This roles primary responsibility is to provide the company with a moderate level of governance support within the Information Security team. This includes being able to work with stakeholders across the business and ensure all security and technical hygiene tasks are completed on time.
The role will provide the company with a dedicated resource looking for, reacting to and remediating security related governance issues with the workplace.
Key Accountabilities and main responsibilities
Strategic Focus
Maintain awareness of current Information Security standards and ensures all activities comply with the standards
Drive continuous improvement in information security, operational processes and procedures
Operational Management
Ensure all tasks (risks, corrective actions, audits, control self-assessments and incidents) recorded within the Governance, Risk and Compliance (GRC) system are updated and remediated in a timely manner
Evaluate potential vendors and third-party solutions for security/penetration testing
Monitoring the vendor and product landscape to know what products are available
Assist with the Quarterly User Access Reviews
Assist the Security Operations and Intelligence team with investigations and escalations
Support and improve reporting to the Executive management.
Execute and report on the Information Security control self-assessments.
Assist with the planning, scheduling of various audits sessions and the collection and collation of audit evidence artefacts.
Governance & Risk
Assess and evaluate the risk of current business initiates from an Information Security perspective
The above list of key accountabilities is not an exhaustive list and may change from time-to-time based on business needs.
Experience & Personal Attributes
Experience
Tertiary education in Security/Technology discipline or related field
Minimum 2+ years’ experience in security/IT operations, Business Systems Analysis or simila