Business Information Security Officer
3 months ago
CAREER OPPORTUNITY
Santam BITS has a career opportunity for a senior role of Business Information Security Officer (BISO) in the Business Information and Technology Services (BITS) department which will be based in the Western Cape or Gauteng.
KEY RESPONSIBILITIES
Establish and manage a Santam Business Unit (SBU) Information Security Programme. Implement cybersecurity awareness campaigns. Participate in Group Information Security Programme (GISP) initiatives. Information Security Governance and Assurance. Document processes and artefacts that prove that the relevant governance and assurance processes were implemented as designed. Information Security Incident Response and Cyber Crisis Management. Application (including cloud), Infrastructure Security, and Cybersecurity Education, Training and Awareness. The BISO will implement processes and controls as agreed with the Group Information Security Officer (GISO), GISP and the Group CIO. The BISO will be responsible for the quality and cost-effectiveness of information security services delivery in the SBU and will report on these metrics to the GISP and GISO. Provide regular feedback to Santam Manco on Group-wide information security issues. The BISO will report to the GISO on new initiatives, plans, and progress, which will be discussed with the Group Information Security Committee. Review and improve existing IT and Information Risk assessment, reporting and management practices. Update the Santam IT and Information Security Risk register. Document a security risk management action plan. This must include the relative priorities of agreed-upon actions, ownership of the actions, and agreed-upon timelines. Priorities will be aligned to Santam and GISP priorities. The BISO must have an action plan to implement these initiatives in Santam. Up to date and complete Santam cloud technology outsourcing and third-party register (where applicable). Review and respond to PSPG and risk acceptance requests within the agreed time. Clear and timely communication to management and users regarding planned group awareness campaigns. Risk assessment that identifies a requirement for additional awareness or targeted education, training, and awareness interventions. Alignment with the Group's annual security education, training and awareness plan. Document the logical access review schedule for Line of Business Applications, review the results, facilitate resolution, and report on the progress made in resolving issues identified during the reviews. Review and respond to all security-related audit findings.
KEY RESPONSIBILITIES
Report all cyber security incidents, or information security incidents (including privacy-related incidents) where the compromise was through technology to the Sanlam Group Technology (SGT) CSIRT. Be a primary contact for cybersecurity incidents identified by the SGT CSIRT. Ensure appropriate actions are taken when policy breaches are identified in the SBU. Assist by facilitating engagement and communication with key stakeholders in the Santam during a major incident. Produce Quarterly Group ISO Forum and GISP reports. Ensure that security 'gates' are a formal part of the SDLC/ Agile/ relevant solution development methodology. Interventions and role-players must be clearly specified. Active participation in Sanlam-sanctioned industry bodies (. ISF Live, ISACA, FS-ISAC) Timeous escalation of new, high or escalating cybersecurity risks. Engage with application owners and the Group Cyber Security Centre (GCSC) Operations Team to ensure that system vulnerabilities identified during penetration tests, Red Team exercises, or vulnerability scans are addressed. Ensure that the Group CIO is aware of risks and actions required. Facilitate workshops and risk documentation during Control Self Assessments or Crown Jewel Risk Assessment processes. Find & provide root cause analysis and implement permanent and/or long-term fixes for cyber-related incidents. Strong understanding of integration between Workstations and Network/Servers. Installations and monitoring of devices using automated tools (. SCCM) & scripting. Responsible for maintaining a configuration register of assets and licenses.
QUALIFICATIONS AND EXPERIENCE
Bachelor’s Degree or Diploma in Computer Science, Information Systems or other related field, or equivalent work experience Minimum 7 years of relevant experience Cyber and information security certifications (such as CISM, CISSP, CCSP, CISA, ISO 27000 Lead Implementer/ Auditor) are in force. If the candidate does not possess such certifications, evidence is required that the candidate is studying toward them.
COMPETENCIES
High Stress Tolerance. Building and maintaining relationships. Teamwork and ability to function independently. Facilitation Skills. Adaptability. Attention to detail. Planning and organising. Ability to work independently. Interpersonal savvy. Decision quality. Plans and aligns. Optimises work processes. Being resilient. Collaborates. Cultivates innovation. Customer focus. Drives results.
