Specialist: Information Security Grc

3 days ago


Johannesburg, South Africa NTT Ltd. Full time

NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future.

In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve some of the world’s most significant technological, business and societal challenges.

With people at the heart of our success, NTT is committed to attracting and growing the best talent and providing an environment where everyone feels they can belong and their contribution matters.

**Want to be a part of our team?**

Join our exceptional team at NTT DATA as a dedicated Information Security GRC Specialist. If you have a passion for driving the development and maintenance of GRC platforms and reporting, this opportunity is perfect for you Your role will be crucial in ensuring consistent risk management, compliance, and reporting through the eGRC platform.

Responsibilities include leading the development of the eGRC platform, aligning it with industry standards, collaborating on risk assessments, and addressing cybersecurity compliance issues.

Qualifications include a degree in IT, Risk Management, or related fields, along with relevant certifications such as CISSP, CISA, or CRISC. With at least 3 years of relevant experience, you'll enjoy working in a dynamic environment, fostering growth, and making a significant impact on information security.

**Working at NTT**

Are you a dedicated Information Security professional with a focus on Governance, Risk, and Compliance (GRC) Do you have a strong understanding of Information Security principles and a passion for driving the development and maintenance of GRC platforms and reporting?

If you are eager to make a significant impact by ensuring consistent risk management, compliance, and reporting through the eGRC platform, this exciting opportunity is tailor-made for you

At NTT, we are actively seeking a skilled and motivated Information Security GRC Specialist to join our exceptional team. As a specialist, you will play a critical role in accelerating the development activities for our NTT eGRC platform while maintaining our commitment to managing cybersecurity risks and certifications. Your expertise in eGRC platform development, rollout, support, and operations will be the driving force behind our risk management and compliance efforts, ensuring our organization's resilience and security.

**Responsibilities**:

- Lead the development and enhancement of the NTT eGRC platform, working closely with stakeholders to gather requirements and ensure effective implementation.
- Ensure the eGRC platform aligns with industry standards and best practices, including ISO27001, ISO22301, ISO27017, ISO27018, SOC1/2, PCI-DSS, and NIST CSF.
- Collaborate with cross-functional teams to assess cybersecurity risks, conduct risk assessments, and support compliance audits.
- Monitor the effectiveness of IT security controls within the eGRC platform, making necessary improvements to maintain compliance.
- Investigate and address any cybersecurity compliance issues and incidents, coordinating with relevant business units to implement appropriate solutions.
- Develop advance reporting capabilities leveraging PowerBI and in-bult tools.
- Collaborate with other Information Security teams, including Business Continuity Management (BCM), Data Privacy and Protection (DPP), and Third-Party Risk Management (TPRM), to ensure holistic security measures.

**What We're Looking For**:

- Solid understanding of Information Security principles and best practices.
- Previous experience in the development, rollout, and operations of eGRC platforms is highly desirable.
- In-depth knowledge of risk management, compliance, and relevant laws and standards.
- Proactive attitude towards continuous learning and skill development.
- Excellent project management, analytical, and problem-solving skills.
- Strong communication abilities to effectively convey complex concepts to both technical and non-technical stakeholders.
- Ability to build and maintain strong customer relationships and stay informed about industry trends.
- Experience in workflow design and automation and management.

**Qualifications and Certifications**:

- Preferred: Degree in Information Technology, IT Audit, Cyber Risk Management, or a related field.
- Required: Professional certifications such as CISSP, CISA, CRISC, or equivalent. Additional certifications in GRC-related domains are advantageous.
- Required: At least 3 years of relevant work experience with a focus on GRC and cybersecurity.

