Talent.com
Manager: Information Security - (2197)
Manager: Information Security - (2197)University of Western Cape • ZA
No longer accepting applications
Manager: Information Security - (2197)

Manager: Information Security - (2197)

University of Western Cape • ZA
29 days ago
Job description

Key Performance Areas:
Information Security Governance

  • Establish, communicate and maintain information security policies, standards, procedures and other documentation that support information security,
  • Lead the design and implementation of an information security strategy to proactively address evolving cybersecurity threats and ensuring the confidentiality, integrity and availability of the University's information assets
  • Identify current and potential legal and regulatory requirements affecting information security,
  • Establish reporting and communication channels that support information security.

Information Security Risk Management

  • Establish a process for information asset classification and ownership,
  • Implement a structured information risk assessment mitigation and reporting process, and oversee findings to closure,
  • Ensure that threat and vulnerability evaluations are performed on an ongoing basis,
  • Identify and periodically evaluate information security controls and counter-measures to mitigate risk to acceptable levels,
  • Integrate risk, threat and vulnerability identification and management into operational management and program delivery processes.

Information Security Program Development

  • Ensure the development of information security architectures (considering people, information, processes and technology),
  • Develop and maintain plans to implement the information security strategy ensuring alignment with other assurance functions,
  • Specify the activities to be performed within the information security program / projects,
  • Develop a program for information security awareness, training and education,
  • Recommend and advise information security requirements into the organization’s processes and life cycle activities (e.g. change control, software development, employment, procurement etc.),
  • Advise on the integration of information security controls into contracts,
  • Establish metrics to evaluate the effectiveness of the information security program.

Information Security Program Management

  • Oversee the execution of information security programs,
  • Oversee the performance of contractually agreed information security controls (e.g., with joint ventures, outsourced providers, business partners, third parties),
  • Provide information security advice and guidance (e.g., risk analysis, control selection) across the institution,
  • Provide information security awareness, training and education to stakeholders (e.g. business process owners),
  • Monitor, measure and report on the effectiveness and efficiency of information security controls and compliance with information security policies,
  • Collaborate with Operational Teams to ensure effective management of controls and the successful implementation of strategies. This includes working closely with managers across different domains and engaging with campus stakeholders to align security and compliance objectives with operational needs.

Information Security Incident Management and Response

  • Develop and maintain plans to respond to and document information security incidents,
  • Develop and implement processes for preventing, detecting, identifying, analysing, and responding to information security incidents,
  • Establish escalation and communication processes and lines of authority,
  • Track and Facilitate the investigation of information security incidents (e.g. forensics, evidence collection and preservation, log analysis, interviewing),
  • Develop a process to communicate with internal and external stakeholders (e.g. media, law enforcement, staff and students),
  • Integrate information security incident response plans with the institution’s disaster recovery and business continuity plan,
  • Formulate training and awareness programs for information security incident response,
  • Provide guidance on the resolution of major information security incidents,
  • Facilitate reviews to identify root causes of information security incidents, facilitate corrective actions and re-assess risk.

Minimum Requirements

Qualification, Skills and Experience:

  • Bachelor’s degree in Computer Science or Information Systems, or an equivalent NQF-7 accredited qualification with 5 years' experience in a similar role and at a similar level or
  • Diploma at NQF 6 level and an accredited, internationally recognised Information Systems Security certification with 8 years' experience in a similar role and at a similar level
  • An accredited, internationally recognised Information Systems Security certification (CISSP, CISM, etc.),
  • Demonstrable IT Service Management experience,
  • Relevant Information Security (InfoSec) Management experience in an enterprise environment,
  • Knowledge of the legal, regulatory and compliance requirements related to InfoSec (e.g. POPIA),
  • Proficient in information security frameworks (e.g. NIST, ISO27001),
  • Good experiential knowledge and understanding of an enterprise business system architecture (including data centre; server environment; storage network; databases; operating systems; applications; WAN & LAN networks)
  • Successful track record in developing and managing InfoSec projects / programs,
  • Experience in Security incident management, Security Investigations and root cause analysis,
  • Advanced proficiency in MS Office (MS Word, Excel, Power Point),

Preferred/Advantageous Qualifications, Skills and Experience:
Below are the preferred requirements that would be advantageous to candidates, but are not essential:

  • Experience in developing InfoSec policies, plans and procedures aligned to ISO/IEC 27001 & 27002 standards,
  • Strong knowledge of IT Governance and cyber security practices
  • An accredited IT Risk Management certification (e.g. M_o_R) at intermediate / practitioner level,
  • Accredited certification in Project Management (e.g. PMP, Prince2),
  • COBIT-5 certification in IT Governance,
  • Experience in the use of Microsoft Project,
  • Experience working in the Higher Education sector would be advantageous,

Required Competencies:

  • Diagnostic information gathering, analytical thinking and problem-solving skills,
  • Demonstrated ability to work unsupervised to meet deadlines and to deliver results,
  • Excellent planning, co-ordination and time management skills,
  • Effective teamwork and the ability to collaborate and build strong relationships with diverse stakeholder groups,
  • Good business acumen and understanding of business requirements on ICT,
  • Thoroughness and attention to quality and detail,
  • Ability to influence, establish focus, and to lead and motivate teams to achieve common goals,
  • Excellent customer & service orientation,
  • Good listening skills and inter-personal awareness,
  • Strong personal credibility
  • Excellent English Communication skills (verbal and written),
  • Strong facilitation and inter-personal skills,
  • Strong business acumen.

