Head IT Security

2 weeks ago


Johannesburg, South Africa Network Contracting Full time

**HEAD: IT SECURITY, GOVERNANCE, RISK & COMPLIANCE**
The Head of IT Security and GRC is responsible for overseeing the organisation's information security program and ensuring compliance with governance, risk management, and regulatory requirements. This senior leadership role will develop and implement a comprehensive security strategy, manage a team of IT security and GRC professionals, and work closely with various departments to minimize risks and protect the organisation from potential security threats. The Head of IT Security and GRC will also be responsible for driving a security-aware culture and maintaining a strong governance framework throughout the organisation.

**Key performance areas / Key responsibilities**:

- Security Strategy and Governance: Develop and maintain a comprehensive IT security and GRC strategy, aligned with the organisation's goals and objectives, ensuring a strong governance framework is in place.
- Policy and Compliance Management: Establish, review, and enforce IT security and GRC policies, procedures, and standards, ensuring they comply with industry best practices and regulatory requirements.
- Risk Assessment and Management: Regularly assess, identify, and prioritize potential security risks and vulnerabilities, implementing appropriate risk mitigation measures and controls.
- Incident Response and Management: Lead the organisation's incident response team, ensuring efficient detection, containment, and resolution of security incidents, as well as conducting post-incident analysis to improve response strategies.
- Security Awareness and Training: Promote a security-aware culture within the organisation through continuous education, training, and awareness programs for employees at all levels.
- Performance Monitoring and Reporting: Regularly monitor and evaluate the effectiveness of the IT security and GRC programs, providing reports to senior leadership on progress, risks, and areas of improvement.
- Vendor and Third-Party Management: Ensure that external vendors, partners, and service providers comply with the organisation's security policies, standards, and regulatory requirements.
- Audit and Assessment: Oversee IT security and GRC audits, vulnerability assessments, and penetration testing, ensuring timely remediation of identified issues and compliance with relevant regulations.
- Budget and Resource Management: Manage the budget and resources for the IT Security and GRC department, ensuring effective allocation and utilization to support the organisation's security goals.
- Continuous Improvement and ownership: Keep abreast of emerging security trends, platforms, technologies, and threats, and make recommendations for improving the organisation's security posture and GRC framework.
- Gap Identification and Solution Implementation: Proactively identify gaps in the organisation's IT security and GRC framework by conducting thorough assessments and research. Evaluate, select, and implement appropriate solutions to mitigate these gaps, ensuring seamless integration and ongoing maintenance to strengthen the organisation's security posture and compliance efforts.
- Ownership and Accountability: Assume full ownership and accountability for the organisation's IT security and GRC programs, ensuring that all initiatives are executed effectively and in accordance with established policies, procedures, and standards. Act as the primary point of contact for all IT security and GRC-related matters, demonstrating a strong commitment to protecting the organisation's digital assets, infrastructure, and information while maintaining compliance with regulatory requirements.
- Team Management and Leadership: Lead, mentor, and develop a high-performing team of IT security and GRC professionals, fostering a culture of collaboration and excellence.

Able to effectively communicate at various levels
- Likely to engage often with the following individuals/ groups:

- Chief Information Officer
- Executives
- Departmental Heads
- Other key external stakeholders

**EDUCATION**:
**MINIMUM QUALIFICATIONS**
- Bachelors degree in computer science, Information Technology, or a related field

**DESIRED/ PREFERRED REQUIREMENTS**
- Masters Degree
- CISSP, CISM, CISA

**MINIMUM REQUIREMENTS**
- A minimum of 10 years of experience in information security, with at least 5 years in a management/leadership role.
- A minimum of 7 years of experience in a technical or specialist information security role.

**INDUSTRY EXPERIENCE**
- Financial industry preferred
- Exposure to it Strategic Planning and Implementation
- Sourcing and managing suppliers

**DESIRED/ PREFERRED REQUIREMENTS**
- In-depth knowledge of IT security principles, best practices, and industry standards, including experience with regulatory compliance (e.g., POPIA, GDPR, HIPAA, ISO 27001).
- Demonstrated ability to manage a team of IT security professionals, and effectively collaborate with stakeholders at all levels of the organisation.
-



  • Johannesburg, South Africa Absa Bank Limited Full time

    Bring your possibility to life! Define your career with us - With over 100 years of rich history and strongly positioned as a local bank with regional and international expertise, a career with our family offers the opportunity to be part of this exciting growth journey, to reset our future and shape our destiny as a proudly African group.Job Summary The...


  • Johannesburg, South Africa IT Ridge Technologies Full time

    The main purpose of this position is to manage the Cloud Security Section within the Cyber Security Operations (CSO) Division and act as a liaison to the Business Solutions and Technology Department (BSTD) and business stakeholders to enable execution against cloud and emerging technology security controls and standards, across the Group. **Detailed...

  • Cloud Security Manager

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa IT Ridge Technologies Full time

    The main purpose of this position is to manage the Cloud Security Section within the Cyber Security Operations (CSO) Division and act as a liaison to the Business Solutions and Technology Department (BSTD) and business stakeholders to enable execution against cloud and emerging technology security controls and standards, across the Group.Detailed...


  • Johannesburg, South Africa My It Crew Full time

    **This is an in-office position.** Ready to get off the IT machine and come be part of a team where you are more than a cog in the wheel? My IT Crew is the place where everyone gets a voice and new ideas are welcomed. Sound like this could be your new home? Keep reading. My IT Crew has been a leader in the Managed Service provider space since 2016. We...

