Information Security Management System (ISMS) Manager
Tumaini Consulting · Rosebank · R540,000 CTC per annum
Posted 7 August 2026
Stop applying one at a time.
JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.
Start free — we apply for you →Our client is seeking an experienced Information Security Management System (ISMS) Manager to lead information security governance, enterprise risk management and regulatory compliance within a highly regulated digital environment. This role is ideal for a governance-focused security professional who can translate complex technical and regulatory requirements into practical business frameworks while providing assurance to executive leadership and audit stakeholders.
Key Responsibilities
- Lead and continuously improve the organisation's ISO 27001-aligned Information Security Management System (ISMS).
- Develop and maintain information security governance frameworks, policies and standards.
- Identify, assess and manage information security, operational and enterprise risks.
- Drive compliance with applicable regulatory and industry requirements.
- Report on security posture, risk exposure and compliance to executive leadership and audit stakeholders.
- Coordinate internal and external audits and ensure successful remediation of findings.
- Promote security awareness and accountability across the organisation.
- Work closely with cross-functional teams to strengthen governance and control effectiveness.
- Monitor and improve organisational risk management practices.
- Translate technical and regulatory requirements into practical business solutions.
Minimum Requirements
- Relevant Degree in Information Technology, Cyber Security, Risk Management or a related field.
- 3+ years' experience in information security governance, risk management and compliance.
- Professional certification in at least one of the following:
- CISM
- CRISC
- ISO 27001 Lead Implementer
- ISO 27001 Lead Auditor
- Strong experience implementing and maintaining ISO 27001-based Information Security Management Systems.
- Experience in enterprise risk management, governance and regulatory compliance.
- Excellent stakeholder management and executive presentation skills.
- Ability to communicate complex security and compliance concepts to both technical and non-technical audiences.
- Strong analytical, leadership and problem-solving skills.
Highly Advantageous
- Experience within iGaming, online gaming, sports betting, casino or other highly regulated, high-volume digital transaction environments.
- Experience engaging with regulators, auditors and executive leadership.
- Background in governance, risk and compliance (GRC) rather than purely technical security engineering.
Submit your CV to it.jobs@tumaini.co.za or call 031 350 4018 .
Visit our website for more exciting career opportunities: https://tumaini.co/
Correspondence will only be conducted with short-listed candidates. Should you not hear from us within 4 days, please consider your application unsuccessful.