Business Information Security Officer

2 weeks ago


Johannesburg, South Africa Nedbank Full time

**Job Purpose**
- The BISO must support the CIB business cluster in the implementation and execution of the cyber resilience risk management framework that includes implementation of cyber risk assessments, strategy, cyber security programme, policies, standards, reporting of all cluster-specific cyber security programme elements and regulatory matters as it relates to cyber security.**Responsibilities**:

- Drive compliance to cybersecurity policies and standards on cluster infrastructure.
- Primary interface between the cluster and CISO office.
- Represent business as a cybersecurity representative on the CyRC.
- Ensure alignment and implementation of CRRMF in clusters.
- Assisting with driving and implementation of the top cyber focus areas within clusters where relevant
- Monitor and oversight of cyber risk within the clusters.
- Guide business in the cyber-related initiatives to ensure the management of the cyber risk profile of the cluster. Assists the cluster in the completion of cyber resilience risk assessments, ensuring that they are understood, captured in the risk management processes, that appropriate controls are embedded in the day-to-day operation, and remediation of non-compliance is documented and addressed.
- Report of all cluster specific cyber resilience program elements.
- Work closely together with all stakeholders with regards to information security.
- Actively executes the cyber resilience programme elements and other information and cybersecurity plans developed by the business.
- Assist the cluster with identification of critical assets from a confidentiality point of view (“crown jewels”) and feeding that back into the business impact analysis and risk management processes.
- Assist the CISO office with conducting cybersecurity assurance examinations on identified Crown Jewels.
- Document and maintain a cybersecurity profile for each cluster environment (to provide an overall picture of the environment, which will support risk-based decisions and cybersecurity related activities at cluster level).
- Work with the business to develop processes and procedures to ensure cybersecurity policies and standards are integrated.
- Manage third party cyber and privacy risk management process for the cluster.
- Assisting with the implementation of the DLP strategy within the clusters
- Assist stakeholders with resolution of identified cyber-related incidents within the clusters.
- Coordinate and assist with cyber awareness and training for the cluster.
- Active involved in cybersecurity assessments and monitor cluster specific cybersecurity concerns.
- Assisting business to manage cyber risk, ensuring that the cluster operate within the cyber-risk appetite of the Bank and management of the threshold breaches where relevant.

**Job Responsibilities Continue**
- Essential Qualifications- Advanced Diplomas/National 1st Degrees
- Preferred Qualification- Honours/Master’s Degree in IT / Computer Science / Informatics
- Essential Certifications- CISSP, CISM or relevant qualifications (this is essential certification )
- Preferred Certifications- Certified Information Security Manager (CISM)
- Certified in Risk and Information Systems Control (CRISC)
- Certified Information Systems Auditor (CISA)
- Certified Information Systems Security Professional (CISSP)
- Minimum Experience Level- 3 - 5 years in Information Security Experience
- Exposure in Risk Management Monitoring
- Data Reporting Analytics experience

**Technical / Professional Knowledge**
- Administrative procedures and systems
- Banking knowledge
- Data analysis
- Governance, Risk and Controls
- Microsoft Office
- Principles of project management
- Relevant regulatory knowledge
- Relevant software and systems knowledge
- Business writing skills
- Information Security Threats and Attact vectors
- Cluster Specific Operational Knowledge
- System Development Life cycle(SDLC)
- TCP/IP
- Information Security terms and definitions
- Basic computer concepts
- Relevant Operating System
- Information Security policies and procedures
- Vendor Management Principles
- Behavioural Competencies- Coaching
- Collaborating
- Decision Making
- Influencing
- Innovation
- Technical/Professional Knowledge and Skills

**Employment Equity Statement**
- Preference will be given to underrepresnted groups- **_Please contact the Nedbank Recruiting Team at +27 860 555 566_



  • Johannesburg, South Africa WePlace Full time

    Gauteng, JHB - Northern Suburbs - Market - Related Annually Basic Salary - We have an exciting opportunity as an Information Security Officer based at our client in the Commercial Banking sector which is located in Sandton. **Role Description**: - The focus of the role will be to assess, identify and address the cyber and information security risks in the...

  • Information Security Officer

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Officer based in Selby.Requirements:7 years’ experience in technology security or risk management roles of which should include:4 years in technology policy writing.4 years’ experience in designing implementing and closing technology general control gaps.3 years’ experience in...


  • Johannesburg, South Africa Elite Search Full time

    As a senior-level manager, you will be part of the Exco Team and responsible for establishing and maintaining an organisation's information security program. The CISO's primary role is to safeguard the organisation's sensitive data, systems, and networks from internal and external threats. Overall the CISO plays a critical role in safeguarding our...

  • Snr Spec: Information Security Officer

    Found in: beBee S ZA - 3 weeks ago


    Gauteng, Johannesburg, South Africa Liberty Group South Africa Full time

    Liberty Group South Africa’s job vacancy, Career and Recruitment Job title : Snr Spec: Information Security Officer jobs in Gauteng Job Location : Gauteng, Johannesburg Deadline : May 04, 2024 Quick Recommended Links Jobs by Location Job by industries Purpose To implement a comprehensive Information Technology security program with the Information...

