Executive: IT Governance, Risk and Compliance

1 week ago


Centurion, South Africa Telkom SA Limited Full time

**Core Description**:
**Competencies**:
FUNCTIONAL KNOWLEDGE:
Business Threat Identification and Communication; Information Risk Assessment and Management; Regulatory and Legal Frameworks; Change Management and Change Risk; GRC and Security Standards, Policies and Practices; Information Risks within Systems and IT Architecture; Information Risks within people and processes; Infrastructure Risks to business delivery; Enterprise and Security Architecture; Operational Security Practices and Management Information Security Awareness; Information Security value

FUNCTIONAL SKILLS:
Strategy formulation & Execution; Incident Management and Response; Analytical and investigative; Communication and Interpretation; Decision making; Problem solving; Project and complex task management; Risk Awareness and explanation

ATTITUDES/LEADERSHIP COMPETENCIES:
Integrity; Assertive; Confident; Initiator; Supportive; Persuasive; Team Player; Problem Ownership Thought Leadership: Developing strategies/ Providing insights; Generating ideas; Exploring possibilities; Examining information; Adopting practical approaches Market Leadership: Developing expertise; Challenging ideas; Interacting with people; Understanding people; Seizing opportunities; Managing tasks Business Leadership: Pursuing goals; Taking action; Upholding standards; Managing tasks; Seizing opportunities People Leadership: Making decisions; Empowering individuals; Challenging ideas; Directing people; Convincing people; Interacting with people Personal Leadership: Embracing change; Thinking positively; Showing composure; Understanding people; Valuing individuals; Team working Values Aligned with Telkom Values (CHART)

**Responsibilities**:
**IT Governance, **IT Risk Management, **IT Compliance Management**

***Information Security Management**
- Provide leadership and vision to ensure information security obstacles to achievement of business objectives are identified and addressed
- Effectively Communicate Information Security risk at senior management and strategic levels
- Ensure availability of appropriate skills, technologies, processes and resources
- Ensure all security teams, services, technologies and processes are coordinated throughout the organization
- Ensure production of timely, informative and accurate business and IT metrics relating to information risk - using these metrics prioritise key initiatives
- to reduce or respond to business risk
- Ensure that business systems and information security services and security of customer products and services are aligned and managed

**Information Security Governance**
- Oversee and coordinate all aspects of alignment of Telkom's Information Security Management System
- Ensure Appropriate Security Governance Create/ Maintain/ Communicate Information Security Policies and Standards
- Ensure Regulatory and Security Policy Compliance and Business Risk alignment through review and update processes
- Maintain Information Security Strategy ensuring Business Strategy Alignment, development of business cases to support short and long term strategic initiatives
- Ensure delivery of Information Security Awareness activities to communicating behavior, threats, and Business Risks

**Information Security Risk Management**
- Report to Business on assessment of Enterprise Information threats and Risks, ensure business affecting risks are included on Risk register
- Ensure appropriate Research, Identification and Assessment of Information threats to business (New and existing)
- Ensure and Manage Project and Change Consultation and Assessment of Risk
- Ensure appropriate security systems, tools and resources are made available to protect business initiatives
- Ensure Information Security Governance and Business forums operate and support business risk management
- Monitor, Assess and Report on Operational Security Assurance
- Ensure security operations and incident response capabilities are appropriate for threat environment

**Information Security Architecture**
- Ensure Enterprise Security Architecture aligns with business requirements and risks
- Advise and recommend Technical Security direction in support of Enterprise Security Architecture
- Define, Assess and Communicate Information Security elements within Business and IT Architecture
- Information Security input to Business cases and projects
- Ensure Information Security Architecture requirements are met within all systems and processes
- Ensure network, technology and security architectures are consistent throughout the company

**Required Certification**:
Required at least one of: CISM, CRISC CISSP, SABSA, CoBIT

Optional: CISA, CoBIT, TOGAF, ITIL

**Qualifications**:

- Relevant 3 year Degree in IT or Information Security (NQF level 7).
- Post graduate qualification preferred.

