This roles primary responsibility is to provide the company with a moderate level of governance support within the Information Security team. This includes being able to work with stakeholders across the business and ensure all security and technical hygiene tasks are completed on time.
The role will provide the company with a dedicated resource looking for, reacting to and remediating security related governance issues with the environment.
Key Accountabilities and main responsibilities
Strategic Focus
- Maintain awareness of current Information Security standards and ensures all activities comply with the standards
- Drive continuous improvement in information security, operational processes and procedures
- Operational Management
- Ensure all tasks (risks, corrective actions, audits, control self-assessments and incidents) recorded within the Governance, Risk and Compliance (GRC) system are updated and remediated in a timely manner
- Evaluate potential vendors and third-party solutions for security/penetration testing
- Monitoring the vendor and product landscape to know what products are available
- Assist with the Quarterly User Access Reviews
- Assist the Security Operations and Intelligence team with investigations and escalations
- Support and improve reporting to the Executive management.
- Execute and report on the Information Security control self-assessments.
- Assist with the planning, scheduling of various audits sessions and the collection and collation of audit evidence artefacts.
Governance & Risk
- Assess and evaluate the risk of current business initiates from an Information Security perspective
The above list of key accountabilities is not an exhaustive list and may change from time-to-time based on business needs.
Experience & Personal Attributes
Experience
- Tertiary education in Security/Technology discipline or related field
- Minimum 2+ years’ experience in security/IT operations, Business Systems Analysis or simila