GRC Security Consultant & Compliance Advisor

Cognisys

South Africa

On-site

ZAR 450,000 - 650,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Annual Leave: 25 days + 12 SA holidays
Health & Wellbeing plan
Professional Development budget (£2,0)
Referral Bonus (£2,000)

Job summary

Cognisys is seeking an Information Security Consultant to join our GRC Consulting team in South Africa. This client-facing, delivery-focused role translates regulatory requirements into practical, business-aligned solutions and works with senior consultants and client stakeholders to improve governance, risk and compliance.

The role requires 2–5 years in security, risk or GRC, experience with ISO27001, SOC 2 or NIST, strong communication, and the ability to manage multiple priorities while

Qualifications

  • 2–5 years’ experience in security, risk, compliance, or GRC roles.
  • Experience with ISO 27001, SOC 2, NIST or similar standards.
  • Experience supporting compliance or assurance initiatives (internal or client-facing).
  • Strong written and verbal communication skills.
  • Ability to manage multiple priorities in a structured and organised manner.
  • Analytical mindset with a pragmatic approach to problem solving.
  • Comfortable working with both technical and non-technical stakeholders.
  • Consulting experience is desirable but not essential.
  • Experience with GRC platforms including Vanta is desirable.

Responsibilities

  • Lead the delivery of GRC engagements across multiple clients.
  • Contribute to security posture assessments, gap analyses, and maturity reviews.
  • Assist in the design and implementation of GRC programmes aligned to ISO 27001, SOC 2, NIST.
  • Support clients through audit preparation, certification processes, and external assessments.
  • Develop remediation plans and assist clients in tracking progress against agreed actions.
  • Participate and lead in client workshops, risk assessments, and stakeholder sessions.
  • Interpret security standards and translate requirements into practical recommendations.
  • Lead in the development of policies, procedures, risk registers, control frameworks, and governance documentation.
  • Contribute to the design and documentation of security controls and operating models.
  • Help embed compliance activities into operational and technical processes.
  • Conduct risk assessments and maintain supporting documentation.

Skills

GRC experience
Client-facing
Policy development
Risk assessment
Communication skills

Tools

GRC platforms (Vanta)

Job description

Cognisys is seeking an Information Security Consultant to join our GRC Consulting team in South Africa. This client-facing, delivery-focused role translates regulatory requirements into practical, business-aligned solutions and works with senior consultants and client stakeholders to improve governance, risk and compliance.

The role requires 2–5 years in security, risk or GRC, experience with ISO27001, SOC 2 or NIST, strong communication, and the ability to manage multiple priorities while

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Consultant CPT
GRC Consultant CPT

Datafin • Cape Town

On-site
ZAR 60,000 - 80,000
GRC Consultant - Cybersecurity Compliance for SaaS
GRC Consultant - Cybersecurity Compliance for SaaS

Datafin • Cape Town

On-site
ZAR 60,000 - 80,000
GRC Security Analyst (Junior) – Risk & Compliance in Finance
GRC Security Analyst (Junior) – Risk & Compliance in Finance

Network Recruitment • Johannesburg

On-site
ZAR 1,000,000 - 1,600,000
Information Security Consultant
Information Security Consultant

Cognisys • South Africa

On-site
ZAR 450,000 - 650,000
Annual Leave: 25 days + 12 SA holidays
Health & Wellbeing plan
Professional Development budget (£2,0)
+1
Cyber GRC Manager (CPT)
Cyber GRC Manager (CPT)

Datafin • Cape Town

On-site
ZAR 600,000 - 900,000
Cyber GRC Manager | SaaS IT Audit & Compliance Lead
Cyber GRC Manager | SaaS IT Audit & Compliance Lead

Datafin • Cape Town

On-site
ZAR 600,000 - 900,000
Junior GRC (Governance, Risk, and Compliance) Analyst
Junior GRC (Governance, Risk, and Compliance) Analyst

Network Recruitment • Johannesburg

On-site
ZAR 420,000 - 620,000
Junior GRC Security Analyst
Junior GRC Security Analyst

Network Recruitment • Johannesburg

On-site
ZAR 1,000,000 - 1,600,000
Package Consultant-SAP GRC
Package Consultant-SAP GRC

Blue Pearl PTY • Johannesburg

On-site
ZAR 900,000 - 1,300,000
GRC Analyst: Risk & Compliance for Financial Services
GRC Analyst: Risk & Compliance for Financial Services

Network Recruitment • Johannesburg

On-site
ZAR 420,000 - 620,000