Business Information Security Officer

2 weeks ago


Johannesburg, South Africa Nedbank Full time

**Requisition Details & Talent Acquisition Contact**
- REQ 127649- Tshego Semenya**Cluster**
- Group Risk**Career Stream**
- It Risk

**Leadership Pipeline**
- Manage Self: Expert

**Position**
- Business Information Security Officer**Job Purpose**
- The BISO must support the business cluster in the implementation and execution of the cyber resilience risk management framework that includes implementation of cyber risk assessments, strategy, cyber security programme, policies, standards, reporting of all cluster-specific cyber security programme elements and regulatory matters as it relates to cyber security.**Responsibilities**:

- Drive compliance to security policies and standards on cluster infrastructure.
- Primary interface between the cluster and CISO office.
- Represent business as an information security representative on the CSSC;
- Ensure alignment and implementation of CRRMF in clusters.
- Report of all cluster specific information security program elements;
- Work closely together with all stakeholders.
- Actively executes the cyber security programme elements and other information and cyber security plans developed by the business.
- Assist the cluster with identification of critical assets (“crown jewels”) and feeding that back into the business impact analysis and risk management processes.
- Work with the business to develop processes and procedures to ensure information security policies and standards are integrated; and
- Assist with third party supplier information and cyber security risk assessments and assurance
- Assist business with incident management related to cyber and/or privacy incidents
- Conclude cyber / privacy impact assessment on new business initiatives
- Build and maintain professional relationships by information sharing and professional networking within the bank.
- Build and maintain internal stakeholder relationships through collaboration with stakeholders and regular communication via various media
- Drive compliance to security policies and standards on cluster infrastructure;
- Primary interface between the cluster and CISO office.
- Represent business as an information security representative on the CSSC;
- Ensure alignment and implementation of CRRMF in clusters.
- Report of all cluster specific information security program elements;
- Work closely together with all stakeholders.
- Actively executes the cyber security programme elements and other information and cyber security plans developed by the business.
- Assist the cluster with identification of critical assets (“crown jewels”) and feeding that back into the business impact analysis and risk management processes.
- Work with the business to develop processes and procedures to ensure information security policies and standards are integrated; and
- Assist with third party supplier information and cyber security risk assessments and assurance
- Assist business with incident management related to cyber and/or privacy incidents
- Conclude cyber / privacy impact assessment on new business initiatives
- Essential Qualifications - NQF Level- Advanced Diplomas/National 1st Degrees
- Preferred Qualification- Master’s Degree in IT / Computer Science / Informatics
- Preferred Certifications- Certified Information Security Manager (CISM)
- Certified in Risk and Information Systems Control (CRISC)
- Certified Information Systems Auditor (CISA)
- Certified Information Systems Security Professional (CISSP)
- Minimum Experience Level- 3 - 5 years in Information Security Experience
- Exposure in Risk Management Monitoring
- Data Reporting Analytics experience

**Type of Exposure**
- Completed Reports and Achieved Budgets
- Designed Workforce Planning Solutions
- Developed and Implemented Communications Strategy
- Manage internal process
- Managed Transformation and Innovation
- Managed Relationships
- Managed Self
- Provided Administrative Support

**Technical / Professional Knowledge**
- Administrative procedures and systems
- Banking knowledge
- Data analysis
- Governance, Risk and Controls
- Microsoft Office
- Principles of project management
- Relevant regulatory knowledge
- Relevant software and systems knowledge
- Business writing skills
- Information Security Threats and Attact vectors
- Cluster Specific Operational Knowledge
- System Development Life cycle(SDLC)
- TCP/IP
- Information Security terms and definitions
- Basic computer concepts
- Relevant Operating System
- Information Security policies and procedures
- Vendor Management Principles

**Disclaimer**

**_Please contact the Nedbank Recruiting Team at +27 860 555 566_**
- **_Please contact the Nedbank Recruiting Team at +27 860 555 566_



  • Johannesburg, South Africa Nedbank Full time

    **Requisition Details & Talent Acquisition Contact** - REQ 126453- Tshego Semenya**Cluster** - Information Technology **Career Stream** - It Risk **Leadership Pipeline** - Manage Self: Expert **Position** - Business Information Security Officer**Job Purpose** - The BISO must support the business cluster in the implementation and execution of the cyber...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Requisition Details & Talent Acquisition Contact REQ Tshego SemenyaCluster Information TechnologyCareer Stream It RiskLeadership Pipeline Manage Self: ExpertPosition Business Information Security OfficerJob Purpose The BISO must support the business cluster in the implementation and execution of the cyber resilience risk management framework that includes...


  • Johannesburg, South Africa Nedbank Full time

    **Job Purpose** - The BISO must support the CIB business cluster in the implementation and execution of the cyber resilience risk management framework that includes implementation of cyber risk assessments, strategy, cyber security programme, policies, standards, reporting of all cluster-specific cyber security programme elements and regulatory matters as it...


  • Johannesburg, South Africa Nedbank Full time

    **Job Purpose** - The BISO must support the business cluster in the implementation and execution of the cyber resilience risk management framework that includes implementation of cyber risk assessments, strategy, cyber security programme, policies, standards, reporting of all cluster-specific cyber security programme elements and regulatory matters as it...


  • Johannesburg, Gauteng, South Africa Nedbank Full time

    Job Purpose The BISO must support the business cluster in the implementation and execution of the cyber resilience risk management framework that includes implementation of cyber risk assessments, strategy, cyber security programme, policies, standards, reporting of all clusterspecific cyber security programme elements and regulatory matters as it relates to...


