Enable job alerts via email!
A leading cybersecurity firm in South Africa is looking for an experienced Information Security Manager to lead their cybersecurity strategy and ensure compliance with industry standards. The ideal candidate will have over 7 years of experience in cybersecurity leadership roles, strong communication skills, and the ability to manage complex projects. This role demands a proactive approach to mitigating cyber threats while driving innovation across the organization.
Qualifications / Requirements : Matric plus, Degree in Information Technology, Business Administration, or related field.
7+ years of experience in cybersecurity, risk management, and IT leadership.
7 years in a senior information security management role.
Professional Certifications : CISSP, CISM, CISA, CCSP, or equivalent.
Deep understanding of security frameworks: ISO, PCI-DSS, NIST, SSAE 18.
Strong background in security tools and technologies (IAM, IDS / IPS, DLP, etc.).
Skills and Competencies : Ability to lead complex projects in a matrixed, multi-stakeholder environment.
Proven experience in vendor and contract security negotiations.
Strong leadership, communication, and analytical skills.
Strategic and innovative thinking.
Leadership and influence.
Risk and compliance acumen.
Project and resource management.
Exceptional stakeholder communication.
Report writing and dashboard presentation.
Coaching and mentoring for performance.
Responsibilities include : Develop and execute the company’s information security strategy aligned with business goals and digital innovation.
Serve as a trusted advisor to executives, balancing innovation and cyber risk.
Drive secure adoption of technologies including cloud, AI, and data analytics.
Identify and mitigate cybersecurity threats (e.g., ransomware, data breaches, insider threats).
Lead security assessments, technology deployments, and compliance audits.
Collaborate with ICT, PMO, and Group Risk to manage enterprise-wide security initiatives.
Ensure compliance with POPIA, GDPR, ISO, and industry standards (NIST, PCI-DSS, CIS).
Minimize legal, reputational, and financial risk through proactive governance.
Develop and enforce the company’s Cyber Incident Response Plan (CIRP).
Oversee disaster recovery and continuity planning.
Lead security audits, assessments, and real-time threat investigations.
Implement training programs to build cybersecurity awareness across all departments.
Foster a culture of shared responsibility and high performance within the security function.