IT Governance & Risk Compliance Specialist

 

Recruiter:

DPT Recruitment

Job Ref:

Faith 02

Date posted:

Thursday, February 11, 2021

Location:

Johannesburg, South Africa

Salary:

CTC


SUMMARY:
IT Governance & Risk Compliance Specialist

POSITION INFO:

ROLE DESCRIPTION

The role will assist with and participate in the planning, design, implementation, operation, and maintenance of IT Governance, Risk & Compliance (GRC) efforts intended to support Business, IT Risk Management and Assurance goals and objectives. 

Primary functions will include leading and participating in the assessment of IT risks and control effectiveness for applications, infrastructure, and IT projects. This will involve the collection of appropriate and relevant data for the monitoring and analysis of specific IT control activities, liaising with and providing consultative support to IT control owners and performers, generation of reports for analysis, assessment and presentation to IT and business management, recommendations on and tracking of control remediation, and coordination of efforts with internal and external auditors.

KEY PERFORMANCE AREAS

IT Governance Management

  • Analyse and recommend operational and business workflow changes to management in order to strengthen the control environment/security posture
  • Participates in IT GRC team efforts to plan, design, implement and maintain IT Governance, Risk & Compliance initiatives, and their supporting elements
  • Assist with maturing the IT Governance system to produce measurable results toward achieving IT strategies and ensuring that IT investments support business objectives

IT Risk Management 

  • Consultation and assistance to Risk & Control Owners in the planning, design, implementation, operation, maintenance & remediation of control activities and other supporting requirements (e.g. policies, standards, processes, system configurations, etc.) as appropriate
  • Coordination, tracking and reporting of remediation plans and progress for all identified IT Control deficiencies
  • Perform ad-hoc duties as assigned to ensure the smooth functioning of the IT GRC function and maintain a good reputation with Auditors, Compliance and Risk Departments
  • Maintain and monitor that the IT risk framework is aligned with the company’s approved enterprise risk management framework
  • Integrate Cyber risk into IT Risk Management practices, processes, procedures, and activities
  • Coordinate periodical internal risk assessments in various IT functions and ensure vulnerability remediation and tracking
  • Conduct IT risk assessments (including projects risk) and analyse the effectiveness of controls and report on them with actionable recommendations
  • Facilitate disaster recovery and business continuity initiatives with relevant stakeholders

 IT Compliance

  • Proactive management of compliance requirements to improve the division’s compliance maturity with legal and regulatory requirements such (POPIA, ETC act, Cyber bill, RICA etc.)
  • Monitor and review compliance with regulatory requirements and practices to ensure IT-related activities are meeting prescribed standards
  • Act as compliance champion for the IT Division
  • Maintain and facilitate data protection activities to ensure full compliance with POPIA and associated regulations on personal identifiable information and business-related sensitive information

 Adhoc

  • Perform any reasonable tasks as and when required by the Line Manager or other seniors

QUALIFICATIONS AND EXPERIENCE:

  • Matric
  • National Diploma in IT /Bachelor or Relevant equivalent to NQF Level 6
  • IT Governance certification or ITIL & COBIT mandatory
  • CRISC, CISSP, CISA or CGEIT certification is strongly preferred
  • Minimum 7 years of experience in IT Governance Risk and Compliance field
  • Experience with GRC methodologies, tools, and enablers
  • Hands-on experience with implementation and monitoring of one or more IT Governance frameworks (COBIT, ITIL, ISO etc.)

 Knowledge

  • Excellent understanding of IT operational processes and controls including projects
  • Excellent understanding of Regulatory requirements facing the IT environment (POPIA, GDPR)
  • Must be persuasive and be able to communicate GRC related concepts to a broad range of technical and non-technical staff
  • Solid understanding of security risks and preventative controls
  • Sound knowledge, understanding and application of the relevant legislation
  • Established knowledge of the IT frameworks, vocabulary, and best practices
  • Experience of delivering excellent user experience

Skills and Attributes

  • Meticulous 
  • Self-starter and deadline driven 
  • Customer service driven 
  • Honesty and integrity 
  • Ability to handle confidential matters in a professional manner 
  • Negotiation and Conflict Resolution 
  • Fairness 
  • Resilient 
  • Innovative


 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Senior PMO
Location: Johannesburg
Salary: 900000 Annually
Are you a seasoned PMO leader ready to take the reins of enterprise-wide delivery excellence? Our client — a high-growth, founder-led organisation in the midst of a major transformation — is looking for a Senior PMO Leader to build and scale a best-in-class Project Management Office from the ground up. If you thrive in fast-paced environments, are passionate about processes and people,...
1 day ago


IFRS 17 Specialist
Location: Johannesburg
Salary: 240 000 Annually
I’m on the hunt for a true unicorn. An IFRS specialist with hands-on implementation experience in a financial services environment. This isn’t about theory or basic understanding. Our client is looking for a CA(SA) who has been in the trenches of IFRS 17, navigating its complexity and delivering results from planning to execution. If you’ve played a key role in the successful imp...
1 day ago


Cloud Solution Architect
Location: Sandown
Salary:
1 day ago


Head of SecDevOps
Location: Johannesburg
Salary:
Datacentrix Managed Talent Solution’s client is seeking a visionary Head of SecDevOps to drive the secure digital future of their organization. Must have 10 years' experience in it with at least 5 years' experience in SecDevOps or a related field, and 5 years' experience in managing technical teams.
2 days ago


PMO Lead
Location: Johannesburg
Salary: 840 000 Annually
Senior PMO Leader📍 Location: Johannesburg, Hybrid OpportunityOur client is on an exciting transformation journey, evolving from a founder-led organisation into a mature, squad-based enterprise with clear ownership, accountability, and delivery excellence. To drive this change, they are seeking an experienced Senior PMO Leader to establish and oversee a company-wide Project Management Office (PM...
2 days ago


Financial Director
Location: Johannesburg
Salary: 2200000
An opportunity for a Financial Director.
3 days ago


IT Auditor
Location: Sandton
Salary:
3 days ago


Technical Business Analyst - Hybrid
Location: Sandton
Salary:
3 days ago


Executive: Actuarial & Data Analytics
Location: Pretoria
Salary: 2000000
In need of a Actuarial & Data Analytics Executive in Pretoria!
5 days ago


Financial Director
Location: Johannesburg
Salary: 2 300 000
A market-leading group, part of a JSE listed retail and automotive conglomerate, is on the hunt for a seasoned Financial Director to join their team! You will be responsible for driving financial excellence across one of its key operating entities. If this sounds like you, apply now!
7 days ago


Create a free job alert for IT Governance & Risk Compliance Specialist in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions