Information Security Specialist
1 week ago
Job Title
- Information Security Specialist
- Location
- Selby - Johannesburg, GP 2001 ZA (Primary)
- Occupational Level
- Senior Management
- Job Category
- IT Security
- Job Type
- Permanent
- Description
**PURPOSE**
The main purpose of the Security Specialist is to enhance the organization's overall security posture by driving cyber maturity for security products, supporting the Security Operations Center (SOC) function, and managing security incidents. The specialist will engage with both internal and external resources to ensure the effective implementation and operation of security measures.
**You will engage with the following stakeholders**:
- Business Unit Owners
- Chief Information Officer
- IT Risk Manager
- Enterprise Risk Manager
- IT Infrastructure team members
- Network team members
- Manager - End User Technology
- Internal Audit
- Systems Development team members
- External security vendors and partners
**Your key responsibilities include**:
**Enhance Security Posture**:
- Drive the overall cyber maturity of the organization's security products and practices to ensure a robust security posture.
- Conduct regular assessments and audits of security products to identify areas for improvement.
- Develop and implement strategies to enhance the effectiveness of security measures.
- Stay updated with the latest security trends, threats, and technologies to ensure the organization remains protected against emerging risks.
**Support SOC Function**:
- Provide comprehensive support to the Security Operations Center (SOC) in monitoring, analyzing, and responding to security events and incidents.
- Ensure that all required services are connected to and monitored by the SOC.
- Assist in the development and maintenance of SOC processes and procedures.
- Collaborate with SOC analysts to investigate and resolve security incidents.
- Ensure the SOC has the necessary tools and resources to effectively monitor and respond to security threats.
**Incident Management**:
- Lead the response to security incidents, including identification, containment, eradication, and recovery, ensuring mínimal impact on business operations.
- Develop and maintain incident response plans and playbooks.
- Coordinate with internal and external stakeholders during incident response activities.
- Conduct post-incident reviews to identify lessons learned and implement improvements to prevent future incidents.
**Engage with External Resources**:
- Develop and maintain relationships with external security vendors and partners to enhance the organization's security capabilities and ensure effective implementation and operation of security measures.
- Collaborate with external resources to stay informed about the latest security threats and best practices.
- Participate in industry forums and conferences to network with other security professionals and stay updated on industry developments.
- Manage service-level agreements with external security vendors to ensure the organization receives the best possible service.
**Implement Security Measures**:
- Ensure the effective implementation and operation of security measures across the organization, collaborating with both internal and external resources.
- Develop and enforce security policies, standards, and procedures.
- Support the security awareness training for employees to ensure they understand and comply with security policies.
- Facilitate regular security assessments and penetration tests to identify and address vulnerabilities.
**Continuous Improvement**:
- Identify and scope opportunities for improvement and innovation in security practices, contributing to the organization's strategic goals.
- Develop and implement a continuous improvement plan for the organization's security program.
- Monitor and evaluate the effectiveness of security measures and make recommendations for improvement.
- Foster a culture of continuous improvement within the security team and across the organization.
**Reporting and Dashboarding**:
- Develop and maintain security dashboards to provide visibility into the organization's security posture.
- Generate regular reports on security metrics, incidents, and trends for management and stakeholders.
- Analyze security data to identify patterns, trends, and areas for improvement.
- Ensure accurate and timely reporting of security incidents and compliance with regulatory requirements.
**QUALIFICATION/KNOWLEDGE**:
- Tertiary qualification or equivalent experience in computer science, information systems, or related technology infrastructure field.
- Security industry relevant certifications (e.g., CISSP, CISM, CISA, CompTIA Security+, CEH).
- Experience assessing, summarizing, and managing risk processes and methodologies in IT-related environments.
- Proficient with Microsoft Programs.
- Excellent written and verbal communication skills.
**EXPERIENCE**
- 5 to 10 years in a large internal IT division or corporate IT company.
