IT Governance , Risk & Compliance Manager

 

Recruiter:

UR Staffing

Job Ref:

IT Governance , Risk..

Date posted:

Tuesday, November 2, 2021

Location:

Pretoria, South Africa

Salary:

R 66 333 CTC


SUMMARY:
IT Governance, Risk & Compliance Manager

POSITION INFO:

Purpose Statement : To manage IT governance, Risk, Compliance for the company and to monitor the implementation of the end-to-end governance, risk, and compliance in relation to IT and proactively identify cyber security threats

 

Specification

IT Governance, Risk and Compliance

  • Governance
    • Develop an IT governance framework that integrates ITIL, COBIT and ISO27001/2 frameworks to ensure the delivery of results and contribute to the maturity of the following areas:
      • IT Governance
      • Business Continuity (Disaster Recovery)
      • IT Service Management including ITIL
      • Project Governance
      • Risk Management
      • Compliance to data and information protection acts and regulations.
      • Information security management
  • Build and develop a global best practice IT Governance structure, process and capability
  • Evaluate, enhance and continuously improve overall IT Governance.
  • Participate in IT Governance steering committee
  • Evaluate, policies, procedure and processes compliance with regulations
  • Report on the regulatory environment and the company’s compliance threats
  • Develop systems and processes to improve our IT governance
  • Develop policies, processes and participate in acquiring technology and the implementation of said policies, processes, to improve IT GRC

 

  • Risk Management
    • Continuously liaise with the enterprise risk team on new developments (internal) evolution of industry (external) and the risk it introduces, the risk management and mitigation processes and strategies
    • Assist in identifying, monitoring and maturing the Information Technology Risk Management Programme
    • Meet with business stakeholders to identify top IT risks
    • Assist in developing and driving the implementation of security best practices and standards to mature the overall IT Risk Management
    • Works with IT, Information Security, and Business stakeholders to determine the acceptable level of risk for the organization
    • Assist in performing Third Party Risk Assessments for new and existing vendor tools, on premise implementations, and third parties with access to the environment.
    • Assist in maturing the Third-Party Risk Management program by defining security controls required of vendors.
    • Articulate identified risks to the business for remediation, mitigation and sign off.

 

  • Compliance and Monitoring
    • Ensure alignment to the King IV, COBIT, ITIL, ISO27001/2 , ISO2230 and NIST Cybersecurity and other relevant Frameworks
    • Monitor the progress of the Security Roadmap and Programme
    • Review and update policies and supporting procedures/processes/standards
    • Perform assessments of adherence to policies/processes/standards
    • Work closely with IT management
    • Assess 3rd party vendors’ adherence to standards and security controls
    • Develop Security and Controls Compliance reports in accordance with adopted security frameworks and standards
    • Track Security Risk
    • Oversee Remediation of security controls gaps by IT Operations
    • Stay on top of changes in the industry as it relates to IT GRC
    • Assist in performing IT Capability Maturity assessments
    • Assist with maturing the Data Governance Program which includes defining a Data Classification and Handling Program, identifying Data
    • Owners, and assisting with the design and implementation of a Data Classification and Rights Management tool.
    • Assist in developing and maintaining Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) for IT
    • Assist in the management and maintenance of the enterprise-wide Information Security Awareness Program which includes phishing
    • simulations, computer-based training, proactive communications on latest threats, workshops, and newsletters.

