Cybersecurity Assurance and Compliance Specialist

Hire Resolve

Oos-Kaap

On-site

ZAR 1,000,000 - 1,400,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Hire Resolve's client, a global logistics company with 40+ years of experience, seeks a Cybersecurity Assurance & Compliance Specialist in Gqeberha, Eastern Cape. You will lead governance, risk and compliance activities, manage certifications (SOC 2 Type II, CMMC Level 2, ISO/IEC 27001) and coordinate with auditors and customers.

You will own risk registers, drive policy and control documentation, and partner with Sales, Legal, Privacy, and Infrastructure to support security questionnaires, due

Qualifications

  • Minimum 5 years in cybersecurity, information security, IT audit, risk management, governance, or related compliance role.
  • Minimum 3 years supporting SOC 2, ISO/IEC 27001, CMMC, NIST 800-171.
  • Experience managing compliance documentation and audits; risk assessments and risk registers.
  • Experience handling customer security questionnaires and assessments.

Responsibilities

  • Lead and coordinate SOC 2 Type II, CMMC Level 2, and ISO/IEC 27001 certifications including audits.
  • Maintain audit readiness programs, compliance roadmaps, and mapping to standards.
  • Manage evidence collection, control validation, and audit findings tracking.
  • Act as liaison to external auditors, certification bodies, customers, and stakeholders.
  • Own processes for customer security due diligence responses and RFP security sections.
  • Develop and maintain risk register; perform regular risk assessments and dashboards.

Skills

Cybersecurity
IT audit
Risk management
Governance
Communication

Education

Bachelor's degree in Information Security or related

Tools

Microsoft 365
GRC platforms
Policy management tools

Job description

A worldwide logistics company with over 40 years of experience providing world-reowned supply chain services is looking for a Cybersecurity Assurance and Compliance Specialist to join their team in Gqeberha, Eastern Cape.
Job Purpose:

The Cybersecurity Assurance & Compliance Specialist is a key member of the Global IT Security team, responsible for leading the organization's governance, risk, and compliance (GRC) activities. This role ensures the organization maintains and advances its security posture through the management of critical certification programs (SOC 2 Type II, CMMC Level 2, ISO/IEC 27001) and by overseeing enterprise cyber risk management.

This position serves as the primary point of contact for external auditors, certification bodies, customers, and internal stakeholders, ensuring continuous audit readiness and compliance with all applicable regulatory and contractual requirements. The ideal candidate will be a strong communicator who can translate complex technical requirements into actionable business processes.

