Thursday, 27 February 2014

Risk Officer Job at Metropolitan in Cape Town

Job Title: Risk Officer/ Information Security

Cape Town

    Introduction

    The successful applicant will form part of a professional and skilled IT Risk and Security team for one of the leading Healthcare Service Providers in South Africa. You will be responsible for the identification, analysis, and management of all IT related risks across all aspects of the IT function including supporting processes and systems.

    The Incumbent will be responsible for:

    • Develop and drive risk management strategy
    • Chair the IT Risk Committee
    • Full responsibility for all Information Security and Risk Management policies, standards and guidelines
    • Responsible for Research and creating Information Security awareness within The enterprise
    • Accountable for the development, implementation and enforcement of information security measures.
    • Provide documentation and training and awareness programmes for risk management
    • Achieve leverage from industry standards and frameworks including Cobit and ISO2K suit
    • Responsible for liaising with Audit and Forensic
    • Establish and maintain IT risk management processes, procedures and artefacts (Standards, Policies etc.) aligned with SERM program
    • Identify and categorise risks
    • Measure cost of materialised risks
    • Integrate IT risks into Strategic risks
    • Implement mitigation strategies
    • Maintain all risk related documentation
    • Integrate risk management into systems development and Project Management life cycle
    • Identify and rate Risks
    • Establish and maintain ICT processes, procedures and artefacts (Standards, policies etc.)
    • Manage internal and external security audits
    • Perform regular assessments to monitor conformance to IT Controls
    • Ensure IT Controls are in place

    The applicant should meet these requirements:

    • Relevant Tertiary IT Qualification or Qualification through experience
    • Certificate or Diploma in Information Risk Management from industry recognised Training Institution
    • 5 - 10 years IT Experience
    • 2 - 3 years working as an Information Security Officer
    • Experience in development of IT Policy
    • Experience in Audit Facilitation
    • Experience in technical writing

    Competencies Required

    • Proven analytical capability
    • Technical writing
    • Verbal and written communication
    • Delivery Focused
    • Information acquisition: identifying gaps in the available information and devising means of remedying such gaps
    • Ability to take ownership
    • Keeping overall objectives and strategies in mind, and not being deflected by matters of detail
    • Working co-operatively (rather than competitively) with others to achieve a common goal.
    • Cross-Functional and interdisciplinary Awareness: Understanding the needs, objectives and constraints of those in other disciplines and functions.

    Additional Information

    Shortlisted candidates will be subjected to the following statutory checks:
    ITC
    Criminal
    Qualification
    References

How to Apply:

http://careers.metropolitan.co.za/psp/Applicant/EMPLOYEE/HRMS/c/HRS_HRAM.HRS_CE.GBL

Deadline: 26/02/2014