Senior Information Security Manager - Johannesburg, South Africa - Believe Resourcing

Thabo Mthembu

Posted by:

Thabo Mthembu

beBee Recruiter


Description

Senior Information Security Manager
Johannesburg


OUR CLIENT:

A global leader in the BPO sector offering world-class CX and Service Centres at all their locations. They service industries such as eCommerce, Retail, Food Delivery, and Technology


PURPOSE OF THE JOB:


To ensure Our Client's Information Security Management System is maintained and the compliance of staff and policies, procedures, guidelines, and standards used to support the effectiveness of the ISMS.


WHAT YOU NEED TO QUALIFY:


Preferred skills:


  • Meticulous attention to detail
  • Ability to work under pressure to strict deadlines
  • Ability to work towards team and individual targets
  • Building and maintaining effective working relationships, with both internal and external teams, and clients.

Qualifications required:


  • Bachelor's degrees in Computer Science or Computer Engineering or Cyber Security
  • Industryrelated certification required (e.g. CISM, CISA, CEH, etc.) preferred ISO 27001 Lead Auditor preferred
  • Previous experience in a BPO environment

THE JOB:


Key Responsibilities:


  • Carry out all ISMS activities to ensure maintenance of SOC2 type 2, ISO 27001:2005, PCI-DSS certifications at South Africa and Bangladesh sites
  • Conduct risk assessments on client operations and ensure client's information security requirements are effectively addressed
  • Assist the central management team in overseeing compliance activities relating to information security and privacy
  • Act as the central coordinator for actual / potentially Information Security and Privacy incidents at the location and Lead the investigations.
  • Professional Knowledge and attributes required:
  • Excellent English communication skills (written and verbal)
  • Superior understanding of ISO27001, SOC2 and PCI-DSS and integration and maintenance within an ISMS
  • Good working knowledge of Information security related requirements
  • Solid Knowledge of IT Corporate Governance Principles
  • Ability to evaluate and analyze threat, vulnerability, impact and risk to security issues discovered from security assessments
  • Advise on InfoSec security issues, including explanation on the technical details and how they can remediate the vulnerabilities in the systems
  • Manage information protection and data privacy with an understanding of POPIA and European GDPR
  • Strong understanding of Information technology / IT security concepts
  • A good understanding of various information system technologies including: Active directory, Networking, LAN / WAN, firewalls, IDS / IPS, Log management systems, web content filtering systems, enterprise Antivirus management systems, Patch management, OS hardening guidelines, etc.
  • Information system auditing experience
  • Sound working knowledge of the latest Microsoft packages (Word, Excel, PowerPoint & Outlook)
  • Facilitate external VA/PT audits, Application Security Audits, and customer audits, and actively projectmanage the remediation of audit findings

More jobs from Believe Resourcing