Purpose :
To lead and manage the information security framework across our systems, networks, and digital platforms. This role is responsible for the development, implementation, and continuous improvement of security policies, procedures, and controls.
Essential Functions :
- Develop, implement, and maintain IT security policies, standards, and procedures;
- Monitor and respond to security incidents and vulnerabilities across systems and infrastructure;
- Conduct risk assessments, audits, and vulnerability scans to identify and mitigate risks;
- Oversee firewall, antivirus, endpoint protection, and intrusion detection / prevention systems;
- Lead security awareness training programs for staff and stakeholders;
- Ensure compliance with relevant standards (e.g., POPIA, ISO 27001, PCI-DSS, GDPR);
- Manage access controls and user privileges in line with the principle of least privilege;
- Work with internal IT teams to ensure secure development and deployment practices;
- Assist with incident response and forensic investigations when breaches occur;
- Maintain and test disaster recovery and business continuity plans;
- Liaise with third-party vendors and auditors regarding IT security controls.
Preferred Skills, Knowledge and Other Requirements :
Experience with penetration testing or ethical hacking;Background in software development or secure DevOps practices;Knowledge of data privacy regulations;Strong knowledge of network and system security principles;Excellent problem-solving and analytical skills;Ability to evaluate risks and make well-informed decisions;Strong documentation and reporting skills;High level of integrity and attention to confidentiality;Ability to communicate security risks in plain language to non-technical stakeholders.Requirements : Experience, Education and Other :
Grade 12 (matric certificate required);Bachelor’s degree in Information Technology / Computer Science / Cybersecurity and / or related field;Professional certifications preferred (e.g. CISSP, CISM, CEH, CompTIA Security+);3–5+ years in an IT security or cybersecurity role;Experience with security tools such as SIEM, IDS / IPS, MFA, DLP, and endpoint protection;Working knowledge of cloud security (e.g., AWS, Azure, or GCP);Experience with regulatory frameworks (e.g., POPIA, ISO 27001);Previous experience in a betting company (an advantage).