IT Governance Risk and Compliance Specialist

 

Recruiter:

PC Staffing Solutions

Job Ref:

PC352

Date posted:

Wednesday, October 20, 2021

Location:

Johannesburg, South Africa

Salary:

R672 480


SUMMARY:
IT Governance Risk and Compliance Specialist

POSITION INFO:

Job summary statement/purpose:

The role will participate in planning, design, implementation, operation, and maintenance of IT Governance, IT Risk & Compliance initiatives within the organisation. The objective is to ensure information technology initiatives are aligned to business objectives, while managing risk and meeting regulatory compliance requirements through a well-managed internal control environment.

Key Performance Areas:

1. IT Governance Management:

• Maintain and support IT Governance maturity improvement initiatives based on COBIT 2019 and the Public Corporate Governance of Information and Communication Technology Policy Framework.
• Improve efforts to coordinate the IT resources available to the organisation in a manner that would create value for the business.

2. IT Risk Management:

• Maintain IT risk strategy and ensure that it is executed in line with the enterprise risk management requirements.
• Coordinate, facilitate and monitor IT risk activities within the division maintaining a consolidated IT register to enable management to make informed decisions.
• Ensure proactive management of IT risk in line with business tolerable levels.

3. IT Compliance and Audit

• Proactive management of compliance requirements to improve the division’s compliance maturity with legal and regulatory requirements such (POPIA, ETC act, Cyber bill, RICA etc).
• Monitor and review compliance with regulatory requirements and internal controls practices to ensure IT-related activities are meeting prescribed standards.
• Proactively manage IT internal controls to ensure satisfactory audit outcomes.
• Maintain and facilitate data protection activities to ensure full compliance with associated regulations on personally identifiable information and business-related sensitive information.

4. Information Security Governance

• Implements processes, such as governance, risk, and compliance to automate and continuously monitor information security controls, exceptions, risks, testing. Develops reporting metrics, dashboards, and evidence artifacts.
• Schedules regular assessments and testing of effectiveness and efficiency of controls and creates GRC reports.

• Updates security controls and provides support to all stakeholders on security controls covering internal assessments, regulations and protecting Personally Identifying Information (PII) data
• Performs and investigates internal and external information security risk and exceptions assessments. Assess incidents, vulnerability management, scans, patching status, secure baselines, penetration test result, phishing, and social engineering tests and attacks.
• Documents and reports control failures and gaps to stakeholders. Provides remediation guidance and prepares reports to management to track remediation activities.

5. Adhoc

• Perform any reasonable tasks as and when required by the line manager or other relevant members of the organisation.

Qualifications and Experience:

• Matric.
• National Diploma in IT /Bachelor or relevant qualification equivalent to NQF Level 6.
• IT Governance certifications: ITIL & COBIT, ISO 27001/2 Lead Implementor strongly recommended.
• International certificates such as CRISC, CISA or CGEIT are strongly preferred.
• Minimum of 6 years’ experience in IT Governance/ IT Risk/ IT Audit & Compliance/ Information Security Governance.
• Hands-on experience with implementation and monitoring of one or more IT Governance frameworks (COBIT, ITIL, ISO 27001. etc.).
Knowledge
• Established knowledge of IT frameworks, vocabulary, and best practices.
• Excellent understanding of Regulatory requirements facing the IT environment (POPIA, GDPR, Cybersecurity Bill, ETC Act).
• Must be persuasive and be able to communicate IT Governance Risk and Compliance related concepts to a broad range of technical and non-technical audience.
• Solid understanding of Information, Technology and Cybersecurity risks and preventative controls.



 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Records Management Encryption Specialist
Location: Johannesburg
Salary: 250 Hourly
New Contract role available for 6 month contract with top tier bank for Records Management and Encryption specialistData Privacy, Records Management & Encryption specialistAre you detail‑driven, compliance‑focused, and passionate about protecting sensitive information?This role is ideal for a specialist who enjoys working at the intersection of data privacy, information governance, and sec...
2 days ago


Internal Auditor (Independent Contractor)
Location: Johannesburg
Salary: 000
Identify, assess, and mitigate business and financial risks, and evaluate the effectiveness of risk management strategies.
2 days ago


Client Service Specialist
Location: Johannesburg
Salary:
2 days ago


IT Auditor
Location: Johannesburg
Salary: 600000 Annually
it Auditors - We Want to Connect with You! (Across South Africa)
3 days ago


L2 System Engineer
Location: Sunninghill
Salary:
Our client is seeking a highly skilled L2 Systems Engineer to join their company in Gauteng. This role requires an experienced professional who can lead technical initiatives, drive the transition toward proactive, data-driven and intelligence-led it services, and ensure strict regulatory and cybersecurity compliance within a Managed Intelligence Platform (MIP) environment.
3 days ago


Internal Audit Assistant Manager
Location: Pretoria
Salary: 600000 Annually
Internal Audit Assistant Manager Opportunity
4 days ago


Senior Accountant
Location: Johannesburg
Salary: R750 000
Are you a commercially minded Senior Accountant who thrives at the intersection of financial reporting, modelling, and risk analytics? Do you enjoy translating complex data into insights that influence decision-making at a senior level? If so, this opportunity is built for you.
5 days ago


Lead Data Governance
Location: Johannesburg
Salary:
Lead Data governance: Are you ready to lead a data revolution? Join South Africa’s market leader in alternative risk transfer solutions and take charge of building a world-class Data Management and Analytics Centre of Excellence. This is your opportunity to shape enterprise-wide data governance and analytics strategies that drive real business impact.
6 days ago


Financial Manager
Location: Johannesburg
Salary:
Are you a strategic Financial Manager ready to take ownership of finance within a complex, asset-intensive mining environment? Join a well-established Mining organization where finance plays a critical role in operational performance, capital management, and long-term sustainability across mining operations.
6 days ago


Head of Finance
Location: Johannesburg
Salary:
A leading FMCG manufacturing group is seeking a seasoned Head of Finance to oversee and lead the finance function across its African operations. This is a strategic leadership role for a commercially minded CA(SA) with strong manufacturing experience and a proven ability to partner with operations in a high-volume, multi-country environment.
6 days ago


Create a free job alert for IT Governance Risk and Compliance Specialist in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions