Our Client in the Telecommunications industry is hiring for a Cyber Security Specialist as an Independent Contractor for 12 months.
This role will allow you to gain experience in working with one of the largest telecommunications companies in South Africa.
The ideal candidate to come from or worked with clients in the : Financial Services / Telecommunications and Insurance Sectors.
Hybrid
Midrand based
on the hunt for an experienced and highly skilled Cyber Security Senior Specialist to oversee and manage our cyber security initiatives within the financial services, insurance, and lending sector.
The ideal candidate should have a deep understanding of cyber security practices and trends and possess the leadership skills necessary to guide a team of professionals in implementing and maintaining an effective and comprehensive cyber security program.
The senior specialist must be able to influence and broker conversation with executive level stakeholders to address cyber risk in financial services entity.
Degree\Relevant tertiary qualification in Information technology and Minimum of 8 + years of experience in Cyber Security role where you meet business deliverables.At least 5+ years' experience in cyber governance, risk, controls and compliance management in a technology environment At least 3 – 5 years' experience in IT Audit and Assurance management in a Cyber or technology environment Knowledge of common information technology management / compliance frameworks such as ISO/IEC 27001, SOC 2, SOX, ITIL, COBIT, and NIST.Knowledge of legal, regulatory and privacy requirements, such as Personally Identifiable Information (PII) Protection and Payment Card Industry (PCI)/Data Security Standard.High level understanding and Knowledge of Cloud Risk, Compliance and AssuranceProven experience managing and operating multiple security programs, projects, and initiativesAn ability to think strategically and drive changeA deep understanding of Tech Security risks and mitigating solutionsGSM Network InfrastructureA diverse security background with knowledge in several areas including: layered security architecture; internet protocols; firewalls; VPN technologies, IDS/IPS, network access control and network segmentation, anti-malware and spam technologies; risk and vulnerability assessments, and compliance.Security concepts related to DNS, routing, authentication, VPN, proxy services and DDOS mitigation technologies Windows, UNIX and Linux operating system Web Security EncryptionStrong organizational skills and an entrepreneurial drive with a history of recruiting and developing high-performing teamsAbility to build and manage highly motivated and innovated technical teamAbility to work under time and resource pressureAn ability and desire to communicate and work with a broad set of stakeholdersAn industry certification e.g.
ISO 27001 Lead practitioner, CGEIT, CRISC, CISA, CISM and CISSP/CCSP is strongly preferred.Take a proactive approach to ongoing evaluation of cyber security policies to ensure security policy adherence related to companySupport the development and guide a 3-to-5-year Cyber Security Strategy across the company entity.Achieve and maintain and target Cyber Security Maturity level for company Build relevant Business Cases for key initiatives and existing planned cyber programmesDesign, Develop and Implement a Security Programme for companyNo or per target Internal Audit findings related to company for Cyber SecurityEnsure a Cyber Security Incident Response Practice is in place across the company entity.Promote awareness of security policies, training, and the governance strategy amongst all levels of company to ensure sound security governance is reflected across the entity.Actively manage risks on the Cyber Risk Register from intake to resolutionCommunicate risk assessment findings with key stakeholders to develop and monitor risk remediation plans.Conduct regular compliance assessments with the Business to ensure that current and emerging risks are being monitored and managed.Proactive Control design and implementation guidance provided to the Business.Process and Control Compliance Monitoring and ReportingManagement on the recommended actionsTracking and monitoring of audit remediation action implementationProvide Management with status update reports as well as insight reporting across all entities