Head of Information Security

3 weeks ago


Centurion, South Africa OUTsurance Full time

Company Description

OUTsurance is a customer-centric financial services company with a global foot print. We are vibrant, successful and values orientated with an awesome dynamic culture encapsulated by the ethos that clients and staff “always get something OUT.” Our success can be attributed, amongst other things, to the outstanding people that work for us.

Adversaries are working around the clock to beat defences, compromise networks and steal sensitive company data. To stay ahead of the threats we are looking for an inspired, creative and dedicated Head of Information Security to head up the Information and Cyber security function that is responsible for all strategic security planning and control oversight to ensure that effective security related risk mitigation takes place throughout the company and as governed by the Group Cyber Security Control Framework.

Job Description
**Responsibilities**

As the Head of Information Security, you will be responsible for but not limited to the below:

- Leadership, management and mentoring of the Information security area and its respective teams.
- The maintenance and maturing of the security operating model and its underpinning processes and practices.
- Responsible for defining, prioritising and driving the overarching yearly Cyber Security plan as well as the supporting plans, e.g. security pen test and security awareness programs.
- The development and maintenance of security standards, guidance and playbooks.
- Accountable for the effective and reliable identification, detection and resolution of Cyber security incidents.
- Accountable for preparation of the quarterly Cyber Security Forum presentations as well as chairing the Forum.
- Working together with the relevant teams to complete questionnaires, assessments and impact studies related to requests from e.g. the Regulator & Group Cyber benchmarking assessments.
- Responsible for managing and monitoring third parties supplying Cyber security solutions and services.
- The measurement and reporting on the efficiency and effectiveness of cyber security controls.
- The identification and monitoring of environmental, threat, and technology trends to optimise the effective short
- and medium-term deployment of cyber security controls, contributing to the strategic security roadmap.

**Competencies**

The successful individual would need to demonstrate the below listed competencies at an advanced level:

- 'Can do' attitude, comfortable dealing with ambiguity, resilient, strong team player, committed to continuous improvement
- Very strong interpersonal skills and the ability to build relationships
- Problem-solving with strong decision-making mind-set
- Takes initiative and works under own direction
- Engages professionally
- Adapts and responds positively to change
- The ability to multitask and handle stress to meet project deadlines
- Enthusiasm, energy, determination and a passion for improving client experience through digital platforms
- Works meticulously always demonstrating a very high level of attention to detail
- The ability to multitask and handle stress
- Strong problem solving skills and willingness to roll up one’s sleeves to get the job
- Excellent written and verbal communication skills
- Ability to communicate effectively with executive management

Qualifications
- 9 years’ experience in Cyber Security of which at least 5 years should’ve been in leading technical and operational security functions and teams.
- Strong security and technical background.
- Practical experience to implement industry best practices and frameworks.
- Strong people skills and experience of building, managing and upskilling teams of specialists to meet the objectives of the Cyber security plan.
- Work closely with the IT Risk Team to ensure Cyber risks are captured & maintained in line with the Group Risk Management framework.
- Relevant security accreditation and certifications, e.g. CISSP, CISM, CISA, CCSP.
- Your technical background should cover a wide spectrum of security engineering and operational security skill sets. This must include but is not limited to experience (preferably hands on and technical experience) in the following areas:

- **_ Cyber Engineering:_**_ including gateway firewalls, Web Application Firewalls (WAFs), MFA, Internet proxies and security architecture & design._
- **_ Offensive Security:_**_ Infrastructure, internal, external, web, mobile, API and cloud pen testing._
- **_ Application Security:_**_ Secure coding solutions, training and awareness on secure coding best practices._
- **_ Defensive Security: _**_Cyber incident response & management, including incident breach simulations._
- **_ Cyber Operations:_**_ Endpoint security (e.g. security client maintenance & endpoint hardening), Vulnerability management, EDR management, log retention strategy & implementation._
- **_ Cyber Governance: _**_Data loss prevention, maintain & expand Cyber security metrics, 3rd party secu



  • Centurion, South Africa OUTsurance Full time

    Company Description OUTsurance is a customer-centric financial services company with a global foot print. We are vibrant, successful and values orientated with an awesome dynamic culture encapsulated by the ethos that clients and staff “always get something OUT.” Our success can be attributed, amongst other things, to the outstanding people that work for...


  • Centurion, South Africa OUTsurance Full time

    Company Description OUTsurance is a customer-centric financial services company with a global foot print. We are vibrant, successful and values orientated with an awesome dynamic culture encapsulated by the ethos that clients and staff “always get something OUT.” Our success can be attributed, amongst other things, to the outstanding people that work for...


  • Centurion, South Africa The Right Company Full time

    Executive Information Security and Compliance, Security Risk with Governance Salary - On Application The Executive will report to the Board and Subsidiaries Required Certification / Professional Registration Required at least one of: CISM, CRISC CISSP, SABSA, CoBIT Optional: CISA, CoBIT, TOGAF, ITIL **Qualifications**: Relevant 3 year Degree in IT or...


  • Centurion, South Africa Hire Power Recruitment Full time

    The Company delivers sustainable, integrated health solutions that meet the needs of clients in different segments to maximise lifetime client value. They build and maintain a culture of innovation and create value through unique insights of how to achieve specific outcomes by using a defined set of Health capabilities. This is an entry-level Risk Management...