  • Cyber Security Analyst

    19 hours ago


    Johannesburg, South Africa Numata Business IT Full time

    Service Desk Engineers provide IT end-user support on variouscomponents of an IT environment, including but not limited to, hardwaresupport, software support and network support. Being the first point of contactfor clients, you are expected to be professional, helpful, and to provideassistance with a sense of urgency, regardless of the level of incident....

  • Network and Security Architect Team Lead

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa IT Ridge Technologies Full time

    The above-mentioned senior position exists within the ICT Infrastructure and Client Service Department and is accountable for security and networks support within the Group. The successful incumbent should be able to address technical aspects and be able to perform security and network reviews and analyzing risks, and addressing contingency...


  • Johannesburg, South Africa SA Metal Group (Pty) Ltd Full time

    The Administrator/PA primary purpose is to provide administrative and office support to the Security team and head of department. This person must have experience in a range of administrative functions.


  • Johannesburg, South Africa SA Metal Group Full time

    **Job Title**: Security Department Administrator **Employment Type**: Full Time **Experience**: 2 to 5 years **Salary**: Negotiable **Job Published**: 29 February 2024 **Job Reference No.**: 145506977 The Administrator/PA primary purpose is to provide administrative and office support to the Security team and head of department. This person must have...

  • Security Department Administrator

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa SA Metal Group (Pty) Ltd Full time

    The Administrator/PA primary purpose is to provide administrative and office support to the Security team and head of department. This person must have experience in a range of administrative functions.

  • Security Department Administrator

    Found in: Talent ZA 2A C2 - 2 weeks ago


    Johannesburg, South Africa SA Metal Full time

    The Administrator/PA primary purpose is to provide administrative and office support to the Security team and head of department. This person must have experience in a range of administrative functions.

  • IT Security Operations Manager

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa Tipp Focus Full time

    IntroductionA vacancy exists for an IT Security Operations Manager, reporting to the Head: Technology Services. The IT Security Operations Manager manages the day-to-day operational aspects of the Information Security environment. This involves managing the activities of the information security team to ensure that daily activities associated with...

  • Senior Engineer Security, Network and Voice

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa IT Ridge Technologies Full time

    The above-mentioned position is within the ICT Infrastructure department. The Team Lead Senior Security Data and Voice Engineer’s role involves analyzing, planning, implementing, maintaining, troubleshooting and enhancing large complex systems or networks consisting of a combination that will include servers networks, load balancers, fabrics, storage...


  • Johannesburg, South Africa Business Capital Group Full time

    Assist the Head of Technology Services to develop and implement a robust security monitoring strategy by establishing a capability for continuous management of correlated business and technology rules to detect common and advanced information security threats. The strategy would include the collection and reporting of intelligent security operational metrics...


  • Johannesburg, South Africa Executech Full time

    This is an opportunity to bring your security industry expertise to the fore. If you have developed expert knowledge of integrated intelligence and risk management Technology Solutions to enhance guarding and close protection security services, then this may be the opportunity to put your career on the map. Head up a business unit that aims to provide the...

  • Head of Health Safety Security and Environment

    Found in: Talent ZA 2A C2 - 2 weeks ago


    Johannesburg, South Africa Indipath Recruitment Full time

    Job-Specific CompetenciesFunctional:Security Intelligence & AwarenessInvestigationLaw Enforcement Liaison ManagementSecurity Risk Assessment & EvaluationStakeholder ManagementNegotiating SkillsDecision-MakingIncident BriefingHealth and Safety reportingProactive health and safety trainingTravel requirementsBilingual (Zulu and Xhosa)Non-conventional security,...

  • Senior Cyber Security Analyst

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa Telebest Full time

    Requirements:5 years of experience in Cybersecurity, engineering, or security vulnerability remediationIn-depth knowledge of MS Azure security platform (MS Intune / DRM / O365 Security)In-depth knowledge of Firewalls and Malicious Code Defence including APTKnowledge of Cybersecurity technical assessments, standards, tools, and processesExtensive knowledge of...

  • Head: Finance Unit

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa IT Ridge Technologies Full time

    The key purpose of this role is the day-to-day management of the Finance department to ensure efficient running of the unit and accurate reporting of accountsKEY ACCOUNTABILITIES, MEASURES & INTERFACESUnder the direct supervision of the Chief Financial Officer, the Head of Finance will be responsible for:Develop, maintain and implement proper operational...

  • Head of Development

    2 days ago


    Johannesburg, South Africa Dynexity Full time

    My client is looking for a Head of Development to join the team and be responsible for managing and driving accountability and ownership within the Development Team (Permanent position). Must have 10 years experience in IT systems development with minimum 8 years experience as a Software Development Manager - across various platforms and systems must have...

  • Head of Freight Desk

    2 weeks ago


    Johannesburg, South Africa Smart Talent Full time

    As an Executive Search and Career Consultant specializing in the niche market of Supply Chain, I represent some of the top leaders and am called upon by blue chip organizations in the country to secure talent and assist them in building high performance teams. One such client of mine is a FMCG company and they are looking for a Head of Freight Desk. The...


  • Johannesburg, South Africa Smart Talent Full time

    As an Executive Search and Career Consultant specializing in the niche market of Supply Chain, I represent some of the top leaders and am called upon by blue chip organizations in the country to secure talent and assist them in building high performance teams. One such client of mine is a FMCG company and they are looking for a Head of Freight Desk. The...