Key Responsibilities
Compliance & Certification Management
  • Lead and coordinate all activities for SOC 2 Type II, CMMC Level 2, and ISO/IEC 27001 certifications, including audits and continuous improvement.
  • Maintain audit readiness programs, compliance roadmaps, and a clear framework mapping between standards (e.g., NIST 800-171, CIS Controls).
  • Manage evidence collection, control validation, and the tracking of audit findings and corrective actions through to completion.
  • Monitor changes in regulatory, customer, and industry frameworks that could impact compliance obligations.
Audit & Assurance Management
  • Act as the primary liaison to external auditors, assessors, and certification bodies.
  • Develop and maintain audit evidence repositories and supporting documentation.
  • Coordinate all auditor requests, including interviews, walkthroughs, and testing activities.
  • Perform internal compliance reviews and readiness assessments.
  • Establish and maintain policies, standards, and control documentation.
  • Track and report on compliance metrics to leadership.
Customer Security Assurance
  • Own the process for responding to customer cybersecurity due diligence requests, security questionnaires, and RFP security sections.
  • Maintain a knowledge base of approved security responses and supporting evidence.
  • Partner with cross-functional teams (Sales, Legal, Privacy, Infrastructure) to provide accurate and timely responses.
  • Participate in customer security discussions to articulate the organization’s security posture.
  • Support contract reviews related to cybersecurity requirements.
Cyber Risk Management
  • Manage and maintain the enterprise cybersecurity risk register.
  • Facilitate regular risk assessments across business processes, systems, applications, cloud environments, and third-party vendors.
  • Identify, assess, document, and prioritize cybersecurity risks using established methodologies.
  • Develop and maintain risk scoring frameworks and treatment plans.
  • Coordinate with risk owners to establish mitigation strategies and track remediation activities.
  • Prepare risk dashboards, reports, and presentations for leadership and governance committees.
  • Develop and maintain Key Risk Indicators (KRIs) to measure program effectiveness.
Governance & Security Program Support
  • Support the development and maintenance of information security policies, standards, and procedures.
  • Coordinate annual policy reviews and control effectiveness assessments.
  • Assist with third-party risk management and vendor security reviews.
  • Support security awareness and compliance training initiatives.
  • Contribute to the continuous improvement of the overall security program maturity.
Qualifications & Experience
Required Experience
  • Minimum 5 yearsof experience in cybersecurity, information security, IT audit, risk management, governance, or a related compliance role.
  • Minimum 3 yearsof direct experience supporting one or more of the following: SOC 2, ISO/IEC 27001, CMMC, NIST 800-171.
  • Proven experience managing compliance documentation, coordinating audits, and collecting evidence.
  • Demonstrated experience conducting risk assessments and maintaining risk registers.
  • Experience in responding to customer security questionnaires and assessments.
Technical & Software Skills
  • Proficient with Microsoft 365 suite (Teams, Word, Excel, PowerPoint, SharePoint).
  • Comfortable using GRC platforms, policy management tools, and other reporting/documentation software.
  • Ability to read and interpret business cases, project plans, risk reports, and technical documentation.
  • Strong analytical skills to prepare clear, concise written summaries and reports.
Preferred Education & Experience
  • Bachelor’s degree in Information Security, Cybersecurity, Information Technology, Risk Management, Business Administration, or a related discipline is preferred.
  • An equivalent combination of education, professional certification (e.g., CISSP, CISM, CRISC, CISA), and relevant experience may be considered.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Assurance and Compliance Specialist
Cybersecurity Assurance and Compliance Specialist

EnableSA • Gqeberha

On-site
ZAR 600,000 - 900,000
Cyber Risk & Compliance Leader
Cyber Risk & Compliance Leader

Hire Resolve • Oos-Kaap

On-site
ZAR 1,000,000 - 1,400,000
Senior Cybersecurity Engineer - Compliance & Technology
Senior Cybersecurity Engineer - Compliance & Technology

ATS Client • Sandton

On-site
ZAR 900,000 - 1,600,000
Cyber GRC Manager (CPT)
Cyber GRC Manager (CPT)

Datafin • Cape Town

On-site
ZAR 600,000 - 900,000
GRC Consultant CPT
GRC Consultant CPT

Datafin • Cape Town

On-site
ZAR 60,000 - 80,000
Cybersecurity Compliance Specialist Job Vacancy in Johannesburg, South Africa – Information Technology and Cybersecurity
Cybersecurity Compliance Specialist Job Vacancy in Johannesburg, South Africa – Information Technology and Cybersecurity

Standard Bank Group • Johannesburg

On-site
ZAR 800,000 - 1,200,000
Health & wellness package
Professional development allowances
Remote work options
+1
Junior GRC Security Analyst
Junior GRC Security Analyst

Network Recruitment • Johannesburg

On-site
ZAR 1,000,000 - 1,600,000
Information Security Specialist (Compliance)
Information Security Specialist (Compliance)

Placements24 • Upington

On-site
ZAR 600,000 - 900,000
Information Security Analyst (Compliance Focus)
Information Security Analyst (Compliance Focus)

Placements24 • Noord-Kaap

On-site
ZAR 420,000 - 620,000
Competitive salary
Professional development opportunities
Stable work environment
Cyber Risk Incident Manager
Cyber Risk Incident Manager

Salix Recruitment • Gauteng

On-site
ZAR 900,000 - 1,500,000