ADDITIONAL COMPETENCIES AND SKILLS
Honesty, integrity, and respect. Positive, enthusiastic, can-do attitude. Ability to work under pressure and long hours. Ability to co-operate and thrive both within an independent and team environment. Project Management. Reporting and Administration. Business Requirements Definition. Compliance Monitoring. Emerging Technologies.
ABOUT THE COMPANY
Santam is the leading short-term insurer in South Africa. Along with its subsidiaries, the business transacts all classes of short-term insurance. Santam is a large, diversified, and transforming company and our success is rooted in our passion for our clients. Everything we do is centered on our delivery of Insurance Good and Proper.
Please note this appointment will be made in line with the Divisional Employment Equity targets. People with disabilities are welcome to apply
-
Senior Business Information Security Officer
1 month ago
Cape Town, Western Cape, South Africa Sanlam Full timeCareer OpportunitySantam is seeking a talented Senior Business Information Security Officer to join our Business Information and Technology Services (BITS) department. This senior role will be based in our Western Cape or Gauteng offices.Key ResponsibilitiesEstablish and manage a Santam Business Unit (SBU) Information Security Programme.Develop and implement...
-
Security Officer
6 days ago
Cape Town, South Africa GBH Security Full timeWe are seeking Grades **C/B/A Security Officers** who reside in or around the following areas: - Maitland - Paarden Eiland - Killarney **Requirements**: - PSIRA Registered and up to date - ID Document - No criminal record - Must we willing to undergo criminal checks regularly - Firearm Competency for business (If you have) - Proof of bank account - Must...
-
Information Security Officer
3 months ago
Cape Town, South Africa Root Platform Full time**Mission**: At Root, we believe that the future of insurance is **digital**, **personalised** and **embedded**. Our mission is to grow insurance businesses into this future by providing the infrastructure that makes it possible. Your role as an Information Security Officer will be pivotal in crafting and executing a comprehensive information security...
-
Business Information Security Specialist
2 months ago
Cape Town, Western Cape, South Africa Sanlam Full timeCareer OpportunitySanlam is seeking a highly skilled Business Information Security Specialist to join our team in the Business Information and Technology Services department.Key ResponsibilitiesEstablish and manage a comprehensive information security programme.Implement cybersecurity awareness campaigns and participate in group initiatives.Ensure...
-
Cape Town, Western Cape, South Africa Tower Group Full timeJob Title: Cybersecurity & Digital Information Officer - IT Security SpecialistTower Group is seeking a highly skilled Cybersecurity & Digital Information Officer - IT Security Specialist to join our Information Technology and Digital Services tribe. Job Summary: The Cybersecurity & Digital Information Officer - IT Security Specialist will be responsible for...
-
Head of Information Security
6 months ago
Cape Town, South Africa The Talent Room Full timeOur client is currently looking for an **Head of Information Security.** This is a **remote role.** **Key Responsibility Areas**: *** - Responsible for all information security, system backups and disaster recovery procedures. - Develop and implement the information security strategy and ensure that it aligns with the overall - business objectives of the...
-
Information Security Lead
1 week ago
Cape Town, South Africa Clicks Group Limited Full time**Listing reference**: 018745**Listing status**: Online- **Position summary** **Industry**:Wholesale & Retail Trade - **Job category**:IT and Telecommunications**Location**:Cape Town - **Contract**:Permanent**EE position**:Yes**Introduction** - We are seeking a proficient and experienced Information Security Lead to drive the design and implementation of...
-
Information Security Analyst
2 months ago
Cape Town, South Africa Sanlam Full timeWhat will you do? Assisting, performing and reporting on key information security activities such as: o User access and identity management on applications, operating systems, storage, databases and sftp. o Reporting and follow ups with regards to Anti-Malware, Anti-Virus, Security patching of all IT related hardware/software. o Investigate and...
-
Chief Information Security Officer
3 weeks ago
Cape Town, Western Cape, South Africa Tower Group Full timeAbout the RoleTower Group is seeking a highly skilled Chief Information Security Officer to lead our cybersecurity efforts and protect our digital assets.Job SummaryThe successful candidate will be responsible for identifying and mitigating potential security risks, developing and maintaining information security policies and procedures, and providing...
