Business Information Security Officer

Details of the offer

Who are we?Sanlam Developing Markets [SDM] (a wholly-owned subsidiary of Sanlam Life Limited) is one of the top financial services providers in the South African entry-level and emerging middle market.
It aims to understand the unique requirements of clients and offers a wide range of simple and affordable financial solutions that cover needs such as funeral insurance, savings for education, life cover and personal accident plans.
In terms of the Sanlam Group Governance Policy, SDM is managed by the SA Retail Mass cluster, which is part of the Sanlam Life and Savings cluster within the Sanlam Group.
The cluster focusses on retail products, as well as group schemes.What will you do?Establish and manage a BU Information Security Programme,Participation in Group Information Security Programme (GISP) initiatives,Information Security Incident response and Cyber Crisis Management,Information Security Governance and assurance,Application (including cloud) and Infrastructure Security, andCybersecurity Education, Training and AwarenessThe BISO will implement processes and controls as agreed with the CISO and the Business CIO.The BISO will be responsible for quality and cost effectiveness of delivery of information security services in the BU and willreport on these metrics to the GISP Be accountable for IT's Risk and Compliance (it SRM and Sanlam Group standards)What will make you successful in this role?
Knowledge of ISO27k, Cobit, ITIL, CIS T20 and ISF best practices.
Knowledge of Information Risk Methodologies (ideally IRAM2), threat modelling and Operational Risk management methodologies Knowledge of the key business processes, key stakeholders and have their contact details readily available.
Understanding of the risk management and governance structures within the Cluster Experience in policy writing and reviews.
Experience in agile/ relevant solution development methodologies.
Familiarity with security practices and standards in development like the security development life cycle (.
OWASP).
Understanding of the technical and application environment of the Cluster/ BU.
Experience in analysis and control design, strong written and verbal communication skills.
Qualification and Experience:Degree or Diploma with 6 to 8 years related experience.Knowledge and Skills:Cyber Security AdministrationCyber Security AuditsCyber Security ComplianceAssessing security risksAssessment risk mitigation for the organisationPersonal AttributesPlans and aligns - Contributing through othersDecision quality - Contributing through othersOptimises work processes - Contributing through othersInterpersonal savvy - Contributing through othersBuild a successful career with usWe're all about building strong, lasting relationships with our employees.
We know that you have hopes for your future – your career, your personal development and of achieving great things.
We pride ourselves in helping our employees to realise their worth.
Through its five business clusters – Sanlam Fintech, Sanlam Life and Savings, Sanlam Investment Group, Sanlam Allianz, Santam, as well as MiWay and the Group Office – the group provides many opportunities for growth and development.Core CompetenciesBeing resilient - Contributing through othersCollaborates - Contributing through othersCultivates innovation - Contributing through othersCustomer focus - Contributing through othersDrives results - Contributing through othersTurnaround timeThe shortlisting process will only start once the application due date has been reached.
The time taken to complete this process will depend on how far you progress and the availability of managers.
The Sanlam Group is committed to achieving transformation and embraces diversity.
This commitment is what drives us to achieve a diverse, inclusive and equitable workplace as we believe that these are key components to ensuring a thriving and sustainable business in South Africa.
The Group's Employment Equity plan and targets will be considered as part of the selection process.


Nominal Salary: To be agreed

Requirements

Specialist Solutions Analyst

*Please note that the hiring team responsible for this position will be using the PikUniq platform for candidate screening and conducting one-way interviews....


Pikuniq - Gauteng

Published a month ago

Sap Cloud Platform Integration Consultant

About the Role: We are seeking a seasoned SAP Cloud Platform Integration Consultant to join our dynamic team in the financial services sector. This is a cri...


Adept Digital Advisory (Pty) Ltd - Gauteng

Published a month ago

Intermediate Full Stack Developer (Remote)

LOCATION: 100% Remote (with occasional on-site PI planning in Johannesburg) We are seeking a highly skilled and motivated Intermediate Full Stack Developer ...


Baec Specialists - Gauteng

Published a month ago

Firmware Developer (Iot)

Sandton (Office Based (no remote/hybrid)) Our company is seeking a Firmware Developer with experience and a keen interest in IoT Technology. We are faced wi...


Baec Specialists - Gauteng

Published a month ago

Built at: 2024-11-15T11:50:41.211Z