Manager: Information Security

2 weeks ago


Bellville, South Africa University of the Western Cape Full time

**A.** **Information Security Governance**
i. Establish, communicate and maintain information security policies, standards, procedures and other documentation that support information security,
ii. Facilitate the development of an information security strategy aligned with the University’s IT governance model and its strategic goals and objectives,
iii. Identify current and potential legal and regulatory requirements affecting information security,
iv. Establish reporting and communication channels that support information security.

**B. Information Security Risk Management**
i. Establish a process for information asset classification and ownership,
ii. Implement a structured information risk assessment mitigation and reporting process,
iii. Ensure that threat and vulnerability evaluations are performed on an ongoing basis,
iv. Identify and periodically evaluate information security controls and counter-measures to mitigate risk to acceptable levels,
v. Integrate risk, threat and vulnerability identification and management into operational management and program delivery processes.

**C. Information Security Program Development**
i. Ensure the development of information security architectures (considering people, information, processes and technology),
ii. Develop and maintain plans to implement the information security strategy ensuring alignment with other assurance functions,
iii. Specify the activities to be performed within the information security program / projects,
iv. Develop a program for information security awareness, training and education,
v. Recommend and advise information security requirements into the organization’s processes and life cycle activities (e.g. change control, software development, employment, procurement etc.),
vi. Advise on the integration of information security controls into contracts,
vii. Establish metrics to evaluate the effectiveness of the information security program.

**D. Information Security Program Management**
i. Oversee the execution of information security programs,
ii. Oversee the performance of contractually agreed information security controls (e.g., with joint ventures, outsourced providers, business partners, third parties),
iii. Provide information security advice and guidance (e.g., risk analysis, control selection) across the institution,
iv. Provide information security awareness, training and education to stakeholders (e.g. business process owners),
v. Monitor, measure and report on the effectiveness and efficiency of information security controls and compliance with information security policies.

**E. Information Security Incident Management and Response**
i. Develop and maintain plans to respond to and document information security incidents,
ii. Develop and implement processes for preventing, detecting, identifying, analysing, and responding to information security incidents,
iii. Establish escalation and communication processes and lines of authority,
iv. Track and Facilitate the investigation of information security incidents (e.g. forensics, evidence collection and preservation, log analysis, interviewing),
v. Develop a process to communicate with internal and external stakeholders (e.g. media, law enforcement, staff and students),
vi. Integrate information security incident response plans with the institution’s disaster recovery and business continuity plan,
vii. Formulate training and awareness programs for information security incident response,
viii. Provide guidance on the resolution of major information security incidents,
ix. Facilitate reviews to identify root causes of information security incidents, facilitate corrective actions and re-assess risk.

**Minimum Requirements**

**Minimum Requirements: Qualification, Skills and Experience**:

- Bachelor’s degree in Computer Science or Information Systems, or an equivalent NQF-7 accredited qualification,
- An accredited, internationally recognised Information Systems Security certification,
- Demonstrable IT Service Management experience,
- A minimum of 3 - 5 years' relevant Information Security (InfoSec) Management experience in an enterprise environment,
- Proficiency in legal, regulatory and other compliance requirements related to InfoSec (e.g. POPIA),
- Successful track record in developing and managing InfoSec projects / programs,
- Experience in Security incident management, Security Investigations and root cause analysis,
- Advanced proficiency in MS Office (MS Word, Excel, Power Point),
- Excellent English Communication skills (verbal and written),
- Strong facilitation and inter-personal skills,
- Strong business acumen.

**Preferred Qualifications, Skills and Experience**:

- CISSP certification (Certified Information Systems Security Professional),
- CISM certification (Certified Information Security Manager),
- Experience in developing InfoSec policies, plans and procedures aligned to ISO/IEC 27001 & 27002 standards,
- An accredited certification in Problem Managemen



  • Bellville, Western Cape, South Africa Sanlam Full time

    Santam seeks an experienced Information Security Expert to join its Business Information and Technology Services (BITS) department. As a senior role, this position will be based in the Western Cape or Gauteng.Key Responsibilities:Establish and manage a Santam Business Unit (SBU) Information Security Programme to ensure effective risk management and...


  • Bellville, South Africa Sanlam Full time

    Who are we? Sanlam Group Technology is responsible for the provision of a digitally enabled technology service as a group COE, drive business and transformation and provide group-wide digital and data architecture. We operate the various technology platforms and shared services, ensure Cyber and Information Security resilience, and act as technology...


  • Bellville, South Africa Sanlam Full time

    Who are we? Sanlam Group Technology is responsible for the provision of a digitally enabled technology service as a group COE, drive business and transformation and provide group-wide digital and data architecture. We operate the various technology platforms and shared services, ensure Cyber and Information Security resilience, and act as technology...


  • Bellville, South Africa Sanlam Full time

    What will you do? Responsible for providing operational information technology security support to ensure that the organisation is not compromised in any way. Conducts necessary housekeeping as required. What will make you successful in this role? **Logical Access Administration**: Service new requests to create, adjust and remove users and access on the...


  • Bellville, South Africa Sanlam Full time

    **What will you do?** - Assisting, performing and reporting on key information security activities such as: - Reporting and follow ups with regards to Anti-Malware, Anti-Virus, Security patching of all IT related hardware/software. - Investigate and resolve logical access incidents. - Provide afterhours & weekend support as part of project involvement and...