**Experience**:
8 Years relevant experience, of which at least 3 years on senior management level. Practical experience in IT GRC with specialisation in Information Security, of which seven



  • Centurion, South Africa RMV Solutions Full time

    Performing disaster recovery operations and data backups when required. - Protecting data, software, and hardware by coordinating, planning, and implementing network security measures. - Troubleshooting, diagnosing, and resolving hardware, software, and other network and system problems. - Replacing faulty network hardware components when required. -...


  • Centurion, South Africa Telkom SA Limited Full time

    **Core Description**: Responsible for governance and processes to enable a positive customer experience. Ensure that these processes are applied, enhanced and continuously reviewed and aligned the organisation strategy. Support and monitor adherence to Procurement procedures and supplier compliance requirements. **Competencies**: Procurement Policies,...


  • Centurion, South Africa Secondments Full time

    Key Performance Areas **1. Implement a comprehensive compliance programme aligned to organisational planning process** - Assist management in the design, development and implementation of compliance frameworks - Assist in the design, development and delivery of compliance awareness and training interventions - Develop or review, advise and create awareness...

  • General Manager

    4 days ago


    Centurion, South Africa Edge Executive Search Full time

    General Manager: Enterprise Risk Position: Permanent Location: Centurion, Johannesburg **MAIN PURPOSE OF THE JOB** To lead and establish appropriate Commercial and Enterprise risk management principles within the organisation by developing implementing and maintaining risk management policies, standards and processes in line with the strategic objectives of...


  • Centurion, South Africa Momentum Metropolitan Holdings Full time

    -Introduction Momentum, a financial services provider of choice since 1966, known for its entrepreneurial spirit and innovative culture is committed to wealth creation and preservation, insurance, and income protection for all our clients. We do this through our understanding of the retail insurance, savings, and investment markets in SA. Role Purpose The...


  • Centurion, South Africa Risk Management Full time

    **Introduction**Disclaimer** - As an applicant, please verify the legitimacy of this job advert on our company career page.**Role Purpose** - To provide comprehensive AML/FICA compliance solutions, advice, and opinions to meet the business requirements of the Momentum Group, and engage in legal risk management and mitigation related to AML and financial...

  • Strategic Risk

    2 weeks ago


    Centurion, South Africa Momentum Metropolitan Holdings Limited Full time

    A leading insurance firm in Centurion is seeking a Chief Risk Officer to manage risk and compliance comprehensively. The ideal candidate will have extensive experience in risk management within the financial sector and will be responsible for formulating risk strategies, fostering client relationships, and overseeing regulatory compliance. This executive...


  • Centurion, South Africa Telkom SA Limited Full time

    **Core Description**: **Competencies**: **Functional Knowledge** Business Threat Identification and Communication; Information Risk Assessment and Management; Regulatory and Legal Frameworks; Change Management and Change Risk; GRC and Security Standards, Policies and Practices; Information Risks within Systems and IT Architecture. Information Risks within...

  • Chief Risk Officer

    3 weeks ago


    Centurion, South Africa Keo-Kutlwi Group (Pty)Ltd Full time

    Job Summary: Partner with stakeholders to provide trusted and valued risk management, legal and compliance services that advances the business' strategy and achieves the appropriate balance between risk and reward, while challenging business to manage risks better, thereby enhancing the business' reputation with all stakeholders. Job Function: -Responsible...

  • Chief Risk Officer

    3 weeks ago


    Centurion, South Africa Keo-Kutlwi Group (Pty)Ltd Full time

    Job Summary: Partner with stakeholders to provide trusted and valued risk management, legal and compliance services that advances the business' strategy and achieves the appropriate balance between risk and reward, while challenging business to manage risks better, thereby enhancing the business' reputation with all stakeholders. Job Function: -Responsible...