**Why Join Us**:

- Be part of a dynamic and innovative organization that values your expertise and appreciates your contributions.
- Collaborate with a team of talented professionals in a supportive and collaborative environment.
- Unlock opportunities for growth and professional develop



  • Johannesburg, South Africa DataTech Recruitment Full time

    Growth-Minded Solutions Sales Specialist: Sell a World-Leading GRC Solution! Are you a revenue specialist with a passion for enterprise sales? Do you thrive in a fast-paced, team-oriented environment and enjoy building strong client relationships? If so, we have an exciting opportunity for you as a Solutions Sales Specialist! We're looking for a highly...


  • Johannesburg, South Africa DataTech Recruitment Full time

    GRC Specialist: Become a Pre-Sales Consultant & Champion World-Leading Solution! Are you passionate about technology and helping companies solve complex governance, risk, and compliance (GRC) challenges? Do you thrive in a fast-paced environment and enjoy building relationships with all levels of an organization? If so, we're looking for a talented...


  • Johannesburg, South Africa Kalagadi Manganese | View - Information Security Officer Full time

    Overview The Information Security Officer is responsible for protecting the organisation’s information assets by implementing and maintaining effective information security policies, procedures, and controls. This role ensures compliance with security standards, mitigates risks, and supports business continuity while safeguarding confidential and sensitive...


  • Johannesburg, South Africa Vodafone Full time

    **When it comes to putting people first, we're number 1.** The number 1 Top Employer in South Africa. Certified by the Top Employer Institute 2025. **Role Purpose/Business Unit**: Defining Cyber Governance, Risk & Compliance in order to: - Lead ongoing evaluation of security policies and relevant standards supporting the continuous improvement of the...

  • IT GRC Consultant

    2 weeks ago


    Johannesburg, Gauteng, South Africa Sapientis Talent Management Full time R1 200 000 - R2 400 000 per year

    We are seeking a highly motivated and experienced IT GRC Consultant to join our team for a three-month contract. The successful candidate will play a crucial role in ensuring the effective governance, risk management, and compliance of our clients IT systems and processes.Responsibilities:Conduct comprehensive business impact assessments (BIAs) to evaluate...


  • Johannesburg, Gauteng, South Africa Sapientis Talent Management Full time R900 000 - R1 200 000 per year

    We are seeking a highly motivated and experienced IT GRC Consultant to join our team for a three-month contract. The successful candidate will play a crucial role in ensuring the effective governance, risk management, and compliance of our clients IT systems and processes.Responsibilities:Conduct comprehensive business impact assessments (BIAs) to evaluate...


  • Johannesburg, South Africa The Hiring House Full time

    Requirements At least 2 years in Technology Risk, Security Compliance, GRC, CISO, or a similar position. Extensive experience managing compliance projects and audits (e.g., SOC 2, ISO 27001). Background in IT audit, including ITGC and SOX compliance for US-listed companies. Deep understanding of PCAOB standards. Familiarity with enterprise applications,...


  • Johannesburg, South Africa DGL HR Full time

    Introduction Please do not contact any of the recruiters directly. Should your CV be successful, we will be in contact. If you have not received feedback in 2 weeks, please consider your application unsuccessful. Desired Experience & Qualification IT Security and GRC Manager Location: Johannesburg, Gauteng Salary: +/- 1.25 Mil Pa Depending on experience The...


  • Johannesburg, South Africa The Hiring House Full time

    RequirementsAt least 2 years in Technology Risk, Security Compliance, GRC, CISO, or a similar position.Extensive experience managing compliance projects and audits (e.g., SOC 2, ISO 27001).Background in IT audit, including ITGC and SOX compliance for US-listed companies.Deep understanding of PCAOB standards.Familiarity with enterprise applications, including...

  • SAP Grc Consultant

    2 weeks ago


    Johannesburg, South Africa Prorek Full time

    Looking k5 to K6 level GRC consultant Key Qualifications - Deep knowledge of various aspects of SAP Security, both from a technical as well as business process perspective. - Knowledge of SAP authorization concept for both on-premise systems such as ECC, BW, Portal, BPC as well as S/4 HANA and new SAP Cloud solutions. - Experience with SAP GRC Access...