Enable job alerts via email!

Manager, Information Risk & Business Resilience

Standard Bank Group

Johannesburg

On-site

ZAR 500,000 - 600,000

Full time

5 days ago
Be an early applicant

Job summary

A leading financial services group in Johannesburg is seeking a specialist to manage Information Risk and Business Resilience Frameworks. The role requires 3-4 years of experience in information security and related risks. Candidates will lead risk assessments, drive awareness, and manage incident response plans, making this a key position for those passionate about security and resilience in the financial sector.

Qualifications

  • 3-4 years experience in defending information from unauthorized use.
  • Experience analyzing non-financial risks like Cyber Risk and Legal Risk.
  • Experience in Business Continuity lifecycle.

Responsibilities

  • Lead Group-wide risk assessments and remediation efforts.
  • Drive information risk and business disruption awareness.
  • Manage incident response planning and breach investigations.

Skills

Information Security
Risk Management

Education

Degree in Information Technology or Risk Management
Job description

Company Description

Standard Bank Group is a leading Africa-focused financial services group, and an innovative player on the global stage, that offers a variety of career-enhancing opportunities – plus the chance to work alongside some of the sector’s most talented, motivated professionals. Our clients range from individuals, to businesses of all sizes, high net worth families and large multinational corporates and institutions. We’re passionate about creating growth in Africa. Bringing true, meaningful value to our clients and the communities we serve and creating a real sense of purpose for you.

Job Description

Provide specialist advisory and leadership across the Group in implementing and managing the Information Risk and Business Resilience Frameworks. Ensures all business units are equipped to identify, mitigate, and treat information and technology service continuity risks in alignment with ethical, regulatory, and strategic standards.

Qualifications
  • A degree in Information Technology or Risk Management (Required).
Experience Required
  • 3-4 years experience in defending information from the risk of accidental or intentional unauthorized use, access, modification, disclosure, dissemination or destruction of information resources, which would compromise the confidentiality, integrity and availability of information which would potentially harm the business. Experience in analysing the risk posture on other related non-financial risks such as Cyber Risk, Technology Risk, Third Party Risks, Regulatory Compliance Risk, Legal Risk.
  • 3-4 years experience and exposure to the delivery of the Business Continuity lifecycle (i.e. impact analysis, recovery strategy formulation, plan development, testing and exercising and governance and awareness related activities), engaging multiple stakeholders across the bank to fulfil value-chain and business line requirements for the business resilience (BR) programme.
  • 3–4 years in information security and non-financial risk domains.
  • 3–4 years in business continuity lifecycle delivery and/ or
  • 3–4 years in Service Management delivery
Key Responsibilities
  • Lead Group-wide risk assessments, reporting, and remediation efforts.
  • Drive information risk and business disruption awareness, training, and stakeholder engagement.
  • Coordinate with Client Segments, Group Technology Functions, and Corporate Functions. Eg. BR Coordinator, DR Coordinator, Backup & Restore Coordinator
  • Manage incident response planning, breach investigations and reporting and develop and execute fit-for-purpose technology resilience programmes.
  • Maintain the relevance of Standards, Playbooks and operational guidelines like Runbook templates.
  • Engage with external vendors (like SaaS Providers) and regulators, as/ when required by accountable officers of the bank.
  • Monitor and report on technology resilience metrics to governance forums.
Behavioural Competencies
  • Adopting Practical Approaches
  • Articulating Information
  • Challenging Ideas
  • Conveying Self-Confidence
  • Developing Expertise
  • Documenting Facts
  • Establishing Rapport
  • Examining Information
  • Following Procedures
  • Interacting with People
  • Managing Tasks
  • Pursuing Goals
Technical Competencies
  • Evaluating Risk Management Effectiveness
  • Information Security
  • Information Security Management
  • Risk Acceptance
  • Risk Identification
  • Risk Response Strategy
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.