See more Collapse

Ict Information Security and Risk Specialist

2 months ago


Midrand, South Africa DBSA Full time

The purpose of this role is to perform information security responsibilities such as developing, coordinating and implementing policies, standards, and procedures to safeguard the bank’s information systems and data. Ensuring that information security policy is aligned with the bank’s business strategy & benchmarked with best practice.

**Strategic Focus**:
Define and implement ICT Security strategy for the bank

Establish a framework for the implementation of an Information Security Management System (ISMS) that reflects the bank’s security needs and objectives

Develop ICT Security Policies, Processes, Procedures and Standards in line with industry benchmarks and where applicable best practices

Oversees the planning, execution and management of projects related to compliance, control assurance, risk management, security and infrastructure / information asset protection

Provide strategic / tactical direction and consultation on information security and compliance

Design an effective ICT Security Architecture

**Key Responsibilities**:
**Financial Management**:
Develop an effective stakeholder Service Level Agreement Management for ICT Security

Advise ICT management on cost effective solutions for Information Security solutioning

Implement cost effective ICT Security solutions

**Information Security Management**:
Design and coordinate the processes for the detection, investigation and correction of ICT security breaches and incidents

Assess and implement the controls needed to protect the bank’s information as well as information from third parties

Plan and participate in ICT Continuity and Disaster Recovery process;
Perform periodic reporting to key stakeholders regarding the bank’s ICT Security state

Provide ICT security advisory services to the different BU’s within the bank

Initiates and conduct independent corporate security risk assessments

Coordinate corrective actions for identified security vulnerabilities and gaps.

Work with the CIO, Executive team, and Group Risk Management to determine acceptable levels of risk for the enterprise (Risk Champion)

Maintain ICT Risk Management at strategic and operational level

Ensure effectiveness and maturity growth of the bank’s ICT Security Program

Ensure ICT Assets are safeguarded to protect the information

Ensure privacy and security of data and segregation of duties in maintaining confidentiality, availability and integrity of information

Develop and provide appropriate awareness training / plans and communication

***Capacity Building**:
Conduct continuous market research on trends and best practice relating to ICT Security

Establish communication programs that will raise and maintain awareness of information security throughout DBSA

Conduct awareness sessions to ensure that DBSA staff are educated of their roles and responsibilities relative to information security governance

**Expertise & Technical Competencies**:
**QUALIFICATIONS & EXPERIENCE**

B. degree (IT/Information systems) or BTech in IT or Information Security

Post graduate qualification in ICTSecurity information Management will be advantageous.

4 - 6 Years of experience in ICT Information Security Management and / or IT Risk Management

**Skills & Knowledge**

Relevant certification (CISM, CISA, CRISC)

Strong technical background and knowledge

Exposure to cyber risk frameworks (NIST, ISF, Iso27001/2, FFIEC)

Ability to create metrics, presentations to various stakeholders

IT Governance and risk management experience

Practical experience in IT or Information Security and Information Risk management role.

Exposure to cyber security or SOC monitoring.

Optional: CoBIT, TOGAF, ITIL

Must be analytical and investigative.

Must display good decision making and problem-solving skills.

**TECHNICAL COMPETENCIES**

**Planning & Organizing**

Is relied on to help others plan and organise their workload.

Effectively uses advanced time management processes to deal with high workload and tight deadlines.

Organises, prioritises and schedules tasks so they can be performed within budget and with the efficient use of time and resources.

Achieves goals in a timely manner, despite obstacles encountered, by organising, reprioritising and re-planning

**Negotiation Skills**

Possesses an understanding of various unspoken communications from other parties and can decipher hidden agendas.

Is able to successfully conclude negotiations which require the development of an emotional as well as factual argument.

Is able to develop mutually-beneficial potential solutions.

**Written Communication**

Understands that different writing styles are required for different documents or audiences.

Write effective correspondence, prepares questions and reports, statements of circumstance and briefing notes.

