Enable job alerts via email!

Cyber Security Officer (Divisional) – AESCO

Armstrong Appointments

Sandton

On-site

ZAR 400 000 - 500 000

Full time

24 days ago

Job summary

A leading private sector freight management group is seeking a Cyber Security Officer based in Sandton. This role involves defining and implementing an IT Security Strategy aligned with the Company’s Group Security Framework. The ideal candidate will have 5-8 years of relevant experience, a degree in information systems or computer science, and strong communication and collaboration skills. This position plays a critical role in assessing IT/cyber security risks and managing security strategy across the division.

Qualifications

  • Bachelor’s degree in information systems or computer science required.
  • 5-8 years of experience in an information security role necessary.
  • Strong knowledge of security management frameworks.

Responsibilities

  • Define and implement an IT Security Strategy for the division.
  • Perform maturity assessment against the Group Cybersecurity Framework.
  • Advise IT Managers on issues related to IT/cyber security.

Skills

Communication skills
Collaboration skills
Strategic thinking
Risk management
Technical orientation

Education

Bachelor’s degree in information systems or computer science
CISSP or equivalent

Tools

ISO/IEC 27001
NIST frameworks
Job description

Our client a leading private sector freight management group in sub‑Saharan Africa is seeking an experienced Cyber Security Officer. The division consists of 9 business units. Operations are situated nationwide with head offices located in Durban, Johannesburg, Maputo and Namibia. This position is Johannesburg based (Sandton).

Responsibilities

The Cybersecurity Officer will be responsible for defining and implementing an IT Security Strategy for the division aligned to the Company’s Group Security Framework and direction the Group is taking in terms of cybersecurity. The IT Security Strategy will be required to be tailored to each individual company within the division. This will be based on a risk‑based approach. Each company will have a different risk profile.

The Cybersecurity Officer will need to perform maturity assessment against the Group Cybersecurity Framework for the respective companies within the division. This assessment will feed into defining each companies’ roadmap and risk from a cyber/IT security perspective. IT Managers from each company will have an indirect reporting line to the divisional Cybersecurity Officer. The Cybersecurity Officer will have an indirect reporting line to Group IT from a guidance and oversight perspective. The Cybersecurity Officer will assess, assist, direct and advise the respective IT Managers in all matters relating to IT/ cyber security. This will be inclusive of advising on secure architecture, secure operations and incident response. A monitoring and alerting function will be required to be setup from a divisional level that will leverage off the Group tooling. Driving cybersecurity awareness, upskilling, training and working with other cross‑functional teams will be additional focus areas. In summary, the role will focus on identifying IT/ cyber security risks and addressing them accordingly. The ideal candidate has the following characteristics: Confident personality, academically strong, strategic thinker, potential to learn, able to think out the box, technical oriented, self‑starter and takes initiative.

Qualifications
  • Bachelor’s degree in information systems or computer science
  • CISSP: Certified Information Systems Security Professional OR
  • CISSP‑ISSMP: Information Systems Security Management Professional OR
  • CISM: Certified Information Security Manager
  • CEH: Certified Ethical Hacker will be an Advantage
Experience / Criteria
  • A minimum of 5–8 years’ experience in an information security related role
  • Patch and vulnerability management experience
  • Technology implementation experience
  • Best practice knowledge and secure configuration in terms of relevant technologies and architecture
  • Risk management experience
  • Experience in security strategy creation and enforcement
  • Knowledge of information security management frameworks, such as ISO/IEC 27001 and NIST.
  • Familiarity with incident response standards and procedures and root cause analysis
  • Knowledgeable in network, infrastructure, endpoint protection, cloud and web security
  • Understanding of current legislation and regulations relevant to our organizations
  • Strong communication and collaboration skills in terms of feedback and reporting
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.