Enable job alerts via email!

Senior Specialist Data Security

Vodafone Group

Gauteng

On-site

ZAR 400 000 - 800 000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a skilled Technology Security Consultant to enhance their Cyber Security Governance and Risk Assurance. This role involves supporting high-profile projects, ensuring security compliance, and managing incident responses. The ideal candidate will have a strong background in Information Security, with a focus on frameworks like COBIT and ISO27001, and the ability to engage with diverse stakeholders. Join a dynamic team committed to fostering an inclusive culture and driving innovation in technology security. This is a fantastic opportunity to make a significant impact within a forward-thinking organization.

Qualifications

  • 5+ years of experience in a Tech Security role with proven frameworks.
  • Knowledge of compliance frameworks like ISO/IEC 27001, SOC 2, and NIST.

Responsibilities

  • Provide supervisory technology security operations and support to projects.
  • Ensure compliance with legal and regulatory requirements.
  • Lead and manage information security investigations and incident management.

Skills

Information Security
Cyber Security Governance
Risk Management
Compliance
Incident Response
Communication Skills
Technical Support
Stakeholder Engagement

Education

Diploma or Bachelor’s Degree in Computer Science

Tools

Microsoft Security Technologies
DLP
WAF
EDR

Job description

The purpose of the role is to consult and support Technology Security Operations across Vodacom Group. This role requires the individual to have credible experience in Information Security and Cyber Security Governance, Risk and Assurance based on proven frameworks such as COBIT 5, ISO27001/2, and the NIST Cybersecurity Framework. As a key member of the Vodacom Group Technology Security team, the candidate should be comfortable with supporting and driving information security technology support, governance and assurance while communicating clearly with technical as well as non-technical audiences.

Your responsibilities will include:
  1. Provide supervisory technology security operations and support to high profile projects.
  2. Ensure security is embedded in IT System and Network Infrastructure (Mobile, IS and Enterprise) across the Vodacom Group.
  3. Support Cyber Incident Response actions.
  4. Defining, implementing and efficiently maintaining technology security controls and requirements.
  5. Ensure timely delivery of technology security assurance and support for projects.
  6. Ensure compliance with Legal and Regulatory requirements.
  7. Provide SME input to Technology Security Policy requirements and procedures.
  8. Provide accurate and timely reporting of technology security risks identified during project engagement and propose remediation and mitigation options.
  9. Fulfil key customers’ obligations and stakeholders’ expectations.
  10. Participate in creation and execution of technology security strategy.
  11. Ensure financial efficiency in Tech Security Solutions.
  12. The role requires the individual to monitor information security governance, risk, and compliance by Vodacom Corporate IT, Mobile and Enterprise Business domains.
  13. Ensure alignment of information security governance with the Vodacom’s business objectives, the information security strategy, plans and controls.
  14. Ensure compliance with the applicable legislative and regulatory interpretation and corporate risk appetite.
  15. Lead, develop, manage and maintain the Vodacom-wide information security governance deliverables lifecycle including compliance measurement, deviations and exemptions.
  16. Engage with the stakeholders on compliance to control effectiveness and deficiencies in the design and operating effectiveness of information security controls, design and recommend opportunities for continuous improvement.
  17. Interpret and manage the controls and capabilities required for Vodacom to establish and comply with an information security management system in alignment with information security international best practice and/or industry standard(s).
  18. Manage and conduct formal information security risk analyses, reviews, tests, audits and/or self-assessments.
  19. Design appropriate remedial actions for identified risks, drive remediation of findings and management of risks and exemptions.
  20. Participate in IT general controls and compliance testing activities and/or audits.
  21. Lead, develop and maintain a comprehensive and effective Vodacom information security risk, threat and vulnerability management capability that effectively anticipates the latest threat and vulnerabilities for Vodacom, as well as assesses and reduces information security risk to within the corporate risk appetite.
  22. Report information security risks in an appropriate way for different audiences.
  23. Lead, drive and manage information security investigations and incident management.
  24. Develop, manage and maintain an information security incident management capability.
  25. Develop, measure and manage Vodacom measurements to assess the effectiveness of this program, and drive continuous improvement.
  26. Collaborate with various key stakeholders, and provide information security advice to stakeholders.
The ideal candidate for this role will have:
  1. Diploma or Bachelor’s Degree in Computer Science, Information Systems, Systems Analysis, or other related field.
  2. Minimum of 5+ years of experience in Tech Security role where you meet business deliverables.
  3. Knowledge of common information technology management/compliance frameworks such as ISO/IEC 27001, SOC 2, SOX, ITIL, COBIT, and NIST.
  4. Knowledge of legal, regulatory and privacy requirements, such as Personally Identifiable Information (PII) Protection and Payment Card Industry (PCI)/Data Security Standard.
  5. Experience supporting DLP, WAF, EDR and other solutions.
  6. Cyber Incident Response experience.
  7. Previous or current workings with Microsoft Security Technologies will be beneficial.
  8. A diverse security background with knowledge in several areas including: layered security architecture; internet protocols; firewalls; VPN technologies, IDS/IPS, network access control and network segmentation, anti-malware and spam technologies; risk and vulnerability assessments, and compliance.
  9. Security concepts related to DNS, routing, authentication, VPN, proxy services and DDOS mitigation technologies.
  10. Windows, UNIX and Linux operating systems.
  11. Practices and methods of enterprise architecture and security architecture.
  12. Network security architecture development and definition.
  13. Web Security & Encryption.
  14. Ability to build and manage highly motivated and innovative technical team.
  15. Ability to work under time and resource pressure.
  16. An ability and desire to communicate and work with a broad set of stakeholders.
  17. A customer-focused, responsive, and transparent attitude.
  18. An industry certification within Cyber Security.

Closing date for Applications: 26 June 2023

The base location for this role is, Midrand, Vodacom Campus.

The Company’s approved Employment Equity Plan and Targets will be considered as part of the recruitment process. As an Equal Opportunities employer, we actively encourage and welcome people with various disabilities to apply. Vodacom is committed to an organisational culture that recognises, appreciates and values diversity & inclusion.

About the company

Vodafone Group plc is a British multinational telecommunications company.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.