  • Snr Spec: Information Security Officer

    Found in: beBee S ZA - 4 weeks ago


    Gauteng, Johannesburg, South Africa Liberty Group South Africa Full time

    Liberty Group South Africa’s job vacancy, Career and Recruitment Job title : Snr Spec: Information Security Officer jobs in Gauteng Job Location : Gauteng, Johannesburg Deadline : May 04, 2024 Quick Recommended Links Jobs by Location Job by industries Purpose To implement a comprehensive Information Technology security program with the Information...


  • Johannesburg, South Africa Sanlam Full time

    Who are we? Sanlam Developing Markets [SDM] (a wholly-owned subsidiary of Sanlam Life Limited) is one of the top financial services providers in the South African entry-level and emerging middle market. It aims to understand the unique requirements of clients and offers a wide range of simple and affordable financial solutions that cover needs such as...

  • Information Security Analyst

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa Telebest Full time

    Our client has an opportunity available for an Information Security Analyst.Requirements:5 years’ experience within either an Information Security position or Cybersecurity, which include protection against social engineering, or security vulnerability remediation, of which:2 years’ IT administration experience.2 years’ Ethical Hacking...


  • Johannesburg, South Africa THE SKILLS MINE (PTY) LTD Full time

    **Requirements**: - Bachelor’s or Master’s degree in Information Technology or Computer Science - 5-6 years of experience in Information security Management - Minimum Certified ISO 27001 Lead Auditor/ Lead Implementer - Background in technical security roles or operations, with a clear and abiding interest in security **Responsibilities**: - Develop...


  • Johannesburg, South Africa Platinum Placements Full time

    **Key Accountabilities** - Develop and maintain robust security controls to protect Organization business from security breaches/ incidents. - Deliver Security demand from the business for security controls. - Maintain a good relationship with key stakeholders including business, other IT departments & security teams to deliver on security requirements...


  • Johannesburg, South Africa PPS Recruitment Full time

    **Job Advert Summary**: The incumbent will direct, develop, maintain and implement an enterprise information security architecture aligned with the strategic and business objectives of the PPS, as well as regulatory and technical context The role will involve working with other teams in the organisation as a non-technical resource in all matters, such as...

  • Chief Information Security Officer

    Found in: Talent ZA C2 - 3 days ago


    Johannesburg, South Africa Standard Bank Group Full time

    Job Description To lead global approach with technical, business, industry across geographies achieving interoperable information security partnerships securing 3rd party integration in platforms, ecosystems. To provide Information Security expertise to SBG on effective InfoSec to prevent reputational, financial losses. To lead, direct InfoSec...


  • Johannesburg, South Africa Business Capital Group Full time

    Assist the Head of Technology Services to develop and implement a robust security monitoring strategy by establishing a capability for continuous management of correlated business and technology rules to detect common and advanced information security threats. The strategy would include the collection and reporting of intelligent security operational metrics...

  • Information Security Engineer

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa Level-Up Full time

    Information Security Engineer will be responsible for ensuring the security of our information systems and protecting them against unauthorised access, modification, or destruction. The role involves hands-on operations with various security tools and platforms, as well as the development and implementation of secure networks and systems.Key...

  • Information Security Analyst L2

    Found in: Talent ZA C2 - 2 weeks ago


    Johannesburg, South Africa Telebest Full time

    Our client has an EE opportunity available for an Information Security Analyst based in Selby.Requirements:5 years’ experience within either an information security position or in cybersecurity.2 years IT administration experience.2 years ethical hacking experience.Knowledge of:Cloud security platforms.Firewalls and malicious code defense.Cybersecurity...


  • Johannesburg, South Africa PPS Recruitment Full time

    **Job Advert Summary**: The Intermediate Information Security Analyst will be responsible for managing the organisation’s security posture to ensure the protection of systems, networks and sensitive data against security threats, computer viruses and other related cyber-security attacks. **Minimum Requirements**: **Education**: - BSc / B.Tech or...


  • Johannesburg, South Africa ABC Worldwide Full time

    Information Security Manager will be responsible for implementing and monitoring IT security strategies for all platforms across IT function with organization. He will provide assistance to manage the risk to the platform assigned and will ensure business alignment, effective governance, system and infrastructure availability, integrity and...


  • Johannesburg, South Africa The Recruiters Full time

    Our IT recruitment desk currently has a vacancy for a Business Systems and Information Officer. (IT Manager) Responsible for understanding business processes and their translation into technology solutions and enhancements, the role holder will provide support to management and staff, liaising with external services providers and internal technology...


  • Johannesburg, South Africa Quantanite Full time

    To ensure Quantanite's Information Security Management System is maintained and the compliance of staff and policies, procedures, guidelines and standards used to support the effectiveness of the ISMS. **Key Responsibilities**: - Carry out all ISMS activities to ensure maintenance of SOC-2 type 2, ISO 27001:2005, PCI-DSS certifications at South Africa and...


  • Johannesburg, South Africa Business Capital Group Full time

    At least 5 years related work experience dealing with IT security systems and administration - Security administration experience across multiple IT platforms an advantage. - Experience in a healthcare, insurance, banking or financial services environment. - Diploma or Degree in Information Technology or related IT qualification - Relevant security...


  • Johannesburg, South Africa A 1L Realization (Pty) Ltd Full time

    **Skills required** - Security architecture - Information security solutions. - At least 3 years experience within a non-traditional FinTech, Banking, Financial Services or Telecommunication sector - Security Products - information Security Architect - Mobile Network Security, Hardware Configuration, Network Protocols, Networking Standards, Windows, Linux...