Security Governance and Compliance Specialist

 

Recruiter:

PreBless Group

Job Ref:

ABBANK

Date posted:

Tuesday, September 14, 2021

Location:

Johannesburg, South Africa

Salary:

negotiable


SUMMARY:
Develop processes and procedures for the information security governance program and develop, coordinate and maintain the implementation of security policies and procedures across the Bank.

POSITION INFO:

Overview:

1 - Security Governance

  • Develop processes and procedures for the information security governance program.
  • Develop, coordinate and maintain the implementation of security policies and procedures across the Bank.
  • Ensure alignment of security governance with the Bank’s business objectives.

2 - Security Compliance Management

  • Ensure compliance with the applicable legislative and regulatory requirements.
  • Monitor and measure compliance with Security policies.
  • Provide business support in audit activities.

3 - Security Management

  • Develop and optimize processes to improve security threat identification and remediation.
  • Monitor and manage emerging and existing threats and vulnerabilities to new and existing internal and external services.
  • Implement new security operational efforts and coordinating resources to ensure operational efficiency on technical security controls.
  • Participate in IT Continuity and Disaster Recovery process
  • Champion awareness of developing Information Technology and security risk landscape across the wider business.
  • Oversee highest risk initiatives and serve as a point of escalation for remediation/mitigation efforts.

4 - Collaboration

  • Represent African Bank as a backup on the relevant industry related security groups and initiatives (e.g. SABRIC CSIRT Workgroups).
  • Collaborate with IT technical teams across the business to deliver Security service improvements.

5 - Project Management

  • Provided end to end engagement on a wider range of security projects as a security technical SME including ensuring the governance and change control is enforced.
  • Perform project tasks within allocated timeframes.

6 - Treating Customers Fairly and Compliance

  • Create and maintain productive relationships with internal and external clients by providing advice and assistance.
  • Create understanding of the ‘real’ versus ‘perceived’ need through experience and expertise while complying with company polices legislation and regulations.
  • Keep the client informed about progress through written communication, telephone communications and/or face to face meetings.
  • Build a positive image by exceeding client expectations at all times.
    Treat internal and external customers fairly at all times.

    Identify topics of interest to the organisation relating to existing technology and processes.
    Prepare a proposal for research work.
    Research topics document the results and commit the output to a body of knowledge.
    Apply research findings to the analysis phase of upcoming initiatives.
    Apply research findings to ongoing implementation efforts.
    Apply research findings to planning for future initiatives.

    Continuous Improvement
    Create an innovative idea(s) or continuous improvement initiative(s) to enhance the security system.
  • Identify topics of potential interest to the organisation such as industry trends and state-of-the-art technology.

  • Minimum Education

    • Bachelor’s Degree in Computer Science, Information Technology, Computer Auditing or Internal Auditing
    • CISA, CISSP, CISM, CRISC or equivalent security professional qualification preferable

    Minimum Experience

    • 5+ years of experience working in professional information security role.
    • Broad information security knowledge across several security domains.
    • Experience in developing the appropriate information security governance and compliance measures.
    • Experience in managing and developing baseline information security configurations and experience with common industry information security standards and guidelines (such as CIS Controls)
    • Experience of identifying risks and developing and implementing policies, procedures and processes.
    • Experience of process development and process improvement.
    • Knowledge and experience with various Information Security governance and control frameworks (NIST, ISO27001/2, PCI-DSS, CIS Controls).
    • Knowledge of security architecture, network security, access control and user access management, encryption, application security, platform security and database security.





 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Senior Cloud DevOps Engineer
Location: Johannesburg
Salary: 900 000 Annually
Are you the kind of engineer who loves automating everything, building cloud platforms that scale effortlessly, and solving infrastructure challenges that most teams shy away from? My client is looking for a Senior Cloud DevOps Engineer to join a high-performing technology team where cloud innovation, automation, and platform reliability are at the heart of everything they do. This opportunit...
9 days ago


Cyber Security Engineer
Location: Midrand
Salary: 45 000 Monthly
Do you thrive on protecting businesses from ever-changing security risks?
25 days ago


AI Engineer
Location: Sandton
Salary: Market related
We're Hiring: AI Engineer - Microsoft Copilot & Azure AI
37 days ago


Java Team Lead
Location: Johannesburg
Salary: TBC Annually
Ready to take the next step in your leadership journey? Join a people-focused technology consultancy where you'll lead talented development teams, deliver enterprise-scale solutions, and help shape the future of software engineering. This is an opportunity to combine your technical expertise with strategic leadership while working on impactful projects for some of South Africa's leading organisati...
2 days ago


Java Developers
Location: Johannesburg
Salary: TBC Annually
Are you a skilled Java Developer looking for an opportunity to work on cutting-edge enterprise solutions while accelerating your career growth? Join a people-focused technology environment where innovation, collaboration, and continuous development are at the heart of success. This is your opportunity to solve complex business challenges, work with modern technologies, and make a meaningful impact...
2 days ago


Senior Area Manager
Location: Johannesburg
Salary:
2 days ago


Agentic AI Engineer
Location: Johannesburg
Salary: Negoitable
2 days ago


Javascript Team Lead
Location: Johannesburg
Salary: TBC Annually
Are you a senior JavaScript professional ready to lead high-performing teams and deliver enterprise-scale solutions? Join a technology-driven environment where innovation, mentorship, and technical excellence are at the heart of everything you do. This is your opportunity to combine hands-on development with leadership while working on impactful projects for some of South Africa's leading organisa...
2 days ago


Application Manager: Microsoft Dynamics 365 Finance & Operations - Sandton
Location: Johannesburg
Salary: R900 000 Annually
Role PurposeThe Application Manager: Microsoft Dynamics 365 Finance & Operations is responsible for building and maintaining the internal capability to support, administer, optimise and continuously improve the Microsoft Dynamics 365 Finance & Operations environment.The role provides functional and technical expertise, supports users, resolves system issues, manages approved configurations...
4 days ago


Company Secretary
Location: Johannesburg
Salary: 000
Provide independent statutory governance advice; support lawful and ethical Board and committee oversight
4 days ago


Create a free job alert for Security Governance and Compliance Specialist in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions