Liberty Group South Africa

  • Gauteng
  • Liberty Group South Africa
Job Description:

  • Beware of scammers who pose as reprensentatives of genuine employers.

    At Liberty we believe that when knowledge rolls up its sleeves, people’s realities change. And that’s what we do; we change realities every day. Since 1957 we’ve grown from being a South African life insurer to a Pan-African financial services company, offering asset management, investment, insurance and health products. Our thirst for kn...

    Snr Spec: Information Security Officer

    Purpose

    • To implement a comprehensive Information Technology security program with the Information Technology lines of business to protect their applications and supporting infrastructure from both internal and external threats, manage threats and incidents when these materialise, ensure compliance with regulatory requirements regarding Information Technology security, ensure the appropriate use of assets and educate employees about their Information Technology security responsibilities.

    Key Responsibilities

    • Develop and maintain relationships with key stakeholders to further embed the partnership that exists between IT Security, IT and the business.
    • Research and maintain knowledge of the IT threat landscape, security trends, regulatory requirements, new technologies and best practices in order to provide sensible and pragmatic security advice to stakeholders.
    • Develop a security assessment schedule across the respective lines of business / business units. Conduct reviews of applications, systems, underlying infrastructure and related processes as per the schedule.
    • Establish, maintain and improve logical access management practices for all users (Generic, User, Service and Privileged) by the application of appropriate manual and/or automated processes – in order to provide assurance that the right people have the right level of access to Liberty’s information.
    • Implement and validate all aspects of the access management lifecycle, as prescribed by the appropriate policies and standards.

    Additional Key Responsibilities

    • Develop an awareness and training plan for the line of business that is fit for purpose, aligned with strategy and considers a range of risk data points e.g. audit findings, risk and control self-assessments, IT Security risk assessments, emerging threats and risks, and incidents.
    • Create awareness to the IT Executives and broader IT community on the back of new threat and risk intelligence. Proactively create awareness on recurring risk themes.
    • Participate in the development of new and the annual review of existing IT Security Policies, Standards and Guidelines by providing input to enhance the quality and completeness of these documents.
    • Communicate the requirements for compliance to the IT Security Policies, Standards and Guidelines to the relevant parties within IT.

    Minimum Experience

    • 3 - 8 years experience in a similar environment, of which 5 - 6 years at Technical Level.

    Minimum Qualifications

    • Degree in Management practices.
    • Compulsory - CISSP (Certified Information Systems Security Professional).
    • Mandatory -  ISACA CISM (Certified Information Security Manager).
  • Aptitude Tests

    Career Advice

    Share now

    Recent Similar Jobs....Jobsdojo Provides You With The Most Trusted Jobs

    Capitec Bank
    Platform Engineer I - Stellenbosch
    Full-Time Western Cape Sept. 14, 2024
    Capitec Bank
    Technical Support Engineer I (Bellville)
    Full-Time Western Cape Sept. 14, 2024
    Capitec Bank
    Team Leader: UX Design
    Full-Time Western Cape Sept. 14, 2024

    Select Your Color
    Theme Option
    Admin