JobsOpportunities
Vacancy: DirectAxis IT Security Officer
Candidates must have good presentational skills and the ability to communicate at all levels across the business. More info available @ YOUTH VILLAGE.
Requirements | – Minimum – Relevant tertiary qualification, CISSP (Certified Information Systems Security Professional)
– Ideal – CISA (Certified Information Systems Auditor), CRIS (Certified in Risk and Information Systems Control), CISM (Certified Information Security Manager) Skills Required – Good presentational skills and ability to communicate at all levels across the business |
Experience | – 3-5 Years Related security experience |
Duties & Roles | – Develop and maintain IT Security Policies – Develop and maintain IT Security standards in conjunction with Enterprise Architecture – Develop and implement the IT Security structures required to support the IT Security organisation – Define technical IT security plans and documentation to support the Security Strategy – Act as the technical Security lead in key IT and Security programmes, projects and initiatives – Act as Subject Matter Expert (SME) in projects – Own and provide leadership in reviewing, providing input and approving solution designs from a security perspective – Act as key approver in context of Change Management, specifically in regards to all changes requiring security oversight – Define the requirements for an IT Security gate within the SDLC – Facilitate Security Code reviews – Drive the Vulnerability and Patch Management Programme. – Coordinate technical security assessment and penetration tests, as well as drive remediation – Assist in identifying and mitigating IT security related risks in conjunction with IT Risk – Act as information security incident custodian – Perform information security research, and provide thought leadership – Provide relevant recommendations, and develop security KPI’s – Ensure Information Security Awareness within the organization – Conduct technical evaluation and assessment of Third Party compliance on technical information security control areas – Maintain oversight and drive corrective actions for compliance to security standards |