Information Security Officer - Pretoria, South Africa - Total IT Recruitment

Thabo Mthembu

Posted by:

Thabo Mthembu

beBee Recruiter


Description

Key Responsibilities:


POPIA Compliance:


  • Implement and maintain policies, procedures, and controls to ensure compliance with the Protection of Personal Information Act (POPIA) and other relevant data protection regulations.
  • Conduct regular audits and assessments to identify areas of noncompliance and implement corrective measures promptly.

Data Security:


  • Develop and implement comprehensive data security strategies, including encryption protocols, access controls, and intrusion detection systems, to protect sensitive company and customer information.
  • Monitor and analyse security vulnerabilities and threats and take proactive measures to mitigate risks and prevent data breaches.
  • Conduct regular security assessments, penetration tests, and vulnerability scans to identify and address security weaknesses.

Security Awareness and Training:


  • Develop and deliver additional training programs and materials to raise awareness of information security risks and best practices among employees.
  • Promote a culture of security awareness and compliance throughout the organization through regular communication and training initiatives.

Incident Response and Management:


  • Maintain an incident response plan to effectively address and mitigate security incidents and data breaches.
  • Lead incident response efforts, including containment, investigation, and remediation, and ensure timely reporting to relevant stakeholders and authorities as required by law.

Risk Management:


  • Conduct risk assessments and threat modeling exercises to identify potential security risks and vulnerabilities, and develop risk mitigation strategies accordingly.
  • Collaborate with crossfunctional teams to integrate security measures into business processes and systems development lifecycle.

Qualifications and Experience:


  • Bachelor's degree in Computer Science, Information Technology, or a related field required.
  • Minimum of 5 years of experience in information security, with a focus on data protection and compliance.
  • Indepth knowledge of the Protection of Personal Information Act (POPIA) and other relevant data protection regulations in South Africa.
  • Strong understanding of information security principles, standards, and best practices, including ISO/IEC 2700
  • Handson experience with security technologies such as firewalls, intrusion detection/prevention systems, encryption, and endpoint security solutions.
  • Proven experience in conducting security assessments, audits, and penetration tests.
  • Excellent communication and interpersonal skills, with the ability to effectively communicate complex security concepts to nontechnical stakeholders.

Salary:
R70 000,00 - R100 000,00 per month

More jobs from Total IT Recruitment