Director Information Security

2 days ago


Johannesburg, South Africa TransUnion Full time

TransUnion's Job Applicant Privacy Notice

**What We'll Bring**:
TransUnion works with businesses and consumers to gather, analyze, and deliver critical information needed to build strong economies around the world. Protection of that information is critical our customers and business. As an Information Security Director, you will be responsible for leading our Information Security function across TransUnion Africa. You will drive the execution of our regional Information Security strategy through deployment of security technologies and projects, interfacing with senior IT, business, customer and regulatory leaders, and overseeing the local Information Security team. You will serve as the process owner of all assurance activities related to ensure compliance with the organization's information security policies. A key element of the role is working with executive management to determine acceptable levels of risk for the organization, identifying emerging risks and building mitigation plans. Overall, this position is responsible for a regional information security management program that spans eight African countries.

**What You'll Bring**:
**How You’ll Contribute**
- Responsible for enterprise-wide security in the Business Unit, as such you will effectively be the Chief Information Security Officer for the BU, interfacing with TU’s key stakeholders in the African region and other international locations, as well as the Global Information Security group.
- Operate in a matrix organization with functional alignment into Global Information Security and dotted reporting into the regional Technology organization.
- Work directly with business unit leaders to facilitate risk assessment and risk management processes.
- In close collaboration with local IT, PMO, and Global Information Security, drive execution of Information Security projects, including technology deployments, ongoing security assessments and other risk management activities as per TU’s Information Security strategy and plan.
- Maintain and enhance an information security management system in accordance with ISO 27001 standards.
- Support and develop the information security strategy, risk management initiatives, and become a trusted advisor and thought leader to meet business, client and regulatory demands.
- Provide leadership, oversight and performance management to the organization’s geographically distributed information security department, including coaching and motivation for high performance.
- Maintain accountability for the Information Security budget in the region.
- Facilitate certifications, as necessary and determined by the business or Global Information Security, for SSAE 18, PCI DSS and ISO 27001.
- Partner with business stakeholders across the company to raise awareness of risk management concerns and to drive and influence their resolution.
- Work within the project and resource prioritization process to ensure security projects and efforts a represented, prioritized and executed
- On regular basis, report status of security posture and progress against objectives to senior management in Global Information Security and regional IT.
- Maintain a thorough understanding of current security deviations, open assessment and audit findings, and vulnerabilities in TU’s security posture.
- Mobilize and support regional responses to threats and incident investigations in an effective and timely manner.
- In conjunction and coordination with Global Information Security, maintain and test incident response process and ensure its continued integration with regional and global escalation protocols.
- Oversee the completion of security audits by customers and data providers.
- Prepare and contribute in periodic communication and presentations to local TU business and functional leaders regarding regional security posture and direction.
- Complete annual planning process through ownership and accountability for BU plans for Information Security that align with global strategy but reflect nuances of local needs, where appropriate.

Assist with the overall business technology planning, providing a current knowledge and future vision of technology and systems

**Impact You'll Make**:
**What You’ll Bring**
- 12 years+ of extensive experience in risk management, information security and IT
- 10 years Information Security Management
- Degree in Business Administration or a technology-related field required
- Professional security management certification in Information Security / Cyber Security or industry qualifications (CISSP, CISM, CISA, CCSP)
- Strong leadership, project management skills, time management, and problem-solving skills
- Ability to work in a virtual, global matrix organization
- Innovative thinking and leadership with an ability to lead and motivate cross-functional, interdisciplinary teams
- Experience with working with local and regional regulators and authorities such as the National Credit Regulator & the Information Regulator



  • Johannesburg, South Africa Kalagadi Manganese | View - Information Security Officer Full time

    Overview The Information Security Officer is responsible for protecting the organisation’s information assets by implementing and maintaining effective information security policies, procedures, and controls. This role ensures compliance with security standards, mitigates risks, and supports business continuity while safeguarding confidential and sensitive...


  • Johannesburg Metropolitan Area, South Africa Wolfpack Information Risk Full time R240 000 - R320 000 per year

    Our client is looking for an Information Security Officer (ISO) to join their team on a 12 month contract with a view to extend if a good fit.Key Responsibilities:To support the ISO team to achieve the following across all entities within the group:Risk Management: Identifying, accepting, developing solutions for, and mitigating risks.Maintain a risk...


  • Johannesburg, South Africa University Of Johannesburg Full time

    A leading South African university is seeking a Director of Information Security to develop and implement comprehensive security strategies to safeguard the organization's information and technology infrastructure. This role requires significant management experience in information security, along with competency in risk assessment and compliance management....


  • Johannesburg, South Africa Kalagadi Manganese | View - Information Security Officer Full time

    A leading mining company in Johannesburg is seeking an experienced Information Security Officer responsible for protecting information assets and ensuring compliance with security standards. The role involves developing and implementing security policies, managing security systems, and conducting risk assessments. Candidates should have a Bachelor's degree...


  • Johannesburg, South Africa Wolfpack Information Risk Full time

    Head of Human Resources at Wolfpack Information Risk (Pty) Ltd Our client is looking for an Information Security Officer (ISO) to join their team on a 12 month contract with a view to extend if a good fit. Key Responsibilities To support the ISO team to achieve the following across all entities within the group: Risk Management: Identifying, accepting,...


  • Johannesburg, South Africa Wolfpack Information Risk Full time

    Head of Human Resources at Wolfpack Information Risk (Pty) Ltd Our client is looking for an Information Security Officer (ISO) to join their team on a 12 month contract with a view to extend if a good fit. Key Responsibilities To support the ISO team to achieve the following across all entities within the group : Risk Management : Identifying, accepting,...

  • Security Analyst

    2 weeks ago


    Johannesburg, Gauteng, South Africa Information Security Architects (ISA) Full time R400 000 - R800 000 per year

    Information Security Architects – Security AnalystInformation Security Architects (ISA) is a leading and trusted Managed Security Services Provider (MSSP) on the African continent. Established in the 1990s, ISA has evolved from a focus on firewall and anti-virus technologies to delivering a full suite of cutting-edge security services. We support our...


  • Johannesburg, South Africa University Of Johannesburg Full time

    A leading educational institution in Johannesburg is seeking a Director of Information Security to develop and implement security strategies. The successful candidate will manage a cybersecurity team and ensure compliance with relevant regulations. Ideal applicants will have at least 5-8 years of experience in information security management and a relevant...


  • Johannesburg, South Africa University Of Johannesburg Full time

    Director : Information Security (P5) (Information & Communication Systems : Management Information Systems) Advert reference : uj_ Advert status : Online Apply by : 21 February Position Summary Job category : Education and Training Campus : Auckland Park Kingsway Campus Contract : Permanent Remuneration : Market Related EE position : EE Introduction The...


  • Johannesburg, South Africa University of Johannesburg Full time

    Director: Information Security (P5) (Information & Communication Systems: Management Information Systems) Advert reference: uj_ Advert status: Online Apply by: 21 February 2025 Position Summary Job category: Education and Training Campus: Auckland Park Kingsway Campus Contract: Permanent Remuneration: Market Related EE position: EE Introduction The...