Information Security Officer

1 week ago


Cape Town, South Africa CCi Full time

Does helping leading organisations achieve world-class performance sound exciting? Well keep reading, because Competitive Capabilities International (CCi) is looking for a experienced **Information Security Officer** to join our IT Team.

About Competitive Capabilities International (CCi)

CCi has a 35-year track record of helping leading organisations build competitive capability through maturity-based best practice implementation. We are immensely proud of our continuous improvement solution, TRACC, which has transformed over 3000 supply chains in more than 75 countries.

**About this role**
As a member of the IT Team, you will be responsible for establishing and maintaining an information security framework to provide assurance that the supporting security strategies are implemented and aligned with business objectives, IT governance and legislative/regulatory requirements. With this in mind, you will make an impact from day one by:

- Ensuring Information Security & Data Management is aligned to POPIA and GDPR compliance requirements
- Owning and driving the ISO 27001 certification maintenance and process
- Owning, managing and running the Security Awareness Training for the organization
- Review, manage and improve the ISMS system, process and platform
- Defining rolling 3 year information security strategy and roadmap, and supporting operations plan and budget estimates to close identified gaps
- Managing and improving incident response capability to proactively identify and mitigate against IT security risks or incidents, and recover from disruptive and destructive information security events
- Leading the IT security team responsible for day to day security and operational tasks, logical user access management, access certification review campaigns, including management of resource allocation and duties
- Providing information security input for architecture designs in AWS and Azure
- Managing and coordinating remediation of IT audit findings by implementing supporting IT security controls and processes
- Conducting the information security risk assessment programme, supported by vulnerability assessments and facilitating independent penetration testing
- Functioning as an internal IT Security consulting resource for other business units on information security
- Managing suppliers, partners and vendors to ensure adherence to security requirement
- Supporting the Information Officer on data governance related issues
**QUALIFICATION**
Education
- Relevant IT qualification in Information Systems
- CompTIA Security +, Systems Security Certified Practitioner (SSCP), CompTIA Cybersecurity Analyst (CySA+) and or Microsoft 365 Security Administration (MS-500).
Experience
- At least 4 - 6 years Information Security experience
- Practical experience with information security concepts, frameworks, methodologies, legislative and regulatory requirements (ISO 27001, NIST, POPIA, GDPR)
- Experience with infrastructure and network architecture technical design, security and management (firewalls, routers, switches, IDS, IPS, cloud computing, mobile device management, virtualization)
- Practical knowledge and understanding of information security tools, network security systems, host diagnostics, vulnerability assessments, penetration testing, threat assessments, report writing and documentation across multiple platforms
- Experience in implementing and configuring security systems, tools and programs e.g. SIEM, vulnerability scanning, coordinating penetration testing, ISMS platforms
- Basic scripting skills (e.g. bash, python, powershell)
- Understanding of threat analysis
- Experienced in Policy writing and reviews
- Experience in Agile/ relevant solution development methodologies will be beneficial
- Experience in Security practices and standards in development like the security development life cycle (e.g. OWASP) will be beneficial
**Specific Skills**
- Knowledge of ISO27000 essential and COBIT beneficial
- Knowledge of Information Risk Methodologies, threat modelling and Operational Risk management methodologies
- Knowledge of policies and project management methodologies
- Innovative, critical thinking and problem-solving skills
- Ability to quickly assimilate knowledge from outside own area of expertise
- Ability to work both independently and in a team
- Ability to explain and document what controls are needed and why, and identify pragmatic alternatives to mitigate threats and risks where time and cost constraints so dictate
- Good communication and organizational skills with a strong ability to influence, build relationships with, and negotiate with colleagues (both IT technical and non-technical, including project teams, managers, and business stakeholders), suppliers and external partners
**Personal Characteristics**
- Strong collaboration skills
- Sound personal relationships
- Highly accountable
- Attention to detail
- Strong analytical skills
- Delivery to deadline and quality focused
- Innovative an



  • Cape Town, South Africa Root Platform Full time

    **Mission**: At Root, we believe that the future of insurance is **digital**, **personalised** and **embedded**. Our mission is to grow insurance businesses into this future by providing the infrastructure that makes it possible. Your role as an Information Security Officer will be pivotal in crafting and executing a comprehensive information security...


  • Cape Town, South Africa IntelliStaff Full time

    **Area/Location**: **Centaury City, Cape Town** **Roles & Outcomes***: - Identify current and future security threats and advice organization on the mitigating measures. - Collaborate with other teams in addressing organization cyber threats. - Evaluate the current technical architecture for vulnerabilities and weaknesses, including potential upgrades or...


  • Cape Town, South Africa Vetus Schola Security Full time

    Seeking a Grade C security officer to come and work for VETUS Schola Security our offices are base in 70 Victoria street Somerset West. **MINIMUM SELECTION CRITERIA** - **Previous experience in the Private Security Industry** - **Must be prepared to work shifts** - **Must have a clear criminal record** - **Fluent in English, a second language would be...


  • Cape Town, South Africa Vetus Schola Security Full time

    Seeking a **Grade** **C security officer** to come and work for VETUS Schola Security our offices are base in 70 Victoria Street Somerset West. **MINIMUM SELECTION CRITERIA** - **Previous experience in the Private Security Industry** - **Must be prepared to work shifts** - **Must have a clear criminal record** - **Fluent in English a second language would...


  • Cape Town, South Africa Canonical - Jobs Full time

    This CISO role is for a global cybersecurity leader with a passion for Linux and open source to help define the way Canonical secures its corporate infrastructure, designs its products and assures regulatory compliance. This role will be responsible for the end to end definition and implementation of the cybersecurity and compliance program. They will...


  • Cape Town, Western Cape, South Africa Lexdan Full time R400 000 - R800 000 per year

    Lexdan Select is assisting a financial services company in their search for an information security analyst, based in Cape Town city centre.This is a hybrid role, with 2 to 3 days in-office.Salary: R to R p.a. Duties and responsibilities:Threat and Vulnerability Monitoring: Continuously monitor our environment to detect potential threats and vulnerabilities,...


  • Cape Town, South Africa VOSS Solutions Full time

    **About the company**: VOSS develops a range of products that are used by the world’s largest communications service providers and enterprises. These market-leading tools are paired with professional services to help our customers achieve the most from their digital workplace platform. We operate in a very dynamic industry and leverage the latest...


  • Cape Town, Western Cape, South Africa Lexdan Select Full time R180 000 - R250 000 per year

    Lexdan Select is assisting a financial services company in their search for an Information Security Analyst, based in Cape Town city.This is a hybrid role, with 2 days in-office.Salary: R to R p.a.Duties and responsibilities:Threat and Vulnerability Monitoring: Continuously monitor our environment to detect potential threats and vulnerabilities, ensuring...

  • Deputy Chief Security

    3 weeks ago


    Cape Town, South Africa M.S Security Group Full time

    The Deputy Chief Security Officer position demands extensive experience in maritime environments and a deep understanding of the ISPS code, maritime security laws, and security equipment measures. This role is designed for leaders capable of overseeing, teaching, and coaching within the security department. Key responsibilities include filling in for the...


  • Cape Town, South Africa Huble Full time

    Welcome to Huble 👋, HubSpot’s 2024 global partner of the year! We are a global HubSpot, AI, marketing & creative consultancy enabling mid-market and enterprise businesses move faster, adapt smarter, and innovate freely—by building their business around HubSpot’s CRM. We believe in striking a balance between professionalism and being human. Huble...