IT Security Manager

Performit Personnel

Oos-Kaap

On-site

ZAR 900,000 - 1,400,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Performit Personnel seeks an IT Security Manager to lead governance, risk, and compliance across the organization. You will collaborate with Global IT, Legal, HR, Internal Audit, and business stakeholders to strengthen the security program and ensure effective risk management.

This role emphasizes policy execution, security standards, awareness initiatives, and audit support, while excluding SOC operations and incident response unless assigned.

Qualifications

  • 5+ years of information security, governance, risk management, compliance or related field.
  • Experience coordinating security audits, findings and remediation activities.
  • Strong written and verbal communication skills.
  • Experience with information security frameworks (ISO 27001, NIST, SOC 2, CIS Controls).

Responsibilities

  • Lead information security governance across the organization and drive policy execution.
  • Manage risk identification, assessment, treatment, and reporting; maintain risk register.
  • Coordinate internal and external security assessments and audit activities; track remediation.
  • Develop security awareness programs and provide guidance on security responsibilities.
  • Support third‑party security reviews and vendor risk management.
  • Measure and report on information security program performance and maturity.

Skills

Information security
Governance
Risk management
Compliance
Audit
Stakeholder influence

Education

Bachelor's degree

Tools

Microsoft 365
Policy management platforms
Risk reporting
Audit coordination tools

Job description

The IT Security Manager is responsible for leading and supporting information security governance, risk management, compliance, and security assurance activities across the organization. The role works closely with Global IT, Legal, HR, Internal Audit, business stakeholders, and third-party partners to maintain and improve the organization’s security program.

This position drives security policy execution, security standards, risk management processes, compliance initiatives, security awareness, audit support, vendor security oversight, and management reporting. The role provides practical guidance to ensure information security risks are identified, assessed, managed, and communicated clearly.

This is not a Security Operations role. The position does not own SOC operations, security engineering, incident response execution, threat detection, endpoint protection, vulnerability management operations, identity platform administration, or security tooling administration unless separately assigned.

Requirements
  • 5+ years of experience in information security, cybersecurity, risk management, governance, compliance, audit, or a related field.
  • Strong understanding of information security principles, governance practices, and risk management processes.
  • Experience coordinating security audits, assessments, findings, and remediation activities.
  • Experience developing, maintaining, or supporting security policies, standards, procedures, and awareness programs.
  • Strong written and verbal communication skills.
  • Demonstrated ability to influence stakeholders across multiple business functions and regions.
  • Strong analytical, organizational, and problem‑solving skills.
  • Ability to manage multiple priorities and deliver outcomes in a matrixed global environment.
  • Experience with security frameworks and standards such as ISO 27001, NIST Cybersecurity Framework, SOC 2, CIS Controls, or equivalent.
  • Experience with third‑party security risk management.
  • Experience working in a global organization.
  • Professional certification such as CISSP, CISM, CRISC, CGRC, ISO 27001 Lead Implementer, or equivalent.
Technical and Software Skills
  • Proficient with Microsoft 365 productivity and collaboration tools, including Teams, Word, Excel, PowerPoint, and SharePoint.
  • Comfortable with governance, risk, compliance, policy management, reporting, and documentation platforms.
  • Able to read and interpret business cases, project plans, risk reports, policies, procedures, training materials, and audit documentation.
  • Able to prepare clear written summaries, management updates, risk narratives, and corrective action plans.
Education and Experience

Bachelor’s degree in Information Security, Cybersecurity, Information Technology, Risk Management, Business Administration, or a related discipline is preferred. An equivalent combination of education, professional certification, and relevant experience may be considered.

Essential Functions
Security Governance
  • Develop, maintain, and improve information security policies, standards, procedures, and guidelines.
  • Drive adoption of security governance practices across the organization.
  • Partner with business and technology stakeholders to ensure security requirements are included in business processes and initiatives.
  • Provide subject matter expertise on information security governance matters.
Risk Management
  • Lead the identification, assessment, treatment, monitoring, and reporting of information security risks.
  • Maintain and support the enterprise security risk register.
  • Track remediation plans and ensure security risks are managed within approved timelines.
  • Facilitate recurring security risk assessments across business functions and technology environments.
Compliance and Audit Support
  • Coordinate internal and external information security assessments and audit activities.
  • Support security requirements related to contractual, regulatory, customer, and industry obligations.
  • Manage audit findings, corrective action plans, evidence coordination, and remediation tracking.
  • Prepare management reports and metrics related to compliance and security program effectiveness.
Security Awareness and Training
  • Develop and support security awareness and training activities.
  • Promote practical security behavior across the organization.
  • Provide guidance to employees, management, and stakeholders on security responsibilities.
Third‑Party and Vendor Security
  • Support third‑party security risk management activities.
  • Perform security reviews of vendors, service providers, and business partners.
  • Track vendor security risks and coordinate remediation where required.
Security Program Management
  • Support planning and execution of security initiatives, projects, and strategic objectives.
  • Measure and report on information security program performance and maturity.
  • Identify opportunities to improve security governance processes and reduce operational friction.
Out of Scope
  • Security Operations Center management.
  • Security incident response execution or technical investigation ownership.
  • Security engineering, architecture, or tool administration.
  • Endpoint detection and response platform ownership.
  • Vulnerability scanning operations and patch execution.
  • Identity and access management platform administration.
  • Network security operations or firewall administration.
  • 24x7 monitoring, alert triage, or threat hunting responsibilities.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Manager
IT Security Manager

Performit Personnel • Gqeberha

On-site
ZAR 600,000 - 900,000
IT Security Manager (Compliance & Risk)
IT Security Manager (Compliance & Risk)

Top Vitae Recruitment • Gqeberha

On-site
ZAR 900,000 - 1,300,000
IT Security Manager (Compliance & Risk)
IT Security Manager (Compliance & Risk)

Top Vitae • Oos-Kaap

On-site
ZAR 900,000 - 1,200,000
Information Security Manager
Information Security Manager

ATS Client • Midrand

On-site
ZAR 900,000 - 1,500,000
Senior Associate Information Security Analyst
Senior Associate Information Security Analyst

Recruit-It • Gauteng

On-site
ZAR 900,000 - 1,300,000
Information Security Officer
Information Security Officer

LINKFIELDS INNOVATIONS (PTY) LTD • Noord-Kaap

On-site
ZAR 500,000 - 750,000
IT Security Specialist x4
IT Security Specialist x4

ATNS SOC Limited • South Africa

On-site
ZAR 700,000 - 900,000
Senior Cybersecurity Engineer - Compliance & Technology
Senior Cybersecurity Engineer - Compliance & Technology

ATS Client • Sandton

On-site
ZAR 900,000 - 1,600,000
Information Security Officer
Information Security Officer

Network Finance • Gauteng

On-site
ZAR 1,000,000 - 1,800,000
IT Security Specialist Talent Pool
IT Security Specialist Talent Pool

Mr Price Group • Durban

On-site
ZAR 600,000 - 800,000