Business Information Security Officer

Johannesburg, Gauteng, South Africa

Job Description


Who are we?Sanlam Developing Markets [SDM] (a wholly-owned subsidiary of Sanlam Life Limited) is one of the top financial services providers in the South African entry-level and emerging middle market. It aims to understand the unique requirements of clients and offers a wide range of simple and affordable financial solutions that cover needs such as funeral insurance, savings for education, life cover and personal accident plans. In terms of the Sanlam Group Governance Policy, SDM is managed by the SA Retail Mass cluster, which is part of the Sanlam Life and Savings cluster within the Sanlam Group. The cluster focusses on retail products, as well as group schemes.What will you do?Establish and manage a BU Information Security Programme,
Participation in Group Information Security Programme (GISP) initiatives,
Information Security Incident response and Cyber Crisis Management,
Information Security Governance and assurance,
Application (including cloud) and Infrastructure Security, and
Cybersecurity Education, Training and Awareness
The BISO will implement processes and controls as agreed with the CISO and the Business CIO.
The BISO will be responsible for quality and cost effectiveness of delivery of information security services in the BU and willreport on these metrics to the GISPBe accountable for IT's Risk and Compliance (it SRM and Sanlam Group standards)What will make you successful in this role?

  • Knowledge of ISO27k, Cobit, ITIL, CIS T20 and ISF best practices.
  • Knowledge of Information Risk Methodologies (ideally IRAM2), threat modelling and Operational Risk management methodologies
  • Knowledge of the key business processes, key stakeholders and have their contact details readily available.
  • Understanding of the risk management and governance structures within the Cluster
  • Experience in policy writing and reviews.
  • Experience in agile/ relevant solution development methodologies.
  • Familiarity with security practices and standards in development like the security development life cycle (e.g. OWASP).
  • Understanding of the technical and application environment of the Cluster/ BU.
  • Experience in analysis and control design, strong written and verbal communication skills.
Qualification and Experience:Degree or Diploma with 6 to 8 years related experience.Knowledge and Skills:Cyber Security Administration
Cyber Security Audits
Cyber Security Compliance
Assessing security risks
Assessment risk mitigation for the organisationPersonal AttributesPlans and aligns - Contributing through othersDecision quality - Contributing through othersOptimises work processes - Contributing through othersInterpersonal savvy - Contributing through othersBuild a successful career with usWe're all about building strong, lasting relationships with our employees. We know that you have hopes for your future - your career, your personal development and of achieving great things. We pride ourselves in helping our employees to realise their worth. Through its five business clusters - Sanlam Fintech, Sanlam Life and Savings, Sanlam Investment Group, Sanlam Allianz, Santam, as well as MiWay and the Group Office - the group provides many opportunities for growth and development.Core CompetenciesBeing resilient - Contributing through othersCollaborates - Contributing through othersCultivates innovation - Contributing through othersCustomer focus - Contributing through othersDrives results - Contributing through othersTurnaround timeThe shortlisting process will only start once the application due date has been reached. The time taken to complete this process will depend on how far you progress and the availability of managers.The Sanlam Group is committed to achieving transformation and embraces diversity. This commitment is what drives us to achieve a diverse, inclusive and equitable workplace as we believe that these are key components to ensuring a thriving and sustainable business in South Africa. The Group's Employment Equity plan and targets will be considered as part of the selection process.

Sanlam

Beware of fraud agents! do not pay money to get a job

MNCJobs.co.za will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Related Jobs

Job Detail

  • Job Id
    JD1370257
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Johannesburg, Gauteng, South Africa
  • Education
    Not mentioned