Reviews others’ documents for clarity and impact.

Has a solid mastery of writing principles such as grammar, sentence construction etc.

**Required Personal Attributes**:
**BE


We have other current jobs related to this field that you can find below


  • Midrand, Gauteng, South Africa DBSA Full time

    The purpose of this role is to perform information security responsibilities such as developing, coordinating and implementing policies, standards, and procedures to safeguard the bank's information systems and data. Ensuring that information security policy is aligned with the bank's business strategy & benchmarked with best practice.Strategic Focus:Define...


  • Midrand, South Africa RJPersonnel Full time

    3years - Project Management principles - ICT disaster planning and business continuity planning - Enterprise risk management practices - IT security incident response planning and practices - ICT security and data privacy impact assessments - Identity and Access Management practices - Provide input into requirements documents - ensure security roles;...


  • Midrand, South Africa Railway Safety Regulator Full time

    The RSR seeks to appoint an ICT Committee Chairperson. The ICT Committee carries out its functions in line with the roles, responsibilities and powers set out in the PFMA, the National Treasury Regulations, the RSR ICT Committee Charter and King IV. **REQUIRED QUALIFICATIONS, SKILLS AND EXPERIENCE**: - Minimum 10 years’ experience at Senior Management...

  • Ict Committee Member

    3 weeks ago


    Midrand, South Africa Railway Safety Regulator Full time

    The Railway Safety Regulator (RSR) seeks to appoint an Information and Communication Technology Committee (ICT Committee) member. The ICT Committee performs its functions in line with the roles, responsibilities and powers set out in the PFMA, National Treasury Regulations, RSR ICT Committee Charter and King IV. **REQUIRED QUALIFICATIONS, SKILLS AND...


  • Midrand, South Africa Railway Safety Regulator Full time

    The Railway Safety Regulator (RSR) seeks to appoint an Information and Communication Technology (ICT) Chair and one (1) member. The ICT Committee carries out its functions in line with the roles, responsibilities and powers set out in the PFMA, the National Treasury Regulations, the RSR ICT Committee Charter and King IV. **REQUIRED QUALIFICATIONS, SKILLS...

  • Ict Committee Member

    2 weeks ago


    Midrand, South Africa Railway Safety Regulator Full time

    The Railway Safety Regulator (RSR) seeks to appoint an Information and Communication Technology (ICT) Chair and one (1) member. The ICT Committee carries out its functions in line with the roles, responsibilities and powers set out in the PFMA, the National Treasury Regulations, the RSR ICT Committee Charter and King IV. **REQUIRED QUALIFICATIONS, SKILLS...


  • Midrand, Gauteng, South Africa Railway Safety Regulator Full time

    The RSR seeks to appoint an ICT Committee Chairperson. The ICT Committee carries out its functions in line with the roles, responsibilities and powers set out in the PFMA, the National Treasury Regulations, the RSR ICT Committee Charter and King IV.REQUIRED QUALIFICATIONS, SKILLS AND EXPERIENCE: Minimum 10 years' experience at Senior Management level gained...


  • Midrand, Gauteng, South Africa Railway Safety Regulator Full time

    The Railway Safety Regulator (RSR) seeks to appoint an Information and Communication Technology (ICT) Chair and one (1) member. The ICT Committee carries out its functions in line with the roles, responsibilities and powers set out in the PFMA, the National Treasury Regulations, the RSR ICT Committee Charter and King IV.REQUIRED QUALIFICATIONS, SKILLS AND...

  • Ict Committee Member

    2 weeks ago


    Midrand, Gauteng, South Africa Railway Safety Regulator Full time

    The Railway Safety Regulator (RSR) seeks to appoint an Information and Communication Technology Committee (ICT Committee) member. The ICT Committee performs its functions in line with the roles, responsibilities and powers set out in the PFMA, National Treasury Regulations, RSR ICT Committee Charter and King IV.REQUIRED QUALIFICATIONS, SKILLS AND EXPERIENCE:...