Closing Date

9/3/2026

Create a job alert for this search

Manager: Information Security - (2197) • ZA

Similar jobs
Cyber Security Incident and Performance Manager

Cyber Security Incident and Performance Manager

Liquid Intelligent Technologies • ZA
Overseeing incident management and ticket performance for MSS and Global SOC Teams.Co-ordinating incident response for P1/Sev1 incidents originating from the SOC.Provides assurance reporting on cas...Show more
Last updated: 2 days ago • Promoted
Information Security Analyst (Ndabeni)

Information Security Analyst (Ndabeni)

Western Cape Blood Service • ZA
The Western Cape Blood Service is a non-profit organisation whose mission is to collect, process and distribute blood and blood products of the highest standards in the Western Cape.Reporting to th...Show more
Last updated: 2 days ago • Promoted
Security Solutions Architect

Security Solutions Architect

Discovery Limited • ZA
The Cloud Security Architect is responsible for defining, governing, and guiding secure cloud architectures across the organisation, with Google Cloud Platform (GCP) as the primary strategic platfo...Show more
Last updated: 3 days ago • Promoted
Contracts Manager - Vryheid

Contracts Manager - Vryheid

Fidelity Services Group • ZA
The overall purpose of this position is to manage several Operations Managers in covering the following key areas, client liaison, HR /IR matters, fleet management, expenses control, Investigations...Show more
Last updated: 11 days ago • Promoted
Manager: Information Communication

Manager: Information Communication

ATNS • ZA
Applications are invited for the position of Manager: Information Communication (Peromnes Grade 7) based at Bruma.The successful applicant will be reporting to the Head: Aeronautical Information Ma...Show more
Last updated: 30+ days ago • Promoted
Information Systems Audit Manager

Information Systems Audit Manager

BDO South Africa • ZA
Main Duties and Responsibilities.Business /Brand Development/Operational Excellence .Develops effective networks/relationships inside the firm and maintains the contacts to identify opportunities o...Show more
Last updated: 18 days ago • Promoted
Security & BCM Lead: Africa

Security & BCM Lead: Africa

DHL Supply Chain • ZA
Develop and implement country Security and BCM standards, policies and Security & BCM programs in line with regional standards and DHL and Global requirements.Manage and review investigative Securi...Show more
Last updated: 15 days ago • Promoted
Specialist Operations Management

Specialist Operations Management

South African Airways • ZA
Job Purpose .The Operations Management Specialist role is responsible for ownership and execution of critical incident management, problem management, change management, and control processes acros...Show more
Last updated: 3 days ago • Promoted
Risk Manager

Risk Manager

Capitec Bank • ZA
To actively influence and provide expert Risk Management oversight to relevant stakeholders where required, contributing to risk culture maturity, regulatory compliance and strategic risk mitigatio...Show more
Last updated: 11 days ago • Promoted
Security Site Manager

Security Site Manager

Teraco • ZA
The Site Security Manager is responsible for the day to day management of the teams ensuring that Security Standard Operating Procedures are followed, administering the contract to ensure the smoot...Show more
Last updated: 18 days ago • Promoted
Head of Aeronautical Information Management & Systems

Head of Aeronautical Information Management & Systems

ATNS • ZA
Applications are invited for the position of Head: Aeronautical Information Management and Systems (Peromnes Grade 5) based at OR Tambo Air Traffic Control Centre – Aeronautical Information Managem...Show more
Last updated: 30+ days ago • Promoted
Senior Manager:Operation Infrastructure and System (P5)

Senior Manager:Operation Infrastructure and System (P5)

University of Fort Hare • ZA
Senior Manager: Operations, Infrastructure and Systems is responsible for providing strategic leadership, governance, and operational oversight of the Institution’s network infrastructure, data cen...Show more
Last updated: 3 days ago • Promoted
Security Managed Services Engineer (L3)

Security Managed Services Engineer (L3)

NTT Ltd. • ZA
Ensures that assigned infrastructure at the client site is configured, installed, tested, and operational.Performs necessary checks, apply monitoring tools and respond to alerts.Identifies problems...Show more
Last updated: 3 days ago • Promoted
Protection Services Manager Operations

Protection Services Manager Operations

De Beers Group • ZA
Your responsibilities will also include:.Direct, plan and co-ordinated work for the Protection Services team through effective liaison with Operation Management and the Head of Protection Services....Show more
Last updated: 30+ days ago • Promoted
Manager: Aeronautical Information

Manager: Aeronautical Information

ATNS • ZA
Applications are invited for the position of Manager: Aeronautical Information (Peromnes Grade 7) based at Bruma.The successful applicant will be reporting to the Head: Aeronautical Information Man...Show more
Last updated: 30+ days ago • Promoted
Junior Security Operations Center Analyst

Junior Security Operations Center Analyst

BETSoftware • ZA
This position is a shift work based with a rotational schedule – This is a 365 day/7 days per week /24 hours a day department.Monitoring and analysis of cyber security events .Monitoring of network...Show more
Last updated: 18 days ago • Promoted
Manager: Security and Monitoring

Manager: Security and Monitoring

ATNS • ZA
Develop and implement risk-based cybersecurity strategy, governance and protocols able to protect the organisation’s data and information at all times.Manage cybersecurity threats and incidences th...Show more
Last updated: 30+ days ago • Promoted
Intermediate Security Analyst

Intermediate Security Analyst

BETSoftware • ZA
Participate and coordinate efforts to implement NIST Security Controls Framework across the BET Software.Monitor and audit logs across all product lines of the BET software’s environment.Perform au...Show more
Last updated: 24 days ago • Promoted