Devsecops - Manager

7 days ago


Johannesburg, South Africa Mikyle Consulting Full time

**Job Role: Manager
- Information Security (DEVSECOPS)**

**Introduction**:
**Description**:
We are looking for a **Manager

The above is related to software development practices relating to the SDLC (Software development lifecycle), Agile and DEVSECOPS practices and principles.

**Start Date**:As soon as possible

**Responsibilities**:

- Develop a security assessment schedule across the respective lines of business / business units with key focus on software development activities.
- Establish and maintain risk profiles for business units by facilitating the implementation and ongoing management of the SDLC (software-development-lifecycle)
- Collaborate threat intelligence, cybersecurity, security engineering and other risk functions to develop and maintain a holistic security strategy and remediation plans.
- Establish a threat modelling architecture that is measurable and relatable to business to increase maturity on software development practices.
- Collaborate with feature teams, product owners, architecture, IT, business, vendors and other stakeholders to investigate development activities.
- Assist in documenting and tracking security findings into a formal risk register. Provide the necessary information to support any deviation to IT Security policies and standards.
- Facilitate the use of secure architectural patterns and work with the security engineers to translate these patterns into line of business secure builds.
- Embed the use of self-service and automated security testing into the DevOps/Software Development Lifecycle.
- Facilitate continuous technical system reviews by working with the Penetration Test Team and assist business with interpretation and implementation of required controls.
- Recommend the implementation of effective controls to support defined security policies and standards. Co-ordinate and track the implementation of remediation plans.
- Establish relevant metrics and produce risk reports for stakeholders highlighting key risks, threats, incidents progress and status to assist in decision making.
- Participate in IT Security incident response planning and investigation of security breaches, and assist with disciplinary and legal matters associated with such breaches as necessary.

**Skills**:

- Solid understanding and good working knowledge of SAFe and Agile software development
- Interest in artificial intelligence, machine learning and robotics process automation
- Excellent written and verbal communication skills
- Strong facilitation, negotiation and conflict resolution skills
- Strong analytical and problem-solving skills, including the ability to decompose high level information into finer detail
- Proven ability to multi-task and work independently, as well as collaboratively as part of a cross-functional team
- Experience influencing and directing the actions of team members not directly under one’s line management responsibilities

**Work Experience**:

- Experience with cybersecurity frameworks such an NIST or ISO
- Five or more years’ relevant industry experience in software development practices.
- Experience within the Insurance and /or financial services sector is advantageous
- Knowledge of IT risk management principles and practices

**Qualification Requirements**:

- Bachelor’s degree in Computer Science, Information Systems Management, Cybersecurity, Information Assurance or a tertiary (3-year) qualification in a related field
- Any of the following certifications, in good standing, will be an added advantage: CRISC, CGEIT, CISA, CISM, CISSP or CCSP

**Job Types**: contract 12-months, renewable

**Salary**:market-related

**COVID-19 considerations**:
All COVID-19 precautions will be adhere to. Initial interviews will be conducted via telephone and/or video meetings.

**Education**:

- Bachelors (required)

**Experience**:

- Software development: 5 years (preferred)
- cybersecurity frameworks such an NIST or ISO: 1 year (preferred)

License/Certification:

- CRISC, CGEIT, CISA, CISM, CISSP or CCSP (required)


  • Specialist: Devsecops

    2 weeks ago


    Johannesburg, South Africa Vodafone Full time

    **When it comes to putting people first, we're number 1.** The number 1 Top Employer in South Africa. Certified by the Top Employer Institute 2025. **Role Purpose/Business Unit**: The primary purpose of the role is the implementation and continuous improvement of the DevSecOps programme within Vodacom South Africa, ensuring alignment with the Cyber Health...


  • Johannesburg, South Africa Vodacom Full time

    Role Purpose / Business Unit The primary purpose of the role is the implementation and continuous improvement of the DevSecOps programme within Vodacom South Africa, ensuring alignment with the Cyber Health and Adaptive Risk Method (CHARM) control. Responsibilities Implement, operate and continuously improve the DevSecOps Security Chapter and Champions model...

  • Devsecops Lead

    2 days ago


    Johannesburg, South Africa GoldenRule Full time

    **The Role** We are currently looking for a DevSecOps Lead in Johannesburg and Cape Town to implement and maintain a comprehensive DevSecOps Security Program. This is a 1st line of defence role and will report to the Chief Information Security Officer. **Skills and Experience** - Bachelor's or Master's degree in Technology related field. Information Systems...

  • Devsecops

    7 days ago


    Johannesburg, South Africa DotModus Full time

    **Your Position**: We’re looking for a talented DevSecOps engineer to help us build out our customers’ products and solutions on multiple hyper scalers (GCP/AWS/Azure). The role is not just about being able to write the code, but also being able to architect, integrate and institute best practices to the DevSecOps competency at DotModus. We value a...

  • Devsecops Engineer

    3 weeks ago


    Johannesburg, South Africa Publicis Groupe Full time

    Digitas Liquorice is the Connected Marketing agency, built on the principle that there are better ways for brands to connect with people. We leverage comprehensive data, technology, creative, media and strategy capabilities to deliver Media‑Fueled Creativity via connected Solutions that include Connected Campaigns, Social Marketing, Brand Experience, CRM &...

  • DevSecOps Engineer

    1 week ago


    City of Johannesburg Metropolitan Municipality, South Africa GMI Advisory Full time

    • Implement scalable, resilient, and secure solutions in the public cloud, especially in AWS. • Participate in automation initiatives to streamline processes, improve efficiencies, and reduce hosting cost. • Work closely with Product Owner, Platform Team, Solution Architects, and development teams for continuous improvement • Enhance and drive...

  • DevSecOps Engineer

    1 week ago


    City of Johannesburg Metropolitan Municipality, South Africa GMI Advisory Full time

    • Implement scalable, resilient, and secure solutions in the public cloud, especially in AWS. • Participate in automation initiatives to streamline processes, improve efficiencies, and reduce hosting cost. • Work closely with Product Owner, Platform Team, Solution Architects, and development teams for continuous improvement • Enhance and drive...


  • Johannesburg, South Africa NTT Ltd. Full time

    NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...


  • Johannesburg, Gauteng, South Africa Hire Resolve Full time R2 000 000 - R2 500 000 per year

    Hire Resolve's client is seeking a Technical Product Manager who will collaborate across cross-functional(multi-disciplinary) teams, including engineering, innovation, DevSecOps, data insights,digital transformation, finance, sales, marketing, the management committee, and customersuccess.Responsibilities:Commercialization & Revenue Growth: Pricing,...


  • Johannesburg, Gauteng, South Africa Boardroom Appointments Full time R1 200 000 - R1 800 000 per year

    Key purpose:Candidates must be proficient in Azure, AWS, Docker, Kubernetes, Terraform, building and modifying CI/CD pipelines, implementing and configuring security tooling - e.g. Software Composition Analysis (SCA), Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST).Duties and responsibilities:Ensure successful...