Aviation Security Risk Management Specialist

1 day ago


Midrand, South Africa SACAA Full time

The South African Civil Aviation Authority (SACAA) has an exciting opportunity in our Aviation Security department. We are looking for a talented individual with the relevant skills and experience who will:

- develop and manage an Aviation Security Risk Management System.
- develop and monitor Cyber Security Governance Framework, incorporating norms and standards for managing cyber security within the aviation industry.
- ensure SACAA achieves its objectives and goals of protecting civil aviation data systems from malicious electronic attacks (unlawful interference) and developing means to deal with the consequences of such attacks.

**AVIATION SECURITY RISK MANAGEMNET FRAMEWORK**
- Develop and maintain an Aviation Security Risk Management Framework for the South African Aviation industry.
- Guide the South African Aviation industry on the implementation of a security risk framework and risk management.
- Establish and manage a security risk assessment and the mitigation process for the aviation industry.
- Establish a security data collection and analysis system.
- Maintain the Aviation Security National Risk Context Statement up to date and collate data to inform the Statement.
- Engage all stakeholders on prevailing aviation security risks as well as mitigation measures to be implemented periodically.

**AVIATION CYBER SECURITY FRAMEWORK OVERSIGHT AND REVIEW**
- Develop and oversee the implementation of the cybersecurity framework and strategy, and overarching aviation risk strategy, ensuring effective implementation across the civil aviation industry.
- Receive and review for approval Cyber Security Strategies and DRP periodically from aviation industry stakeholders.
- Lead the identification, implementation, and mitigation of security mechanisms.
- Participate in the development of future standards and requirements in collaboration with industry peers.
- Lead, develop, manage and maintain the cybersecurity governance deliverable lifecycle including ICAO standards.

**MANAGEMENT OF CYBER SECURITY INCIDENTS**
- Develop and implement security incident management, response, and recovery strategies.
- Advise the Operators on the potential impact on cyber governance/risk/compliance requirements.
- Provide support for the implementation of risk mitigation strategies when required.

**MANAGEMENT OF THE NON-CONFORMANCE REPORTING SYSTEM AND DATABASE**
- Manage the development and monitoring of the non-conformance database, and analysis of trends.
- Communicate with Operators on new trends and threads concerning cyber security in the aviation environment.

**LIAISON AND CONSULTATION**
- Establish a consultative structure for the aviation industry
- Develop strategy and monitor implementation
- Provide feedback to SACAA
- Participate in relevant structures within the aviation industry, risk management and cyber security

**M**inimum Qualification**:

- National Diploma or equivalent NQF Level 6 qualification in Computer Science/ Information Technology or related qualification
- Risk Management certificate would be advantageous

**Ideal Qualification**:

- Cyber Security certification (CISM, CISA, CISSP)
- Quality Management certificate
- Information Security certification

**Experience**:

- 5 years Risk Management including Cyber Security

**Closing Date**:



  • Midrand, South Africa SACAA Full time

    **Oversight of the medical certification processes and procedures** - Oversight on certification of aviation personnel submitted by DAME. - Ensure that accredited medical conclusions are reached by preparation and presentation of the Aeromedical committee in line Terms of Reference - Conduct research to analyse trends and with implementation of aviation...


  • Midrand, South Africa Optimal Growth Technologies Full time

    Cyber Security Specialist (Governance, Risk & Compliance) Job Openings Cyber Security Specialist (Governance, Risk & Compliance) About the job Cyber Security Specialist (Governance, Risk & Compliance) Specialist Cyber Security (Governance, Risk and Compliance) Duration: 12 months Key Accountabilities and Decision Continually review and update security...


  • Midrand, South Africa Optimal Growth Technologies Full time

    Cyber Security Specialist (Governance, Risk & Compliance) Job Openings Cyber Security Specialist (Governance, Risk & Compliance) About the job Cyber Security Specialist (Governance, Risk & Compliance) Specialist Cyber Security (Governance, Risk and Compliance) Duration: 12 months Key Accountabilities and Decision Continually review and update security...


  • Midrand, South Africa Optimal Growth Technologies Full time

    A technology solutions provider is seeking a Cyber Security Specialist specializing in Governance, Risk, and Compliance. The role involves monitoring policies, conducting risk assessments, and managing compliance with security standards. Candidates should have a degree in IT and relevant certifications, along with at least 2 years of experience in Cyber...


  • Midrand, South Africa Optimal Growth Technologies Full time

    Specialist Cyber Security (Governance, Risk and Compliance) Location: Midrand Duration: 12 months Key Accountabilities and Decision Continually review and update security policies, standards, and guidelines in response to the ever-changing cyber threats in coordination with Enterprise Risk Management team. Core competencies, knowledge and experience:...


  • Midrand, South Africa SACAA Full time

    **INTRODUCTION** The South African Civil Aviation Authority (SACAA) has an exciting opportunity in our Aviation Security department. We are looking for a talented individual with the relevant skills and experience who will: - monitor the implementation of the National Aviation Security Plan (NASP) and other related Civil Aviation Regulations (CARs) in...


  • Midrand, South Africa Smart4 Energy Full time

    Information Security Management System (ISMS) Specialist Information Security Management System (ISMS) Specialist is responsible for the end-to-end implementation, maintenance, and continuous improvement of the Information Security Management System (ISMS) in accordance with ISO/IEC 27001 standards. The incumbent will play a pivotal role in ensuring the...


  • Midrand, South Africa Cell C Full time

    Principal Cyber Security Specialist At Cell C, we are not just a telecommunications company; we are a people‑centric, consumer‑focused organization committed to delivering exceptional experiences to our customers. In line with our dedication to customer‑centricity, we are seeking a seasoned professional Principal Specialist: Cyber Security to join our...


  • Midrand, Gauteng, South Africa Optimal Growth Technologies Full time R1 200 000 - R2 400 000 per year

    Specialist Cyber Security (Governance, Risk and Compliance) Location: Midrand Duration: 12 months Key Accountabilities and Decision Continually review and update security policies, standards, and guidelines in response to the ever-changing cyber threats in coordination with Enterprise Risk Management team. Core competencies, knowledge and experience:...


  • Midrand, Gauteng, South Africa Optimal Growth Technologies Full time R600 000 - R1 200 000 per year

    Specialist Cyber Security (Governance, Risk and Compliance)Location: MidrandDuration: 12 months Key Accountabilities and Decision Continually review and update security policies, standards, and guidelines in response to the ever-changing cyber threats in coordination with Enterprise Risk Management team. Core competencies, knowledge and experience:...