  • Johannesburg, Gauteng, South Africa WePlace Full time

    Gauteng, JHB - Northern Suburbs Market Related Annually Basic Salary We have an exciting opportunity as an Information Security Officer based at our client in the Commercial Banking sector which is located in Sandton.Role Description: The focus of the role will be to assess, identify and address the cyber and information security risks in the division. We...


  • Johannesburg, Gauteng, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Officer based in SelbyRequirements:7 years' experience in technology security or risk management roles of which should include:4 years in technology policy writing.4 years' experience in designing implementing and closing technology general control gaps.3 years' experience in directly...


  • Johannesburg, Gauteng, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Officer based in Selby.Requirements:7 years' experience in technology security or risk management roles of which should include:4 years in technology policy writing.4 years' experience in designing implementing and closing technology general control gaps.3 years' experience in directly...


  • Johannesburg, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Officer based in Selby.Requirements:7 years’ experience in technology security or risk management roles of which should include:4 years in technology policy writing.4 years’ experience in designing implementing and closing technology general control gaps.3 years’ experience in...


  • Johannesburg, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Officer based in Selby.Requirements:7 years’ experience in technology security or risk management roles of which should include:4 years in technology policy writing.4 years’ experience in designing implementing and closing technology general control gaps.3 years’ experience in...


  • Johannesburg, City of Johannesburg Metropolitan Municipality, Gauteng, , South Africa FreeRecruit Full time

    "Information Security Officer (JB4444)Remote, (Suitable for candidates in Gauteng Only)R to R Annually CTCPermanent A retailer operating in the travel retail sector is looking for a professional Information Security Officer. The business' core focus is on providing retail food & beverage as well as duty free retail products, services, andtechnologies to its...


  • Johannesburg, South Africa Elite Search and Selection Full time

    Gauteng, JHB - Northern Suburbs - R 120 000 - R 160 000 Monthly Cost To Company (Various Exco Team Benefits)- ROLE: Chief Information Security Officer LOCATION: Johannesburg - Sandton Area - Office Based Are you an experienced and visionary IT professional with a passion for cybersecurity? Are you ready to take the reins and safeguard the digital ecosystem...


  • Johannesburg, Gauteng, South Africa Integralis Full time

    As the Information Security Officer, you will be responsible for the information security vision, strategy, governance, management, processes and user education. The role also requires technical abilities to assist the team in improving the security posture.Purpose:Assist the management team in creating and executing the security strategy and updating the...


  • Johannesburg, South Africa Boikago Group Full time

    **Job Details**: - Department Information Technology- Minimum experience Associate- Company primary industry Security and Investigations- Job functional area Other- Salary R658 680 - R933 180 per annum**Introduction** Our client seeks an Information Security Analyst L2 who will Conduct all activities related to technology risks and remediation's to protect...


  • Johannesburg, Gauteng, South Africa Kontak Recruitment Full time

    Information Security Officer (JB4536) Remote, (Suitable for candidates in Gauteng Only) XXX-XXXX.00 to XXX-XXXX.00 Annually CTC Permanent A retailer operating in the travel retail sector is looking for a professional Information Security Officer. The ...Matric & Relevant tertiary qualificationOne or more of the below certifications would be...


  • Johannesburg, Gauteng, South Africa Elite Search and Selection Full time

    Gauteng, JHB - Northern Suburbs R R Monthly Cost To Company (Various Exco Team Benefits)ROLE: Chief Information Security OfficerLOCATION:Johannesburg - Sandton Area - Office BasedAre you an experienced and visionary IT professional with a passion for cybersecurity? Are you ready to take the reins and safeguard the digital ecosystem of a rapidly expanding...


  • Johannesburg, Gauteng, South Africa Kontak Recruitment Full time

    "Information Security Officer (JB4444) Remote, (Suitable for candidates in Gauteng Only) XXX-XXXX.00 to XXX-XXXX.00 Annually CTC Permanent A retailer operating in the travel retail sector is looking for a professional Information Security Offi...Matric & Relevant tertiary qualification One or more of the below certifications would be...


  • Johannesburg, Gauteng, South Africa Kontak Recruitment Full time

    "Information Security Officer (JB4444) Remote, (Suitable for candidates in Gauteng Only) XXX-XXXX.00 to XXX-XXXX.00 Annually CTC Permanent A retailer operating in the travel retail sector is looking for a professional Information Security Offi...Matric & Relevant tertiary qualification One or more of the below certifications would be advantageous: CISSP:...


  • Johannesburg, Gauteng, South Africa Kontak Recruitment Full time

    "Information Security Officer (JB4444) Remote, (Suitable for candidates in Gauteng Only) XXX-XXXX.00 to XXX-XXXX.00 Annually CTC Permanent A retailer operating in the travel retail sector is looking for a professional Information Security Offi...Matric & Relevant tertiary qualification One or more of the below certifications would be advantageous: CISSP:...


  • Johannesburg, Gauteng, South Africa Kontak Recruitment Full time

    "Information Security Officer (JB4444) Remote, (Suitable for candidates in Gauteng Only) XXX-XXXX.00 to XXX-XXXX.00 Annually CTC Permanent A retailer operating in the travel retail sector is looking for a professional Information Security Offi...Matric & Relevant tertiary qualification One or more of the below certifications would be advantageous: CISSP:...