  • Centurion, South Africa MECS Africa Full time

    Development of Information Security Services capability and initiatives in support of the IT Strategy and EA Planning / Blueprinting processes. - Advise on and ensure the effective management of information technology and business processes access and to communicate feedback to enable associated security risk management. - Perform Vulnerability testing and...


  • Centurion, South Africa Hello Group Recruitment Full time

    **Job Advert Summary**: As the Information Security Manager, you will be responsible for overseeing and implementing the information security program within our organization. You will play a critical role in safeguarding our digital assets, protecting sensitive information, and ensuring compliance with relevant regulations and standards. **Minimum...


  • Centurion, South Africa Future Africa Consulting (Pty)Ltd Full time

    Information Security Services - Development of Information Security Services capability and initiatives in support of the IT Strategy and EA Planning / Blueprinting processes. - Advise on and ensure the effective management of information technology and business processes access and to communicate feedback to enable associated security risk management. -...


  • Centurion, South Africa Bontle consulting Full time

    **INFORMATION SECURITY SPECIALIST (12 MONTHS FIXED-TERM CONTRACT)** The purpose of the job is to plan, manage, and administer the Organisation's network security. Ensure all network components are managed in accordance with approved guidelines and processes to ensure compliance. As an Information Security Specialist, you will be responsible to: - Design,...


  • Centurion, South Africa World Wide Industrial and Systems Engineers Full time

    **Job Specifications**: **The Cyber Security Technician’s duties will include, but are not limited to**: - Performing disaster recovery operations and data backups when required. - Protecting data, software, and hardware by coordinating, planning, and implementing network security measures. - Troubleshooting, diagnosing, and resolving hardware, software,...


  • Centurion, South Africa Mediro ICT Full time

    Responsible for developing and managing Information Systems cyber security, including disaster recovery, database protection and software development. Develop and deliver Information Security standards, best practices, architecture and systems to ensure information system security across company. Ensure that all policies developed are in line with...


  • Centurion, South Africa Exxaro Recruitment Full time

    **Job Advert Summary**: **PURPOSE**: - Manage security information and support the business by providing accurate, relevant, and timely business intelligence to support the overall security and business objectives. Provide input in the development and implementation of security strategies, policies, protocols and procedures (including emergencies), and...


  • Centurion, South Africa Affirmative Portfolios Full time

    Information Security Specialist (12 Months Fixed-Term Contract) Centurion IT Centurion - Gauteng Information Security Specialist (12 Months Fixed-Term Contract) Centurion **Salary**: R75k pm Overview: The purpose of the job is to plan, manage, and administer the company network security. Ensure all network components are managed in accordance with...


  • Centurion, South Africa Thusa Batho Labour Solutions Full time

    The purpose of the job is to plan, manage, and administer the CMS network security. Ensure all network components are managed in accordance with approved guidelines and processes to ensure compliance. As an Information Security Specialist, you will be responsible to: - Design, install and manage security mechanisms that protect the CMS network and...


  • Centurion, South Africa We are looking for a Head of Operations to TESS team. Our Head of Operations is Responsible for crea Full time

    Lead our Educational Support team and help us build learning communities that thrive._ Same-old education? No thank you. We want more, and so we do things differently at Thrive.ed. Our vision is to develop learning communities that equip our students, teachers and parents to thrive. Individuals that thrive build and maintain meaningful relationships with...


  • Centurion, South Africa G4S Full time

    Job Introduction G4S Secure Solutions (SA), a leading provider of integrated security management solutions, has a vacancy for a Logistics Administrator based at our operations in Centurion,reporting to the Head of Procurement & Logistics. The successful incumbent is a self-starter with a proven track record in maintaining company policy, adopting best...

  • Technical Head

    7 months ago


    Centurion, South Africa Smart Talent Full time

    As an Executive Search and Career Consultant specializing in the niche market of Supply Chain, we represent some of the top leaders and are called upon by blue chip organizations in the country to secure talent and assist them in building high performance teams. A leading end-to-end transport solutions company is looking for a Technical Head -Infrastructure...

  • Technical Head

    7 months ago


    Centurion, South Africa Smart Talent Full time

    As an Executive Search and Career Consultant specializing in the niche market of Supply Chain, we represent some of the top leaders and are called upon by blue chip organizations in the country to secure talent and assist them in building high performance teams. A leading end-to-end transport solutions company is looking for a Technical Head -...


  • Centurion, South Africa Secondments Recruitment Full time

    **Job Advert Summary**: The Senior Security Assistant (SSA) contributes to the day-to-day management and execution of PSEC’s regional operations to ensure the security and safety of RDGS personnel, property and information. The SSA will fully support the Chief Regional Security Officer in the execution of security responsibilities including: physical...

  • Security Architect

    7 months ago


    Centurion, South Africa Quarphix Full time

    Senior Security Architect **Core Description** **Competencies**: **FUNCTIONAL KNOWLEDGE**: Advanced Information Security Technologies; Information Analytics and Methods for Security; Change Management and Change Risk; Information Risk Assessment and Management; Security Standards, Policies and Practices; Information Risks within Systems and IT...

  • IT Security Manager

    3 weeks ago


    Centurion, South Africa H & S Labour Brokers Full time

    **_**_ - *_* **_**_ - *_* **_Centurion_** **_Financial (Parastatal)_** **_Salary TBA_** Our client is currently seeking to employ an individual with strategic leadership, project management, and strong communication skills with the ability to work under pressure in a dynamic technological environment to plan and manage the development and implementation...