  • Bellville, South Africa Sanlam Full time

    **CAREER OPPORTUNITY** - Santam BITS has a career opportunity for a senior role of Business Information Security Officer (BISO) in the Business Information and Technology Services (BITS) department which will be based in the Western Cape or Gauteng. **KEY RESPONSIBILITIES** - Establish and manage a Santam Business Unit (SBU) Information Security...


  • Bellville, South Africa Sanlam Full time

    **CAREER OPPORTUNITY** - Santam BITS has a career opportunity for a senior role of Business Information Security Officer (BISO) in the Business Information and Technology Services (BITS) department which will be based in the Western Cape or Gauteng. **KEY RESPONSIBILITIES** - Establish and manage a Santam Business Unit (SBU) Information Security...


  • Bellville, Western Cape, South Africa Sanlam Full time

    Santam BITS has a career opportunity for a senior role of Business Information Security Officer (BISO) in the Business Information and Technology Services (BITS) department which will be based in the Western Cape or Gauteng.KEY RESPONSIBILITIESEstablish and manage a Santam Business Unit (SBU) Information Security Programme.Implement cybersecurity awareness...


  • Bellville, Western Cape, South Africa BOSS Professional Services (Pty) Ltd Full time

    About the Role: Our company is looking for an experienced Information Security Consultant: Network Protection to join our team. The successful candidate will have expertise in network security, data protection, and risk management.Responsibilities:Conduct regular security audits and provide recommendations for improvement.Develop and implement security...


  • Bellville, South Africa Progressive IT Resourcing Full time

    Responsible for providing operational information technology security support to ensure that the organization is not compromised in any way. **Permanent, Cape Town based** **Role Responsibilities** **Logical Access Administration**: Service new requests to create, adjust and remove users and access on the following environments: - Microsoft Active...


  • Bellville, South Africa Sanlam Full time

    What will you do? The Business Information Security Officer (BISO) is responsible for identifying and assessing the Information Security requirements of the business. The BISO in conjunction with the Business CIO, is responsible for the establishment and maintenance of an Information Security Management System (ISMS) and ensure that the appropriate...


  • Bellville, South Africa Sanlam Full time

    What will you do? The Business Information Security Officer (BISO) is responsible for identifying and assessing the Information Security requirements of the business. The BISO in conjunction with the Business CIO, is responsible for the establishment and maintenance of an Information Security Management System (ISMS) and ensure that the appropriate...


  • Bellville, South Africa Sanlam Full time

    Who are we? Sanlam Group Technology is responsible for the provision of a digitally enabled technology service as a group COE, drive business and transformation and provide group-wide digital and data architecture. We operate the various technology platforms and shared services, ensure Cyber and Information Security resilience, and act as technology...


  • Bellville, South Africa Sanlam Full time

    Who are we? Sanlam Group Technology is responsible for the provision of a digitally enabled technology service as a group COE, drive business and transformation and provide group-wide digital and data architecture. We operate the various technology platforms and shared services, ensure Cyber and Information Security resilience, and act as technology...


  • Bellville, South Africa Sanlam Full time

    Who are we? Sanlam Group Technology is responsible for the provision of a digitally enabled technology service as a group COE, drive business and transformation and provide group-wide digital and data architecture. We operate the various technology platforms and shared services, ensure Cyber and Information Security resilience, and act as technology...


  • Bellville, Western Cape, South Africa BOSS Professional Services (Pty) Ltd Full time

    BOSS Professional Services (Pty) Ltd is seeking a skilled Security Risk Management Professional to join our team. As a Security Risk Management Professional, you will be responsible for identifying and mitigating potential security risks to our clients' infrastructure.About the RoleThe ideal candidate will have a strong background in security risk...


  • Bellville, South Africa Xone Integrated Security (Pty) Ltd. Full time

    Xone Intergrated Security is seeking to employ a qualified and skilled Security supervisor for one of our sites located in the bellville/Durbanville area Registered PSIRA Grade A Clear Criminal Record Minimum 5 years Access control / Security experience. Minimum 2 years CCTV control room experience Minimum 2 years Supervisory / management experience /...


  • Bellville, Western Cape, South Africa Sanlam Full time

    Santam is looking for a Business Information Risk Officer to join its Business Information and Technology Services (BITS) department. As a senior role, this position will be based in the Western Cape or Gauteng.Responsibilities:Develop and implement a comprehensive information security programme to protect Santam's business operations and assets.Work closely...


  • Bellville, South Africa Cape Peninsula University of Technology Full time

    Faculty- Support / Admin Department- Department- Cape Peninsula University of Technology -> Computer & Telecom Services -> Networking- Campus/ Location- Bellville Campus - Bellville, Cape Town, WC ZA (Primary) - Job Type- Permanent- Occupational Function- Support / Admin- Number of Positions- 1- Annual Salary Package (incl. Medical Aid rate based on...


  • Bellville, Western Cape, South Africa BOSS Professional Services (Pty) Ltd Full time

    Job Description: We are seeking a skilled Network and Cyber Security Risk Manager to join our team at BOSS Professional Services (Pty) Ltd. The ideal candidate will have extensive experience in risk management, security operations, and network security.Key Responsibilities:Develop and implement risk management strategies to mitigate cyber threats.Conduct...