 

Functional and managerial leadership

  • Provide mentorship to junior team members
  • Assist with task allocation among team members
  • Improve ways of work and testing framework
  • Maturity level of IT processes
  • Enable achievement of business strategies

 

Requirements           

Knowledge and Skills

Formal Education

  • Related qualification/IT/Risk/Governance

 

Technical/Legal Certification

  • ITIL
  • COBIT
  • Certified Information Security Manager (CISM)
  • Certified Information Systems Auditor (CISA) - an advantage

 

Experience

  • Governance experience: 5 years
  • IT Risk Management experience: 5 years
  • Risk Management
  • Governance
  • Project Management/
  • Incident Management
  • Reporting
  • Security Management: 2 years
  • Understanding of cybersecurity frameworks (ISO, NIST,COBIT,FFIEC)
  • Strong documentation and communication skills

 

Competencies

Knowledge

  • IT Governance: COBIT or ITIL
  • Technology: Microsoft & SQL
  • Technical Understanding: Technical understanding of technology platforms, operating systems, system development life cycle, change management, information security, databases
  • IT Security: Knowledge and hands on experience with Controls, Security Architecture and IT Security
  • IT Processes: Knowledge of IT and Business Processes
  • Security Management: IS----- certified (including IT experience)

 

 

Skills

  • Strategic planning: Aligning IT with business
  • Compliance management: Accountable for ensuring that IT adheres to all the necessary legal and regulatory requirements
  • Audit Skills: General IT/Audit review skills
  • Risk management: Accountable for identifying IT risks and ensuring that adequate controls are in place to mitigate the risks
  • Interpersonal Skills: Can work with different teams to achieve results

 

 

Attributes

  • Conceptual thinker: Develop opportunities & answer future challenges
  • Time management: Develop & deliver solutions within the required time frame
  • Team player: Build a climate of empowerment & responsibility

 

Other Special Requirements

  • Handle high stress & adhere to deadlines


 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Senior PMO
Location: Johannesburg
Salary: 900000 Annually
📍 Location: Johannesburg | Work Model: Hybrid🧭 Level: Senior Leadership | Transformation & Delivery | Strategic PMOAre you a seasoned PMO leader ready to take the reins of enterprise-wide delivery excellence?Our client — a high-growth, founder-led organisation in the midst of a major transformation — is looking for a Senior PMO Leader to build and scale a best-in-class Projec...
Today


IFRS 17 Specialist
Location: Johannesburg
Salary: 240 000 Annually
I’m on the hunt for a true unicorn. An IFRS Specialist with hands-on implementation experience in a financial services environment. This isn’t about theory or basic understanding. Our client is looking for a CA(SA) who has been in the trenches of IFRS 17, navigating its complexity and delivering results from planning to execution. If you’ve played a key role in the successful imp...
Today


Cloud Solution Architect
Location: Sandown
Salary:
Today


Head of SecDevOps
Location: Johannesburg
Salary:
Datacentrix Managed Talent Solution’s client is seeking a visionary Head of SecDevOps to drive the secure digital future of their organization. Must have 10 years' experience in it with at least 5 years' experience in SecDevOps or a related field, and 5 years' experience in managing technical teams.
1 day ago


PMO Lead
Location: Johannesburg
Salary: 840 000 Annually
Senior PMO Leader📍 Location: Johannesburg, Hybrid OpportunityOur client is on an exciting transformation journey, evolving from a founder-led organisation into a mature, squad-based enterprise with clear ownership, accountability, and delivery excellence. To drive this change, they are seeking an experienced Senior PMO Leader to establish and oversee a company-wide Project Management Office (PM...
1 day ago


Financial Director
Location: Johannesburg
Salary: 2200000
An opportunity for a Financial Director.
2 days ago


IT Auditor
Location: Sandton
Salary:
2 days ago


Technical Business Analyst - Hybrid
Location: Sandton
Salary:
2 days ago


Executive: Actuarial & Data Analytics
Location: Pretoria
Salary: 2000000
In need of a Actuarial & Data Analytics Executive in Pretoria!
4 days ago


Financial Director
Location: Johannesburg
Salary: 2 300 000
A market-leading group, part of a JSE listed retail and automotive conglomerate, is on the hunt for a seasoned Financial Director to join their team! You will be responsible for driving financial excellence across one of its key operating entities. If this sounds like you, apply now!
6 days ago


Create a free job alert for IT Governance , Risk & Compliance Manager in Pretoria

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions