Information Security Officer
Job in
Johannesburg, 2000, South Africa
Listed on 2026-09-23
Listing for:
Jobtailor
Full Time
position Listed on 2026-09-23
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
- Drive delivery of the organisation’s cybersecurity strategy across assigned business units.
- Translate strategic priorities, security policies, regulatory obligations and risk requirements into practical initiatives and sustainable controls.
- Lead and coordinate security improvement roadmaps and convert strategic commitments into measurable delivery outcomes.
- Embed secure-by-design practices, improve control effectiveness, reduce material security exposures, support incident preparedness and recovery, and strengthen cyber resilience.
- Develop and maintain Information Security and IT Risk Policies, control catalogues and related standards.
- Manage bi-annual capability maturity assessments using NIST, COBIT and ITIL frameworks, and drive improvement plans.
- Analyse outcomes and information to create insights that influence focus and budget decisions.
- Provide feedback to senior leadership, steering committees and IT leadership forums.
- Develop and embed reporting structures aligned with Information Security, IT management, Risk and Compliance Governance requirements.
- Manage and review information submitted to cyber insurers and regulators, and provide commentary on draft regulatory standards.
- Educate employees about information security practices and standards.
- Ensure legislative, regulatory, policy, control catalogue, standards and industry guideline compliance.
- Achieve agreed policy compliance targets.
- Collaborate with IT, Audit, business units and project teams to obtain buy‑in, ensure alignment and deliver objectives.
- Lead professionals and third‑party service providers within agreed objectives, timelines and budget.
- Support optimisation, efficiency and enhancement opportunities aligned with IT strategy, including automation.
- Champion and oversee execution of information and cybersecurity strategy within assigned business units.
- Act as the primary security interface between business units and the CISO office.
- Participate in design reviews and identify mitigation strategies for security risks.
- Analyse business impact and exposure from emerging security threats.
- Support strategic planning and tactical execution of security initiatives and controls.
- Work with architects, functional specialists and security staff to ensure adequate security solutions across IT systems and platforms.
- Integrate business-related security risk requirements into broader governance structures and evidence key risk decisions.
- Track and report risk management trends, opportunities and remediation monthly.
- Create and maintain reporting, problem resolution and continuous‑improvement activities.
- Manage stakeholders, build relationships and promote a security‑aware culture.
- Relevant tertiary qualification (Degree / Honours) in Information Security, Cybersecurity, Information Technology, or a related discipline.
- 6–8 years’ experience in information security, cybersecurity, or IT and Cyber risk, with demonstrated experience delivering security programmes, remediation initiatives, or resilience improvements across complex environments.
- Strong knowledge of NIST CSF, ISO/IEC 27001 and COBIT.
- Experience translating strategy into prioritised roadmaps, measurable outcomes and executive reporting.
- Experience in financial services, cyber resilience, cloud security, third-party risk, incident preparedness and security assurance is advantageous.
- CISSP, CISM, CRISC or CISA certifications are preferred.
- Working understanding of cloud services and best practices.
- AWS Cloud Practitioner, AWS Certified Security – Specialty or related cloud certifications are advantageous.
- Agile training and knowledge of Agile Frameworks.
- Strong analytical, problem-solving, facilitation, negotiation and conflict resolution skills.
- Experience analysing security and assurance…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×