Information Security Officer
Network IT · Johannesburg East
Stop applying one at a time.
JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.
Start free — we apply for you →Reference: ITA006206-Jess-1
A leading South African organisation is seeking an experienced Information Security Officer to lead and strengthen its enterprise-wide cybersecurity and information security capability. This is a strategic leadership role responsible for safeguarding information assets, systems, networks, cloud environments, applications, operational technology, and critical business data. The successful candidate will play a key role in shaping security strategy, managing cyber risk, ensuring regulatory compliance, and driving a strong security culture across the organisation. Duties & Responsibilities
Key Responsibilities
- Develop and maintain the organisation's information security and cybersecurity strategy, roadmap, and maturity plan.
- Establish, implement, and govern information security policies, standards, and controls.
- Identify, assess, monitor, and report on cyber and information security risks.
- Provide security oversight for infrastructure, cloud platforms, applications, operational technology, and digital transformation initiatives.
- Lead cybersecurity incident preparedness, response, escalation, and recovery processes.
- Drive governance, risk, compliance, and audit-related security activities.
- Oversee identity and access management, data protection, privileged access controls, and information classification frameworks.
- Manage third-party security risks across vendors, service providers, and technology partners.
- Champion cybersecurity awareness and behavioural change programmes across the business.
- Provide executive-level reporting on security posture, cyber risks, vulnerabilities, compliance status, and remediation initiatives.
- Coordinate security audits, assurance reviews, and continuous improvement activities.
- Lead and develop cybersecurity capabilities across internal teams and external service providers.
Qualifications
- Bachelor's Degree in Information Security, Computer Science, Information Technology, Information Systems, or a related field.
- Relevant Information Security or Cybersecurity certification.
Advantageous
- Postgraduate qualification in Information Security, Cybersecurity, Information Technology, Risk Management, Business Management, or a related discipline.
- CISSP (Certified Information Systems Security Professional).
- CISM (Certified Information Security Manager).
Experience
- 8-10 years' experience in Information Security, Cybersecurity, IT Risk Management, IT Governance, Security Operations, Infrastructure Security, or related disciplines.
- Minimum 5 years in a cybersecurity leadership, management, or senior specialist capacity.
- Proven experience developing and implementing information security frameworks, policies, governance structures, and security strategies.
- Strong background in cyber risk assessments, security audits, compliance reviews, and control effectiveness testing.
- Experience managing security incidents, vulnerability management programmes, and cybersecurity operations.
- Exposure to cloud security, data protection, operational technology security, and enterprise security controls.
- Ability to engage effectively with executives, auditors, regulators, technology teams, and business stakeholders.
Application Note: If you have not received feedback within two weeks, please consider your application unsuccessful. Your profile will remain in our database for future opportunities Package & Remuneration
R 100000 - R 112500 - Monthly