Business Information Security Officer

2 weeks ago


Johannesburg, South Africa Nedbank Full time

**Requisition Details & Talent Acquisition Contact**
- REQ 126453- Tshego Semenya**Cluster**
- Information Technology

**Career Stream**
- It Risk

**Leadership Pipeline**
- Manage Self: Expert

**Position**
- Business Information Security Officer**Job Purpose**
- The BISO must support the business cluster in the implementation and execution of the cyber resilience risk management framework that includes implementation of cyber risk assessments, strategy, cyber security programme, policies, standards, reporting of all cluster-specific cyber security programme elements and regulatory matters as it relates to cyber security.**Responsibilities**:

- Build and maintain professional relationships by information sharing and professional networking within the bank.
- Build and maintain internal stakeholder relationships through collaboration with stakeholders and regular communication via various media
- Drive compliance to security policies and standards on cluster infrastructure.
- Primary interface between the cluster and CISO office.
- Represent business as an information security representative on the CSSC;
- Ensure alignment and implementation of CRRMF in clusters.
- Report of all cluster specific information security program elements;
- Work closely together with all stakeholders.
- Actively executes the cyber security programme elements and other information and cyber security plans developed by the business.
- Assist the cluster with identification of critical assets (“crown jewels”) and feeding that back into the business impact analysis and risk management processes.
- Work with the business to develop processes and procedures to ensure information security policies and standards are integrated; and
- Assist with third party supplier information and cyber security risk assessments and assurance
- Assist business with incident management related to cyber and/or privacy incidents
- Conclude cyber / privacy impact assessment on new business initiatives
- Build and maintain professional relationships by information sharing and professional networking within the bank.
- Build and maintain internal stakeholder relationships through collaboration with stakeholders and regular communication via various media
- Drive compliance to security policies and standards on cluster infrastructure;
- Primary interface between the cluster and CISO office.
- Represent business as an information security representative on the CSSC;
- Ensure alignment and implementation of CRRMF in clusters.
- Report of all cluster specific information security program elements;
- Work closely together with all stakeholders.
- Actively executes the cyber security programme elements and other information and cyber security plans developed by the business.
- Assist the cluster with identification of critical assets (“crown jewels”) and feeding that back into the business impact analysis and risk management processes.
- Work with the business to develop processes and procedures to ensure information security policies and standards are integrated; and
- Assist with third party supplier information and cyber security risk assessments and assurance
- Assist business with incident management related to cyber and/or privacy incidents
- Conclude cyber / privacy impact assessment on new business initiatives
- Minimum Experience Level- 3 - 5 years in Information Security Experience
- Exposure in Risk Management Monitoring
- Data Reporting Analytics experience

**Essential Qualifications - NQF Level**
- Professional Qualifications/Honour’s Degree

**Preferred Qualification**
- Master’s Degree in IT / Computer Science / Informatics
- Preferred Certifications- Certified Information Security Manager (CISM)
- Certified in Risk and Information Systems Control (CRISC)
- Certified Information Systems Auditor (CISA)
- Certified Information Systems Security Professional (CISSP)
- Type of Exposure- Completed Reports and Achieved Budgets
- Developed and Implemented Communications Strategy
- Manage internal process
- Managed Relationships
- Managed Self
- Designed Workforce Planning Solutions
- Managed Transformation and Innovation
- Provided Administrative Support
- Provided Client Service
- Supported Transformation, Change and continued Improvement

**Technical / Professional Knowledge**
- Administrative procedures and systems
- Banking knowledge
- Data analysis
- Governance, Risk and Controls
- Microsoft Office
- Principles of project management
- Relevant regulatory knowledge
- Relevant software and systems knowledge
- Business writing skills
- Information Security Threats and Attact vectors
- Cluster Specific Operational Knowledge
- System Development Life cycle(SDLC)
- TCP/IP
- Information Security terms and definitions
- Basic computer concepts
- Relevant Operating System
- Information Security policies and procedures
- Vendor Management Principles

**Disclaimer**

**_Please contact the Nedbank Recruiting Team at +27 860 555 566_**
- **_Please con



  • Johannesburg, South Africa Nedbank Full time

    **Requisition Details & Talent Acquisition Contact** - REQ 127649- Tshego Semenya**Cluster** - Group Risk**Career Stream** - It Risk **Leadership Pipeline** - Manage Self: Expert **Position** - Business Information Security Officer**Job Purpose** - The BISO must support the business cluster in the implementation and execution of the cyber resilience risk...


  • Johannesburg, South Africa Nedbank Full time

    **Job Purpose** - The BISO must support the CIB business cluster in the implementation and execution of the cyber resilience risk management framework that includes implementation of cyber risk assessments, strategy, cyber security programme, policies, standards, reporting of all cluster-specific cyber security programme elements and regulatory matters as it...


  • Johannesburg, South Africa WePlace Full time

    Gauteng, JHB - Northern Suburbs - Market - Related Annually Basic Salary - We have an exciting opportunity as an Information Security Officer based at our client in the Commercial Banking sector which is located in Sandton. **Role Description**: - The focus of the role will be to assess, identify and address the cyber and information security risks in the...


  • Johannesburg, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Officer based in Selby.Requirements:7 years’ experience in technology security or risk management roles of which should include:4 years in technology policy writing.4 years’ experience in designing implementing and closing technology general control gaps.3 years’ experience in...


  • Johannesburg, South Africa Elite Search and Selection Full time

    Gauteng, JHB - Northern Suburbs - R 120 000 - R 160 000 Monthly Cost To Company (Various Exco Team Benefits)- ROLE: Chief Information Security Officer LOCATION: Johannesburg - Sandton Area - Office Based Are you an experienced and visionary IT professional with a passion for cybersecurity? Are you ready to take the reins and safeguard the digital ecosystem...


  • Johannesburg, South Africa Afro Miaki Group Full time

    Implement the Technology Strategy & Innovation for your area of responsibility Organize outputs aligned to the Technology risk strategy, internal controls and budget of internal resourcing and partnerships to assure Technology Compliance to best practise and regulatory compliance (including but not limited to data protection compliance (e.g., POPI and...


  • Johannesburg, South Africa Elite Search Full time

    As a senior-level manager, you will be part of the Exco Team and responsible for establishing and maintaining an organisation's information security program. The CISO's primary role is to safeguard the organisation's sensitive data, systems, and networks from internal and external threats. Overall the CISO plays a critical role in safeguarding our...


  • Johannesburg, South Africa NTT Full time

    JOB DESCRIPTION NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help...


  • Johannesburg, South Africa NTT Part time

    NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future.In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients...


  • Johannesburg, South Africa Stafflink Recruitment Solutions Full time

    EDUCATION & EXPERIENCE: Matric & Relevant tertiary qualification. One or more of the below certifications would be advantageous: CISSP: Certified Information Systems Security Professional CISA: Certified Information Systems Auditor CISM: Certified Information Security Manager KPAs 5 years experience in Cyber Security. Framework Knowledge of Security...


  • Johannesburg, South Africa Adzuna ZA B C2 Full time

    EDUCATION & EXPERIENCE:Matric & Relevant tertiary qualification. One or more of the below certifications would be advantageous:CISSP: Certified Information Systems Security Professional CISA: Certified Information Systems Auditor CISM: Certified Information Security Manager KPAs 5 years experience in Cyber Security. Framework Knowledge of Security best...


  • Johannesburg, South Africa Stafflink Recruitment Solutions Full time

    EDUCATION & EXPERIENCE:Matric & Relevant tertiary qualification. One or more of the below certifications would be advantageous:CISSP: Certified Information Systems Security Professional CISA: Certified Information Systems Auditor CISM: Certified Information Security Manager KPAs 5 years experience in Cyber Security. Framework Knowledge of Security best...


  • Johannesburg, South Africa Kontak Recruitment Full time

    "Information Security Officer (JB4444) Remote, (Suitable for candidates in Gauteng Only) XXX-XXXX.00 to XXX-XXXX.00 Annually CTC  Permanent    A retailer operating in the travel retail sector is looking for a professional Information Security Offi... Matric & Relevant tertiary qualification One or more of the below certifications would be...


  • Johannesburg, South Africa Anova Health Institute NPC Full time

    Anova is an NGO that empowers people and changes lives. Good health and quality of life is what motivates us to provide healthcare solutions and provide support to those who needs it most. - The Information Security Officer (ISM) is accountable for ensuring appropriate controls are in place for the security of information assets. The ISM safeguards...


  • Johannesburg, South Africa Afro Miaki Group Full time

    Support Technology Transformation & Innovation in your area of responsibility Support with developing and maintaining Cyber Security Road Map and interventions Support with developing company-wide best practices for Technology security Support improving the maturity, or efficiency, of the Cyber Security team, by identifying innovative, problem-solving...


  • Johannesburg, South Africa Telebest Full time

    Our client has an opportunity available for an Information Security Analyst.Requirements:5 years’ experience within either an Information Security position or Cybersecurity, which include protection against social engineering, or security vulnerability remediation, of which:2 years’ IT administration experience.2 years’ Ethical Hacking...


  • Johannesburg, South Africa Integralis Full time

    As the Information Security Officer, you will be responsible for the information security vision, strategy, governance, management, processes and user education. The role also requires technical abilities to assist the team in improving the security posture. **Purpose**: Assist the management team in creating and executing the security strategy and updating...


  • Johannesburg, South Africa Digital Spaces Allegiance Full time

    The purpose of the job is to plan, manage, and administer the organisation network security. Ensure all network components are managed in accordance with approved guidelines and processes to ensure compliance. As an Information Security Specialist, you will be responsible to: - Design, install, and manage security mechanisms that protect the organisation...


  • Johannesburg, South Africa Specd Full time

    JOB DESCRIPTION: Job Title: Information Security Manager (ISM)Job Type: PermanentJob Industry: NGO - Heath SectorLocation: Parktown, Johannesburg MAIN JOB PURPOSE: The Information Security Officer (ISM) is accountable for ensuring appropriate controls are in place for the security...


  • Johannesburg, South Africa Adzuna ZA B C2 Full time

    JOB DESCRIPTION: Job Title: Information Security Manager (ISM)Job Type: PermanentJob Industry: NGO - Heath SectorLocation: Parktown, Johannesburg MAIN JOB PURPOSE:The Information Security Officer (ISM) is accountable for ensuring appropriate controls are in place for the security of information assets. The ISM safeguards information by seeing that...