  • Midrand, South Africa SACAA Full time

    **OVERALL, PURPOSE OF THE JOB** To provide the complete end to end support to AVSEC Risk specialist in the development and implementation of aviation security risk management framework. By providing technical/administrative support in the Risk and data analysis functional area within the aviation security risk area, through gathering appropriate data and...


  • Midrand, South Africa Advanced Projects and People Full time

    **Introduction** The purpose of the role is to ensure that the security services are delivered as described in the SOW/agreement. **Duties & Responsibilities** **Compliance Management**: - Measuring performance against SLA’s. - Identifying major interventions to be planned for the next month. - Understanding the IT Policies and Processes within the...

  • Ict Support

    2 weeks ago


    Midrand, South Africa IIE MSA and IIE Varsity College Full time

    **Direct Reporting Line**: Head: IT Support **Varsity College** is an educational brand of The Independent Institute of Education (The IIE). The IIE enjoys the reputation of being at the forefront of private higher education in South Africa and is registered with the Department of Higher Education and Training (DHET) to provide higher education...


  • Midrand, South Africa Adcorp Holdings Full time

    **Synopsis** Our Client in the Telecommunications industry is hiring for a Cyber Security Specialist as an Independent Contractor for 12 months. This role will allow you to gain experience in working with one of the largest telecommunications companies in South Africa. Hybrid Midrand based on the hunt for an experienced and highly skilled Cyber Security...


  • Midrand, Gauteng, South Africa Advanced Projects and People Full time

    IntroductionThe purpose of the role is to ensure that the security services are delivered as described in the SOW/agreement.Duties & ResponsibilitiesCompliance Management: Measuring performance against SLA's. Identifying major interventions to be planned for the next month. Understanding the IT Policies and Processes within the cross functional service...


  • Midrand, Gauteng, South Africa RJPersonnel Full time

    1years Manage, install, configure, upgrade operating systems and software. Using standard business and administrative packages Install, assemble, configure computers, monitors, network infrastructure and peripherals, such as cables and printers. Help in maintaining departmental LAN. Analyze and monitor the ICT connectivity environment. Advise on technical...


  • Midrand, Gauteng, South Africa Adcorp Holdings Full time

    SynopsisOur Client in the Telecommunications industry is hiring for a Cyber Security Specialist as an Independent Contractor for 12 months. This role will allow you to gain experience in working with one of the largest telecommunications companies in South Africa.HybridMidrand basedon the hunt for an experienced and highly skilled Cyber Security Senior...


  • Midrand, South Africa DBSA Full time

    The role of the Infrastructure Specialist is to ensure that the Banks’ Information Communication and Technology infrastructure services are available in line with the Service Level Agreement between the Information Communication and Technology Unit and business. **Key Responsibilities**: - Contribute to the formulation of Request for Proposals, Service...


  • Midrand, South Africa Adzuna ZA B C2 Full time

    Our Client in the Telecommunications industry is hiring for a Cyber Security Specialist as an Independent Contractor for 12 months. This role will allow you to gain experience in working with one of the largest telecommunications companies in South Africa.The ideal candidate to come from or worked with clients in the : Financial Services /...


  • Midrand, South Africa TalentCru Full time

    Our Client in the Telecommunications industry is hiring for a Cyber Security Specialist as an Independent Contractor for 12 months. This role will allow you to gain experience in working with one of the largest telecommunications companies in South Africa.The ideal candidate to come from or worked with clients in the  : Financial Services /...


  • Midrand, South Africa Adzuna ZA B C2 Full time

    Our Client in the Telecommunications industry is hiring for a Cyber Security Specialist as an Independent Contractor for 12 months. This role will allow you to gain experience in working with one of the largest telecommunications companies in South Africa.The ideal candidate to come from or worked with clients in the : Financial Services /...