Deputy Director: Chief Information Security Officer
Dept. of Basic Education
17
days left
Closes 5 October
Reference number
You'll need this reference number on your Z83 form.
Do you qualify?
Requirements
Applicants must be in possession of NQF level 6 post matric qualification in Information Technology/Information Systems or equivalent qualification as recognised by SAQA; Four (4) years relevant experience as an Assistant Director or equivalent; A minimum of two (2) certifications in any of the following: ITIL, COBIT, CISA, CISM, CISSP, CRISC, ISO 27001 plus a minimum of at least five (5) years’ experience as a Chief Information Security Officer/ Information Security Officer; Experience in managing networks; Sound knowledge of Enterprise or Technology architecture environment is required, strategic management, information and communication technology systems and processes; Sound knowledge of Microsoft environment, virtualised, cloud environments; Sound knowledge of business continuity management; Sound 5 knowledge of the E-government strategy and roadmap, interactive communication, problem solving and analytical thinking orientation, planning and organising skills, project management skills, strategic thinking; Understanding organisational information flows and maintaining an inventory of data; Understanding the data classification framework and implementing controls in accordance with the sensitivity levels; Vulnerability awareness through an understanding of the vulnerability Detection and management program; Patching and Remediation SLAs and Agreed-upon timelines for addressing security vulnerabilities; A valid driver's license.
Key Responsibilities
The successful candidate will be responsible for CyberSecurity Program: Designing, configuring, deploying, and maintaining security controls to safeguard the Department’s infrastructure; Actively protecting the Department’s information technology assets and infrastructure from external or internal threats and ensuring compliance with statutory and regulatory requirements regarding information access, security, and privacy; Analysing problems and recommending solutions, products and technologies to meet the Organisation’s security and information security objectives; Performing security assessments for all systems and applications and checking for compliance with cybersecurity standards and regulations in projects and new system design implementation; Developing and interpreting the cybersecurity strategy and framework; Interpreting cybersecurity maturity levels and implementing road maps; Leading the implementation of best practice network security controls across cloud environments and On-premises platforms to maintain resistance against cyberattacks; Focusing on the safe adoption of AI integration; Data protection and encryption: Ensuring sensitive information is identified and adequately protected; Developing or installing software, such as data-at-rest encryption programs and SSL certificates to protect sensitive information in transit and in use; Supporting the development of disaster response and recovery strategies and its implementation within the DBE; Troubleshooting security and network problems to maintain a fit-for-purpose DR site and business continuity plans; Network, web, and Endpoint Security and monitoring; Threat and Vulnerability Management: Leading threat landscape assessment and situational Cyber-attack; Ensuring vulnerability assessments and penetration tests are performed periodically; Analysing and interpreting vulnerability results and facilitating remediation of identified vulnerabilities at Protection and Response Maturity levels in conjunction with other business application owners; Providing reports to Senior Management on the vulnerability management program. Incident response and third-line support: Providing third-line support to any Information security-related queries; Overseeing and providing advanced incident response support for breaches, intrusions, or data theft; Performing Third-Party Risk Management: Effective monitoring of supplier security postures; Ensuring rapid recovery capabilities. Delivering on Security Projects within budget; Training employees on Information Security.
How to Apply
This job's application instructions were not included in the circular. Contact the enquiries person directly for application details, or visit dpsa.gov.za for the full circular.
View full DPSA circular (PDF) →Sign up free to see contact details and pre-fill your Z83
Sign up — it's freeAlready have an account? Sign in
Enquiries
Ms N Monyela Tel No: (012) 357 3294/ Mr M Segowa Tel No: (012) 357 4291
Directorate: Information and Management Systems
17
days left
Closes 5 October
Reference number
You'll need this reference number on your Z83 form.