-
Armed / Unarmed Security Officers - Grades C/b/a
6 months ago
Cape Town, South Africa Global Security Consulting Full time**Security Officers Grade C/B/A** **Positions vacant in Capetown, Metro Areas**: The overall purpose of this position is to ensure that all Site-specific security requirements are adhered to and that the Client’s needs are always efficiently and professionally met. **Minimum Requirements** - PSIRA Grade C/B/A - Registered and accredited. - Firearm...
-
Ohs Officer/security Administrator
6 months ago
Cape Town, South Africa JSM Business Services Full time**Responsibilities**: - Full responsibility for OHS protocols - Ensure Food Safety program requirements adhered to. - Ensure Legal compliance for all OHS aspects. - Arrange all medical screening as required. - Manage and arrange training for all OHS and Machine handling related positions. - Ensure all certificates are valid. - Manage all OHS supplier...
-
Information Security Analyst
1 month ago
Cape Town, Western Cape, South Africa Sanlam Full timeJob Summary:Sanlam is seeking a skilled Information Security Analyst to join our team. As an Information Security Analyst, you will be responsible for assisting, performing, and reporting on key information security activities.Responsibilities:Assisting and performing user access and identity management on applications, operating systems, storage, databases,...
-
Information Security Manager
4 weeks ago
Cape Town, Western Cape, South Africa Dimension Data Full timeJob DescriptionWe are seeking an experienced Information Security Manager to join our team at Dimension Data.The successful candidate will be responsible for implementing and monitoring the security of our systems, managing the implementation of security best practices and standards across all departments within the company, and training staff on how to keep...
-
Senior IT Auditor: IT, Information Security
6 months ago
Cape Town, South Africa Sanlam Full timeWhat will you do? A position as a Senior Auditor exists within Group Internal Audit : Santam Corporate Services, based in the Cape Town office. To conduct various types of assurance and consulting reviews with the primary focus on IT, Information Security and Cyber Security audits across the Santam Group (Santam Ltd, subsidiaries, brokers,...
-
Chief Information Security Strategist
3 weeks ago
Cape Town, Western Cape, South Africa Tower Group Full timeAt Tower Group, we are seeking a seasoned Cybersecurity & Digital Information Officer to lead our information security efforts.We offer a competitive salary of R 732 576.75 per annum (cost to company).Job Description:The successful candidate will be responsible for:Assisting in identifying and evaluating potential security risks to the company's information...
-
Senior IT Auditor: IT, Information Security
1 month ago
Cape Town, Western Cape, South Africa Santam Full timeAbout the RoleA challenging position as a Senior IT Auditor exists within Group Internal Audit at Santam Corporate Services, based in the Cape Town office.To conduct various types of assurance and consulting reviews with the primary focus on IT, Information Security, and Cyber Security audits across the Santam Group. This will be done in accordance with the...
-
Chief Information Security Architect
1 week ago
Cape Town, Western Cape, South Africa SBV Services Ltd. Full timeJob Title: Chief Information Security ArchitectAbout the Role:We are seeking an experienced Chief Information Security Architect to join our team at SBV Services Ltd. This is a unique opportunity to drive the development and implementation of our information security strategy, ensuring the confidentiality, integrity, and availability of our systems and...
-
Security Officer
2 months ago
Cape Town, South Africa TSU International Full time**Job Purpose**: The core job purpose of a security officer is to safeguard people, assets, and property by maintaining a high visibility presence and preventing illegal actions. Security officers are responsible for patrolling assigned areas, monitoring surveillance equipment, inspecting buildings and equipment for security breaches, responding to alarms or...
-
Chief Information Security Architect
2 weeks ago
Cape Town, Western Cape, South Africa Tower Group Full timeDiscover a challenging opportunity with Tower Group as we seek to enhance our Information Technology and Digital Services tribe. This role requires an Officer: Cybersecurity & Digital Information who can contribute effectively to the mission of the Client, based in the Western Cape.We offer an attractive remuneration package, estimated at R 732 576.75 (per...
-
Senior IT Auditor: It, Information Security
6 months ago
Cape Town, South Africa Sanlam Full time**What will you do?** - A position as a **Senior Auditor **exists within **Group Internal Audit**: Santam Corporate Services, based in the **Cape Town** office.- **What will make you successful in this role?** - To conduct risk-based technology focussed (IT) audit assignments ultimately to contribute to delivering on the internal audit plan approved by...