Cyber Security Manager
Amrod Corporate |Posted 1 day ago
Sign up or log in to apply:
Skills and experience
Location and salary
Role description
Role Overview:
The Cybersecurity Manager is the primary custodian of our digital assets and data integrity. This role is responsible for the design, implementation, and management of a robust cybersecurity program. You will bridge the gap between high-level policy creation and technical execution, ensuring that the security framework evolves in tandem with the enterprise architecture to mitigate emerging threats and ensure regulatory compliance.
Minimum Requirement:
• Bachelor’s degree in computer science, Information Technology, or a related field.
• Essential Certifications: (At least one of the following).
- CISM (Certified Information Security Manager)
- CISSP (Certified Information Systems Security Professional)
- CISA (Certified Information Systems Auditor)
• Advantageous: * Cloud Security certifications (Microsoft Azure Security Engineer)
Key Performance Areas:
Policy & Framework Management
• Taking ownership of policies and frameworks, in-hand with the HOD, ensuring implementations, annual reviews, and updates.
• Determining and aligning to relevant standards & Regulations (i.e. ISO 27001, POPIA).
• Developing or updating Frameworks and/ or policies for emerging technologies.
Security Architecture Implementation
• Working with DevSecOps to irradicate vulnerabilities in developed applications pre-launch.
• Collaborating with the EA team to drive security compliance throughout the entire architecture.
• Critical Patches applied within 48 hours; reduction in total “Open” vulnerabilities month-on-month.
Incident Response & Recovery
• Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR) within agreed business thresholds.
Risk & Compliance
• Successful completion of annual external security audits with zero "Critical" findings.
• Collaboration with the compliance manager for all compliancy touching on cybersecurity.
Awareness & Culture
• >90% completion rate of quarterly security awareness training across the organization.
Unique Working Conditions:
• An on-premises environment with the following considerations:
- Hybrid IAM, AD, etc. (Entra)
- Very few Azure services.
- Cybersecurity initiatives are handled as a team with Enterprise Architecture; EA & CS will always work hand-in-hand.
• 90% Modernized Environment, procedure driven architecture.
• Fast-Paced, Innovative ORGANISATION – Technology is not the only determining factor.