IT Risk & Compliance Specialist

 

Recruiter:

Boikago Recruitment Agency (Pty) Ltd

Job Ref:

ITRISK2021

Date posted:

Wednesday, February 10, 2021

Location:

Johannesburg, South Africa

Salary:

R780 000 negotiable


SUMMARY:
IT Risk & Compliance Specialist

POSITION INFO:

A financial services company based in Sandton is looking for an IT Governance Risk & Compliance Specialist

Purpose of the Role
The role will assist with and participate in the planning, design, implementation, operation, and maintenance of IT Governance, Risk & Compliance (GRC) efforts intended to support Business, IT Risk Management and Assurance goals and objectives. Primary functions will include leading and participating in the assessment of IT risks and control effectiveness for applications, infrastructure, and IT projects. This will involve the collection of appropriate and relevant data for the monitoring and analysis of specific IT control activities, liaising with and providing consultative support to IT control owners and performers, generation of reports for analysis, assessment and presentation to IT and business management, recommendations on and tracking of control remediation, and coordination of efforts with internal and external auditors.

Key Responsibilities:
1. IT Governance Management
• Analyse and recommend operational and business workflow changes to management in order to strengthen the control environment/security posture.
• Participates in IT GRC team efforts to plan, design, implement and maintain IT Governance, Risk & Compliance initiatives, and their supporting elements.
• Assist with maturing the IT Governance system to produce measurable results toward achieving IT strategies and ensuring that IT investments support business objectives.
2. IT Risk Management
• Consultation and assistance to Risk & Control Owners in the planning, design, implementation, operation, maintenance & remediation of control activities and other supporting requirements (e.g. policies, standards, processes, system configurations, etc.) as appropriate.
• Coordination, tracking and reporting of remediation plans and progress for all identified IT Control deficiencies
• Perform ad-hoc duties as assigned to ensure the smooth functioning of the IT GRC function and maintain a good reputation with Auditors, Compliance and Risk Departments.
• Maintain and monitor that the IT risk framework is aligned with the approved enterprise risk management framework
• Integrate Cyber risk into IT Risk Management practices, processes, procedures, and activities.
Sasria is committed to diversifying its staff profile in terms of its transformation agenda and encourages candidates from previously disadvantaged backgrounds to apply. 
• Co-ordinate periodical internal risk assessments in various IT functions and ensure vulnerability remediation and tracking.
• Conduct IT risk assessments (including projects risk) and analyse the effectiveness of controls and report on them with actionable recommendations.
• Facilitate disaster recovery and business continuity initiatives with relevant stakeholders.
3. IT Compliance
• Proactive management of compliance requirements to improve the division’s compliance maturity with legal and regulatory requirements such (POPIA, ETC act, Cyber bill, RICA etc.)
• Monitor and review compliance with regulatory requirements and practices to ensure
IT-related activities are meeting prescribed standards.
• Act as compliance champion for the IT Division.
• Maintain and facilitate data protection activities to ensure full compliance with POPIA and associated regulations on personal identifiable information and business-related sensitive information.
4. Adhoc
Perform any reasonable tasks as and when required by the Line Manager or other seniors.

Minimum experience & qualifications required

• National Diploma in IT /Bachelor or Relevant equivalent to NQF Level 6.
• IT Governance certification or ITIL & COBIT mandatory.
• CRISC, CISSP, CISA or CGEIT certification is strongly preferred.
• Minimum 7 years of experience in IT Governance Risk and Compliance field
• Experience with GRC methodologies, tools, and enablers.
• Hands-on experience with implementation and monitoring of one or more IT Governance frameworks (COBIT, ITIL, ISO etc.).

Behavioural skills required

  • Excellent understanding of IT operational processes and controls including projects.
  • Excellent understanding of Regulatory requirements facing the IT environment (POPIA, GDPR).
  • Must be persuasive and be able to communicate GRC related concepts to a broad range of technical and non-technical staff.
  • Solid understanding of security risks and preventative controls.
  • Sound knowledge, understanding and application of the relevant legislation.
  • Established knowledge of the IT frameworks, vocabulary, and best practices.
  • Experience of delivering excellent user experience.
  • Meticulous
  • Self-starter and deadline driven
  • Customer service driven
  • Honesty and integrity
  • Ability to handle confidential matters in a professional manner
  • Negotiation and Conflict Resolution
  • Fairness
  • Resilient
  • Innovative


 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Financial Manager
Location: Johannesburg
Salary:
Are you a high-impact finance professional ready to elevate performance in a fast-paced insurance environment?
Today


Information Security Management System (ISMS) Specialist
Location: Johannesburg
Salary:
Today


Head Reinsurance Accountant
Location: Johannesburg
Salary: 1300000 Annually
🏆 Head of Reinsurance Accounting — Own the Numbers, Drive the StrategyEvery great insurer needs a leader who sees beyond the ledger — someone who turns financial complexity into clarity and control. If you’re that kind of finance professional — someone who brings order to intricacy and strategy to structure — this is where you make your mark.
1 day ago


Senior Estimator
Location: Irene
Salary:
Senior EstimatorWe are seeking an experienced and detail-oriented Senior Estimator to join our client’s dynamic team based in Irene, Pretoria. The successful candidate will be responsible for preparing accurate cost estimates for mining and related engineering projects. This role requires strong analytical ability, attention to detail, and a deep understanding of mining and construction esti...
2 days ago


Group Financial Manager
Location: South Africa
Salary: Market related
We're looking for an experienced and driven Group Financial Manager to lead financial reporting, tre
2 days ago


Financial Controller
Location: Pretoria
Salary:
A leading investment and infrastructure group is seeking a meticulous and process-driven Financial Controller to take ownership of group-level compliance, financial governance, and administrative control functions. This is a key role suited to a finance professional who thrives on structure, accuracy, and ensuring full regulatory and operational compliance across multiple entities.
3 days ago


Underwriter
Location: Johannesburg
Salary: R350 000 Annually
Are you an experienced Underwriter ready to hit the ground running? One of Gauteng’s leading (re)insurance players is looking for a sharp, analytical professional who can step in and make an immediate impact!
3 days ago


Senior Internal Audit Manager
Location: Johannesburg
Salary: 1300000 Annually
Are you ready to move beyond routine audits and have a seat at the strategy table as a Senior Internal Audit Manager?
4 days ago


PROJECT MANAGER
Location: Bryanston
Salary: Market related
An it project manager's responsibilities involve the end-to-end management of technology projects.
4 days ago


Graduate Chemical Engineer (BSc(Eng)) or BENG
Location: Gauteng
Salary: Salary
My client is seeking a dynamic and resilient female Graduate Chemical Engineer. Highly demanding role, requiring an individual capable of excelling in a fast-paced, challenging environment. (BSc(Eng)) or BEng degree. Matric math & Phys science <80% required.
5 days ago


Create a free job alert for IT Risk & Compliance Specialist in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions