Principal Application Security Architect

3 weeks ago


Cape Town, South Africa Sanlam Full time

CAREER OPPORTUNITY

Santam BITS has a career opportunity for a senior role of Principal Application Security Architect in the Business Information and Technology Services (BITS) department which is based in the Western Cape or Gauteng.

KEY RESPONSIBILITIES

Driving a comprehensive application security strategy. Threat mitigation and risk management. Secure architecture and design. Vulnerability management and code reviews. Securing the development lifecycle. Collaboration and communication with development teams and other stakeholders. Protecting global assets. Understanding regional requirements. Lead the development and execution of application security assessments. Ensure applications comply with all relevant security standards and regulations. Champion a "security by design" culture. Develop and maintain application security documentation. Develop and manage risk mitigation strategies. Work with other security teams (., security operations, Stay up-to-date on the latest application security threats and vulnerabilities. Application Security Incident Response and Cyber Crisis Management. Participate in Group Information Security Programme (GISP) initiatives. Application Security (including cloud security), Infrastructure Security, and Cybersecurity Education, Training and Awareness. Provide regular feedback to Santam Manco on Group-wide application security issues. Clear and timely communication to management and users regarding application security matters. Application Security Risk assessment that identifies a requirement for additional awareness or targeted education, training, and awareness interventions. Review and respond to all application security-related audit findings. Produce required application security reports. Ensure that security 'gates' are a formal part of the SDLC/ Agile/ relevant solution development methodology. Active participation in Sanlam-sanctioned industry bodies (. ISF Live, ISACA, FS-ISAC) Timeous escalation of new, high or escalating cybersecurity risks. Engage with application owners and the Group Cyber Security Centre (GCSC) Operations Team to ensure that system vulnerabilities identified during penetration tests, Red Team exercises, or vulnerability scans are addressed. Ensure that the Group CIO is aware of risks and actions required. Find & provide root cause analysis and implement permanent and/or long-term fixes for application security-related incidents. Strong understanding of integration between Workstations and Network/Servers

QUALIFICATIONS AND EXPERIENCE

A bachelor’s Degree or Diploma in Cybersecurity, Computer Science, Information Systems, or a related field, or equivalent work experience. A Recognised Cyber Security Certification(s) (., Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Ethical Hacker (CEH), or similar certification will be an advantage. With 15+ years of experience in software engineering, a significant portion of that in an architectural position focusing on cybersecurity within complex organisations, preferably in the financial services sector. The incumbent must have a solid technical software engineering background with a deep understanding of cybersecurity concepts, threats, and vulnerabilities.

COMPETENCIES

High Stress Tolerance. Building and maintaining relationships. Teamwork and ability to function independently. Facilitation Skills. Adaptability. Attention to detail. Planning and organising. Ability to work independently. Interpersonal savvy. Decision quality. Plans and aligns. Optimises work processes. Being resilient. Collaborates. Cultivates innovation. Customer focus. Drives results. Sensitivity to Risk Balances Stakeholders Reporting and Administration

ADDITIONAL COMPETENCIES AND SKILLS

Programming Languages: It is crucial to understand the security considerations of languages like Java, Python, C#, JavaScript and emerging ones like Kotlin. Web Technologies: Familiarity with HTML, CSS, JavaScript frameworks like React and Angular, and web application security concepts is essential. Mobile Development: Security expertise in Android, iOS, and cross-platform frameworks like Flutter helps secure sensitive data on user devices. Cloud Security: A deep grasp of cloud platforms like AWS, Azure, and GCP and their security implications is vital for secure cloud deployments. API Security: Understanding API security best practices is critical to prevent unauthorized access and data breaches. Vulnerability Understanding: In-depth knowledge of common and obscure vulnerabilities in various technologies allows for accurate identification and exploitation for testing and mitigation purposes. Secure Coding Practices: Expertise in secure coding principles and best practices for different languages and frameworks empowers proactive vulnerability prevention. Threat Modelling: The ability to analyse application architecture and functionality to anticipate potential attack vectors and proactively address them is crucial. Security Scanners and Code Analysis Tools: It is vital to understand how to use these tools to identify vulnerabilities in code and recommend remediation strategies. Penetration Testing Tools: Familiarity with these allows for thorough vulnerability assessment and simulating real-world attack scenarios. Security Incident Response Tools: Knowledge of incident response tools and methodologies helps them effectively handle security breaches and minimize damage. Cryptography and Encryption: Understanding encryption algorithms and their application in securing data is essential.

ADDITIONAL COMPETENCIES AND SKILLS

ABOUT THE COMPANY

Santam is the leading short-term insurer in South Africa. Along with its subsidiaries, the business transacts all classes of short-term insurance. Santam is a large, diversified, and transforming company and our success is rooted in our passion for our clients. Everything we do is centered on our delivery of Insurance Good and Proper. 

Please note this appointment will be made in line with the Divisional Employment Equity targets. People with disabilities are welcome to apply


  • Security Architect

    3 weeks ago


    Cape Town, South Africa Barratt and Co Full time

    As a Cyber-Security Solutions Architect, you'll work with our lead architect to ensure that our IT systems are protected against cyber-threats. You'll review our current security measures, recommend enhancements, and help implement them. You'll also stay up-to-date on industry trends and new threats to keep our systems safe. You'll be responsible for...

  • Security Architect

    2 hours ago


    Cape Town, South Africa ABC Worldwide (Pty) Ltd Full time

    **Security Architect** **Key Responsibilities** - Providing security advice, requirements and guidance to the business when delivering new systems or updates to existing, to ensure Security by design. - Performing security-focused risk assessment on new systems/services and changes to existing to ensure they are within risk tolerance. - Working with the...


  • Cape Town, South Africa ooba Full time

    As an Application Architect you will play a key role in the strategic business enablement team (SBE). You will have both a strategic and operational view of the architecture, defining and maintaining the strategic architecture blueprint and roadmap, as well as designing architecture for projects on an ongoing basis, always working towards the strategic view....


  • Cape Town, South Africa Redherd Full time

    Our client is a South African based security vendor with a global reach and customers in the highest spheres of technology and innovation. They provide real-time reporting on adversaries interacting with your networks or snooping around your infrastructure, allowing you to identify and defend against attacks. They are extremely vested in the global security...


  • Cape Town, South Africa iLaunch Full time

    Collaborate with Information Security Architect Ensuring compliance on Information Security Standards and controls Manage enterprise information assets Tertiary Qualification CISSP, CISM, CISA & ISSAP 5 Years experience in a lead role within IT Security environment 5 Years Projects experience in Security Architecture and design including SDLC Solid...


  • Cape Town, South Africa The Right Company Full time

    **CYBER SECURITY ARCHITECT (BANKING INDUSTRY) - STELLENBOSCH - R93000** **Experience**: - 8+ years’ experience in general programming - 2+ years’ general IT Architecture - 2+ years using Python, Go or Java - Design and deployment of highly available, enterprise - scale cloud infrastructure - Experience developing and delivering systems on at least one...


  • Cape Town, South Africa Ad Talent Africa Full time

    **Who are we**:South African retail bank **Who are we looking for**:Architect: Cyber Security with** **8+ years experience in general programming **What will you do**: **What do you need**: - 8+ years experience in general programming - 2+ years general IT Architecture - 2+ years using Python, Go or Java - Design and deployment of highly available,...

  • Architect Intern

    2 hours ago


    Cape Town, South Africa Globmed Full time

    **Architect Internship Position** Are you ready to take on the challenge of shaping the future of architecture? We are looking for a qualified Architect professional seeking to complete their internship. **About the company**: It is a privately owned property company, run by principals with a strong track record of investing in and developing projects...

  • AWS Architect

    4 weeks ago


    Cape Town, South Africa Dimension Data Full time

    FunctieomschrijvingAre you tired of the corporate culture? Are you passionate about technology and want to work on cutting edge infrastructure? We are looking forward to hearing from you!As an AWS Architect, you'll be responsible for designing and architecting the services that will power our cloud based applications. You'll also be responsible for ensuring...

  • Security Architect

    2 weeks ago


    Cape Town, South Africa Dynamic Outsourced Solutions Full time

    This role will be responsible for providing technical security advice and guidance with a focus on the Group/South Africa organization. This candidate will be involved in multiple change projects and be responsible for producing and publishing tailored Security best practice guidance. Key Responsibilities •Providing security advice, requirements and...


  • Cape Town, South Africa City of Cape Town Full time

    ELIGIBILITY Suitably Qualified CLOSING DATE 26.03.2024 REFERENCE NUMBER CS 19/24 Ext SALARY **Basic**: R528 114.00 p a DEPARTMENT Fleet Management DIRECTORATE CORPORATE SERVICES Principal Technician **Requirements**: - National Diploma in Engineering (Preferably Mechanical Engineering) or equivalent technical certification - Minimum of 5...


  • Cape Town, South Africa PikUniq Full time

    Attention: Please note that the hiring team responsible for this position will be using the PikUniq platform for candidate screening and conducting one-way interviews. Each application received will be carefully evaluated and screened. Further information on how to get started will be provided. We are looking forward to receiving your...


  • Cape Town, South Africa FIDELITY SECURITY SERVICES Full time

    **Security Manager Position available** Security Company is looking for a Site Security Manager for a large Shopping Centre in the Northern Suburbs. **Job Introduction**: This key management role has responsibility for managing the entire security team on site. The individual will report to the Regional Manager and Operations Manager (Client), will lead...


  • Cape Town, South Africa Dimension Data Full time

    FunctieomschrijvingDo you want to work in a company where your voice counts? Do you want to help create new and innovative products for our customers? Do you want to be part of an innovative team that is constantly improving its processes and delivery? Apply for this Solutions Architect Hybrid Networks WAN (CPT) role!The Senior Solution Architect is an...

  • Solution Architect

    4 weeks ago


    Cape Town, South Africa Dimension Data Full time

    FunctieomschrijvingThe Software Architect is responsible for the design, modification, and integration of software systems to translate business requirements into technology terms. Specifically, this role develops software architecture and frameworks for software system according to the required specifications. They take responsibility of the various aspects...


  • Cape Town, South Africa Blue Pearl PTY LTD Full time

    We are seeking a talented Solution Architect with expertise in IFS (Integrated Financial System) to join our client. As a Solution Architect for IFS, you will be responsible for designing, implementing, and optimizing financial software solutions using IFS. Your role will involve collaborating with stakeholders, analyzing business requirements, architecture...

  • Solutions Architect

    4 weeks ago


    Cape Town, South Africa Dimension Data Full time

    Functieomschrijving1.1.                 ROLE OVERVIEW  The Senior Solution Architect is an industry respected pre-sales, technology and solution focused specialist who creates excellent client relationships with his technical expertise and consultative approach. The Senior Solutions Architect is being viewed as a trusted technical advisor...

  • Solutions Architect

    4 weeks ago


    Cape Town, South Africa Dimension Data Full time

    FunctieomschrijvingThe primary responsibility of the Solutions Architect is to consult with the client and work with internal teams to create strategies, transformational designs and the architectural vision for complex solutions that address the clients’ needs. They provide multi-technology consulting services on all aspects of application software,...

  • Cloud Architect

    4 weeks ago


    Cape Town, South Africa Acuity Consultants Full time

    Job Description This is a 6 Month Contract, 100% REMOTE, Paying R900 per hour. There is a very strong chance this contract will be renewed. This is a fantastic opportunity for a Cloud Architect with extensive AWS experience to lead the cloud design effort for a mobile application rebuild project. THE COMPANY This Software Engineering, Tech Strategy,...


  • Cape Town, South Africa Blue Pearl PTY LTD Full time

    Job DescriptionWe are seeking a talented Solution Architect with expertise in IFS (Integrated Financial System) to join our client. As a Solution Architect for IFS, you will be responsible for designing, implementing, and optimizing financial software solutions using IFS. Your role will involve collaborating with stakeholders, analyzing business...