- Minimum 5 years
-
Information Security Officer
22 hours ago
Johannesburg, South Africa Kalagadi Manganese | View - Information Security Officer Full timeOverview The Information Security Officer is responsible for protecting the organisation’s information assets by implementing and maintaining effective information security policies, procedures, and controls. This role ensures compliance with security standards, mitigates risks, and supports business continuity while safeguarding confidential and sensitive...
-
Security Analyst
1 week ago
Johannesburg, Gauteng, South Africa Information Security Architects (ISA) Full time R400 000 - R800 000 per yearInformation Security Architects – Security AnalystInformation Security Architects (ISA) is a leading and trusted Managed Security Services Provider (MSSP) on the African continent. Established in the 1990s, ISA has evolved from a focus on firewall and anti-virus technologies to delivering a full suite of cutting-edge security services. We support our...
-
Information Security Officer
7 days ago
Johannesburg Metropolitan Area, South Africa Wolfpack Information Risk Full time R240 000 - R320 000 per yearOur client is looking for an Information Security Officer (ISO) to join their team on a 12 month contract with a view to extend if a good fit.Key Responsibilities:To support the ISO team to achieve the following across all entities within the group:Risk Management: Identifying, accepting, developing solutions for, and mitigating risks.Maintain a risk...
-
Information Security Specialist
7 days ago
Johannesburg, South Africa Unique Personnel Full time**Job Number** - 72229 **Job Type** - Permanent **Job Title** - Information Security Specialist **Computer Skills** - CompTIA Security+,CISSP,CISM **Industry** - Web Hosting **City** - Johannesburg **Province** - Gauteng- **Security Infrastructure Management**: - Implement, configure, and manage security infrastructure, including firewalls, intrusion...
-
Information Security Leader: Policy, Risk
22 hours ago
Johannesburg, South Africa Kalagadi Manganese | View - Information Security Officer Full timeA leading mining company in Johannesburg is seeking an experienced Information Security Officer responsible for protecting information assets and ensuring compliance with security standards. The role involves developing and implementing security policies, managing security systems, and conducting risk assessments. Candidates should have a Bachelor's degree...
-
Information Security Officer
3 days ago
Johannesburg, South Africa Wolfpack Information Risk Full timeHead of Human Resources at Wolfpack Information Risk (Pty) Ltd Our client is looking for an Information Security Officer (ISO) to join their team on a 12 month contract with a view to extend if a good fit. Key Responsibilities To support the ISO team to achieve the following across all entities within the group: Risk Management: Identifying, accepting,...
-
Information Security Specialist
3 weeks ago
Johannesburg, South Africa Kalagadi Full timeROLE DESCRIPTION: Information security specialists focus on keeping an organisation's data and IT infrastructure secure, which requires a diverse set of skills and responsibilities. TASK AND RESPONSIBILITIES Conduct threat and risk analysis and analyse the business impact of new and existing systems and technologies to eliminate risk, performance, and...
-
Information Security Specialist
3 days ago
Johannesburg, South Africa Kpmg-Southafrica Full timeThe KPMG Africa Information Security Specialist is responsible for ensuring the confidentiality, integrity, and availability of all systems across KPMG Africa offices (South Africa, Botswana, Mauritius, Mozambique, Namibia, Zambia, Zimbabwe, Nigeria, Ghana, Kenya, Uganda, Tanzania, and Rwanda). The role involves actively managing and monitoring information...
-
Information Security Specialist
2 weeks ago
Johannesburg, South Africa BankservAfrica Full time**Do you see a future that includes more?** **More exposure to innovative technologies, more personal growth, more experience?** **Look at the position we have available and see how, together we can shape your future, so that you can give more and include more.**: - Job Title- Information Security Specialist- Location- Selby - Johannesburg, GP 2001 ZA...
-
Information Security Officer: Risk, Incident
3 days ago
Johannesburg, South Africa Wolfpack Information Risk Full timeA leading information security firm is looking for a Head of Human Resources to lead their information security efforts. The candidate will be responsible for risk management, compliance monitoring, and educating staff on cybersecurity best practices. A Bachelor's degree in a related field and relevant certifications are necessary. Experience in IT security...