamic and experienced Head of Information Security to lead their information security initiatives. Reporting directly to the Chief Technology Officer (CTO), the Head of Information Security will be responsible for establishing and maintaining a robust information security program to safeguard the confidentiality,...


  • Cape Town, South Africa Barratt and Co Full time

    Job Overview: Our client is seeking a dynamic and experienced Head of Information Security to lead their information security initiatives. Reporting directly to the Chief Technology Officer (CTO), the Head of Information Security will be responsible for establishing and maintaining a robust information security program to safeguard the confidentiality,...


  • Cape Town, South Africa Achievement Awards Group (Pty) Ltd Full time

    Description **Purpose of the role**: The information security analyst, a dedicated and skilled professional, collaborates with teams to design and implement security systems that protect the computer network. With a keen eye for detail, they ensure that the security systems are effective in safeguarding against cyber-attacks. As an information analyst for...


  • Cape Town, Western Cape, South Africa Achievement Awards Group (Pty) Ltd Full time

    Purpose of the role:The information security analyst, a dedicated and skilled professional, collaborates with teams to design and implement security systems that protect the computer network. With a keen eye for detail, they ensure that the security systems are effective in safeguarding against cyber-attacks. As an information analyst for security, they...


  • Cape Town, South Africa VOSS Solutions Full time

    **About the company**: VOSS develops a range of products that are used by the world’s largest communications service providers and enterprises. These market-leading tools are paired with professional services to help our customers achieve the most from their digital workplace platform. We operate in a very dynamic industry and leverage the latest...


  • Cape Town, Western Cape, South Africa VOSS Solutions Full time

    About the company:VOSS develops a range of products that are used by the world's largest communications service providers and enterprises. These market-leading tools are paired with professional services to help our customers achieve the most from their digital workplace platform. We operate in a very dynamic industry and leverage the latest technologies to...

  • Security Manager

    2 weeks ago


    Cape Town, South Africa FIDELITY SECURITY SERVICES Full time

    **Security Manager Position available** Security Company is looking for two (2) Site Security Managers for large Shopping Centres in the Northern Suburbs & Somerset West (Somerset West / Strand / Gordons' Bay) area. **Job Introduction**: This key management role has responsibility for managing the entire security team on site. The individual will report to...


  • Cape Town, Western Cape, South Africa Boardroom Appointments Full time

    Key purpose:Duties and responsibilities: Create information security architectures and designs to secure enterprise information assets in line with architecture standards. Serve as the primary Information Security architecture authority for all project and operational stakeholders, and ensure secure architecture across all solutions and technology...


  • Cape Town, Western Cape, South Africa Barratt and Co Full time

    About the Company: Our client is a leading retail company dedicated to providing quality products and services to its customers. Committed to innovation and excellence, they strive to deliver an exceptional shopping experience while upholding the highest standards of integrity and security.Key Responsibilities: Develop and implement a comprehensive...


  • Cape Town, South Africa Adzuna ZA B C2 Full time

    About the Company: Our client is a leading retail company dedicated to providing quality products and services to its customers. Committed to innovation and excellence, they strive to deliver an exceptional shopping experience while upholding the highest standards of integrity and security.Key Responsibilities:Develop and implement a comprehensive...


  • Cape Town, South Africa Barratt and Co Full time

    About the Company: Our client is a leading retail company dedicated to providing quality products and services to its customers. Committed to innovation and excellence, they strive to deliver an exceptional shopping experience while upholding the highest standards of integrity and security.Key Responsibilities: Develop and implement a comprehensive...


  • Cape Town, South Africa Barratt and Co Full time

    About the Company: Our client is a leading retail company dedicated to providing quality products and services to its customers. Committed to innovation and excellence, they strive to deliver an exceptional shopping experience while upholding the highest standards of integrity and security.Key Responsibilities:Develop and implement a comprehensive...


  • Cape Town, South Africa Barratt and Co Full time

    About the Company: Our client is a leading retail company dedicated to providing quality products and services to its customers. Committed to innovation and excellence, they strive to deliver an exceptional shopping experience while upholding the highest standards of integrity and security.Key Responsibilities:Develop and implement a comprehensive...


  • Cape Town, South Africa Barratt and Co Full time

    About the Company: Our client is a leading retail company dedicated to providing quality products and services to its customers. Committed to innovation and excellence, they strive to deliver an exceptional shopping experience while upholding the highest standards of integrity and security.Key Responsibilities: Develop and implement a comprehensive...


  • Cape Town, South Africa The Talent Room Full time

    Our client is currently looking for an **Head of Information Security.** This is a **remote role.** **Key Responsibility Areas**: *** - Responsible for all information security, system backups and disaster recovery procedures. - Develop and implement the information security strategy and ensure that it aligns with the overall - business objectives of the...


  • Cape Town, South Africa Boardroom Appointments Full time

    **Key purpose**: We are seeking an Information Security Analyst to join our Information Security team and ensure that the tactical security measures for our infrastructure have the highest level of security. With a robust strategy focusing on People, Process and Technology, we believe that our culture and the quality of our people are our greatest...