Information Security & Compliance Officer

ATS Client

Cape Town

On-site

ZAR 700,000 - 1,100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ATS Client in Cape Town, South Africa, seeks an experienced Information Security & Compliance Officer to lead and support the information security programme, regulatory compliance obligations, governance, and security engineering to help protect business systems, data, and infrastructure.

The successful candidate will monitor security threats, manage incidents, maintain security controls, ensure regulatory compliance, and drive security awareness across the organisation.

Qualifications

  • 5-7 years of hands-on experience in Information Security, Cybersecurity Engineering, or IT Security.
  • Experience with security monitoring, incident response, and vulnerability management.
  • Experience with POPIA compliance and IT governance frameworks.
  • Hands-on experience with endpoint protection platforms, SIEM solutions, and security tooling.
  • Exposure to cloud platforms such as Azure, AWS, or GCP.
  • Strong understanding of cybersecurity principles, frameworks, and best practices.
  • Knowledge of MITRE ATT&CK.
  • Experience with Windows environments, Entra ID/Azure AD, and networking fundamentals.
  • Understanding of firewalls, network security, and security architecture.
  • Scripting knowledge in Python or Bash would be advantageous.
  • Experience within telecommunications, ISP, or similar operational environments would be beneficial.

Responsibilities

  • Monitor systems, networks, and security platforms for suspicious activity and potential threats.
  • Investigate, respond to, and document security incidents, including root cause analysis.
  • Manage and maintain endpoint protection, SIEM, and other security monitoring tools.
  • Develop, implement, and maintain incident response plans and procedures.
  • Conduct vulnerability assessments, security reviews, and penetration testing initiatives.
  • Track remediation activities and work with IT teams to address identified risks.
  • Support security hardening across cloud and on-premises environments.
  • Ensure compliance with POPIA and support broader regulatory compliance requirements.
  • Manage data protection requests, incidents, and breach notifications.
  • Conduct data protection impact assessments for new systems, applications, and integrations.
  • Maintain security policies, standards, and governance documentation.
  • Produce regular security, risk, and compliance reporting for stakeholders.
  • Review threat intelligence, security alerts, and vulnerability management activities on an ongoing basis.
  • Assist with disaster recovery testing and business continuity initiatives.

Skills

Security monitoring
Incident response
Vulnerability management
POPIA compliance
Cloud security
MITRE ATT&CK
Windows / Azure AD
Networking fundamentals
Scripting (Python/Bash)
Security architecture

Education

Diploma or Degree in Computer Science/IT/Cybersecurity

Tools

SIEM
Endpoint protection
Threat intel tools

Job description

Job Description

We are seeking an experienced Information Security & Compliance Officer to lead and support the operational delivery of our information security programme and regulatory compliance obligations. This role combines cybersecurity operations, risk management, governance, compliance, and security engineering to help protect business systems, data, and infrastructure.

The successful candidate will play a key role in monitoring security threats, managing incidents, maintaining security controls, ensuring regulatory compliance, and driving security awareness across the organisation.

Requirements

You'll:

  • Monitor systems, networks, and security platforms for suspicious activity and potential threats.
  • Investigate, respond to, and document security incidents, including root cause analysis.
  • Manage and maintain endpoint protection, SIEM, and other security monitoring tools.
  • Develop, implement, and maintain incident response plans and procedures.
  • Conduct vulnerability assessments, security reviews, and penetration testing initiatives.
  • Track remediation activities and work with IT teams to address identified risks.
  • Support security hardening across cloud and on-premises environments.
  • Ensure compliance with POPIA and support broader regulatory compliance requirements.
  • Manage data protection requests, incidents, and breach notifications.
  • Conduct data protection impact assessments for new systems, applications, and integrations.
  • Maintain security policies, standards, and governance documentation.
  • Produce regular security, risk, and compliance reporting for stakeholders.
  • Review threat intelligence, security alerts, and vulnerability management activities on an ongoing basis.
  • Assist with disaster recovery testing and business continuity initiatives.
You Should Have
  • 5-7 years of hands‑on experience in Information Security, Cybersecurity Engineering, or IT Security.
  • Proven experience with security monitoring, incident response, and vulnerability management.
  • Experience with POPIA compliance and IT governance frameworks.
  • Hands‑on experience with endpoint protection platforms, SIEM solutions, and security tooling.
  • Exposure to cloud platforms such as Azure, AWS, or GCP.
  • Strong understanding of cybersecurity principles, frameworks, and best practices.
  • Knowledge of threat intelligence frameworks such as MITRE ATT&CK.
  • Experience with Windows environments, Entra ID/Azure AD, and networking fundamentals.
  • Understanding of firewalls, network security, and security architecture.
  • Scripting knowledge in Python or Bash would be advantageous.
  • Experience within telecommunications, ISP, or similar operational environments would be beneficial.
Qualifications
  • Diploma or Degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Relevant security certifications are highly desirable, including:
    • CISSP
    • CISM
    • ISO 27001 Lead Implementer or Lead Auditor
    • CEH
    • CompTIA Security+
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Officer
Information Security Officer

Network Recruitment • Johannesburg

On-site
ZAR 1,000,000 - 2,000,000
Information Security Officer
Information Security Officer

Dots Africa • Midrand

On-site
ZAR 600,000 - 800,000
Competitive Compensation
Generous paid time off
Wellness program
+1
Information Security Officer (Safety)
Information Security Officer (Safety)

ATS Client • Pretoria

On-site
ZAR 600,000 - 900,000
Information Security Officer
Information Security Officer

LINKFIELDS INNOVATIONS (PTY) LTD • Noord-Kaap

On-site
ZAR 500,000 - 750,000
Information Security Manager
Information Security Manager

Parvana • Cape Town

On-site
ZAR 1,200,000 - 1,800,000
Information Security Officer (Safety)
Information Security Officer (Safety)

AtripleA recruitment & temps • Pretoria

On-site
ZAR 600,000 - 900,000
Information Security Officer
Information Security Officer

soughtout • Springs

On-site
ZAR 1,000,000 - 1,700,000
Senior Associate Information Security Analyst
Senior Associate Information Security Analyst

Recruit-It • Gauteng

On-site
ZAR 900,000 - 1,300,000
Senior Cybersecurity Engineer - Compliance & Technology
Senior Cybersecurity Engineer - Compliance & Technology

ATS Client • Sandton

On-site
ZAR 900,000 - 1,600,000
Information Security Officer
Information Security Officer

Network Finance • Gauteng

On-site
ZAR 1,000,000 - 1,800,000