52 Data Protection jobs in Johannesburg
Data Protection Analyst
Posted 2 days ago
Job Viewed
Job Description
At Paymentology, we are redefining what is possible in the payments space. As the first truly global issuer-processor, we provide banks and fintechs with the technology and talent to launch and manage Mastercard, Visa, and UnionPay cards at scale across more than 60 countries.
Our advanced multi-cloud platform offers real-time data, unmatched scalability, and the flexibility of shared or dedicated processing instances. This global reach and innovation set us apart.
We are seeking a Data Protection Analyst to play a key role in enhancing our data privacy framework. Your work will help protect the privacy of our customers and employees, ensuring our privacy practices are transparent and secure.
You will also be involved in implementing privacy and AI tools that support governance workflows. Your daily responsibilities will include collaborating with cross-functional teams and making recommendations to improve our privacy and governance practices.
What you get to do :- Data Privacy Framework: Strengthen Paymentology's data privacy risk framework by implementing robust policies and procedures aligned with GDPR and other global privacy regulations. Work closely with global stakeholders to support projects and goals.
- Privacy Management System: Support the implementation of our Privacy Management System by working with vendors and internal teams to configure settings, create assessment templates, and establish workflows.
- Data Mapping & Governance: Conduct data mapping exercises to identify personal data flows and establish data governance structures and controls.
- Risk Assessment & Compliance: Perform DPIAs, RoPAs, and AI risk governance activities, supporting supplier assessments based on privacy risks.
- Regulatory Compliance Management: Ensure compliance with GDPR and other regulations, monitoring developments and implementing necessary changes.
- Privacy by Design and Default: Provide guidance on data protection and privacy by design, collaborating with various teams and reviewing Data Protection Agreements.
- Controls Testing & Improvement: Assess privacy controls, identify improvements, and document findings for management.
- Incident Management: Act as the point of contact for data incidents, coordinating responses and remediation.
- Data Subject Rights Management: Manage DSARs and ensure timely, compliant responses.
- Training & Awareness: Develop and deliver privacy training to raise awareness across the organization.
Join a diverse global team committed to making a positive impact. Enjoy a supportive environment that values growth, inclusivity, and purpose, with opportunities to work across time zones and support local communities.
Travel Requirements :N/A
What it takes to succeed :- 3-5 years of experience in data privacy compliance or risk management, preferably in payments or regulated environments.
- Strong understanding of GDPR, EU AI Act, privacy by design, and practical application.
- Experience with privacy frameworks and tools like OneTrust.
- Proven experience with data mapping, DPIAs, RoPAs, and risk mitigation.
- Excellent communication skills in English.
- Proficiency in Microsoft Office, especially Excel and PowerPoint.
- Stakeholder management skills and ability to translate regulations into operational controls.
- Strong organizational and project management skills.
- Certifications such as IAPP CIPP/E, CIPM, or equivalent.
- Experience with privacy platforms like OneTrust.
- Knowledge of ISO 27001 standards.
- Experience in global organizations with multi-jurisdictional privacy requirements.
- Background in financial services, payments, or fintech industries.
Full-time
Key Skills :Data Analytics, Microsoft Access, SQL, Power BI, R, Data Visualization, Tableau, Data Management, Data Mining, SAS, Data Analysis Skills, Analytics
Experience :3-5 years
Vacancy :1
#J-18808-LjbffrData Protection Engineer
Posted 5 days ago
Job Viewed
Job Description
Job Description
Implementing solutions with a focus on MS Data Protection, Dell Data Protection, Veeam, and Druva.
Designing and deploying data protection systems tailored to organizational needs.
Troubleshooting and resolving backup issues promptly to minimize downtime.
Managing and monitoring backup and recovering operations to ensure data availability.
Creating and enforcing data protection policies compliant with government and industry regulations.
Providing training and supporting staff on backup and recovery solutions.
Qualification & Skills
Bachelor’s degree in information technology, Computer Science, Business Administration, or a related field
5+ years of experience in data protection and backup technologies
Proficiency in Dell Data Protection, Veeam, and Druva solutions.
Strong understanding of data protection principles, disaster recovery, and compliance
Familiarity with HCI, VMware, and enterprise storage technologies.
Microsoft Certified: Information Protection and Compliance Administrator Associate will be an advantage
Certification in data protection or relevant tools (e.g., Veeam Certified Engineer, Druva, Dell Data Protection Specialist
Suitable candidates will be contacted. If you do not get a response within 14 days, please consider your application unsuccessful.
Data protection engineer
Posted today
Job Viewed
Job Description
Data Privacy Officer
Posted 2 days ago
Job Viewed
Job Description
Overview
Responsible for developing implementing and maintaining country data privacy policies and procedures to ensure compliance with regulations and protect sensitive information. The Country Data Privacy Officer will collaborate with cross-functional teams to assess risks provide training on data privacy best practices and lead investigations into data breaches. Additionally the manager will stay up to date on data protection laws and industry standards to continuously improve our data privacy practices.
Key Responsibilities- Develop and implement data privacy policies and procedures.
- Conduct privacy impact assessments and audits.
- Provide guidance and training on data privacy best practices.
- Investigate and respond to data breaches and incidents.
- Collaborate with Africa Region DPO Leader Legal IT and other departments to ensure compliance with data protection regulations.
- Stay informed about changes in data protection laws and industry trends.
- Manage data subject access requests and privacy inquiries.
- Bachelors degree in Law IT or a related field.
- Certified Information Privacy Manager (CIPM) or equivalent certification.
- Minimum of 3 years of experience in data protection or privacy law.
- Strong analytical skills for assessing data protection risks.
- Excellent communication skills for engaging with stakeholders.
- In-depth knowledge of data protection regulations including POPIA and GDPR.
Required Experience : Unclear Seniority
Key Skills
English Language, JSP, IT Help Desk, General Services, After Sales Service, Commerce
Employment Type : Full Time
Experience : years
Vacancy : 1
#J-18808-LjbffrData Privacy Specialist - Information Technology (IT)
Posted today
Job Viewed
Job Description
Data Privacy Specialist – Information Technology (IT) page is loaded Data Privacy Specialist – Information Technology (IT) Apply remote type Hybrid Working locations Johannesburg, South Africa time type Full time posted on Posted 19 Days Ago job requisition id R-
Continue to make an impact with a company that is pushing the boundaries of what is possible. At NTT DATA, we are renowned for our technical excellence, leading innovations, and making a difference for our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can continue to grow, belong, and thrive. Your career here is about believing in yourself and seizing new opportunities and challenges. It’s about expanding your skills and expertise in your current role and preparing yourself for future advancements. That’s why we encourage you to take every opportunity to further your career within our great global team.
The Data Privacy Specialist - IT reporting into the global Data Privacy Corporate Implementation Services lead will be responsible for supporting the effective implementation and oversight of the Data Privacy program within the IT function globally. The Data Privacy Specialist - IT will work closely with stakeholders within the IT function to ensure that appropriate controls, across people, process and technology, are put in place to support compliance with data protection laws and regulations, industry standards and NTT DATA, Inc.’s global Data Privacy policies
Key Roles and Responsibilities- Implementation of NTT DATA Inc.’s Data Privacy policies, processes, and standards within the IT function
- Implementation of Data Privacy strategic projects within the IT function globally
- Provide Data Privacy guidance on all operational and business as usual activities involving personal data within the IT function
- Support the IT function and provide input in the documentation of its record of processing and associated data flows and cross-border data transfers relating to the introduction or change in the way the organization processes personal data.
- Project manage the Data Privacy requirements of new initiatives, transformation projects and business as usual projects in the IT function globally
- Provide input and ensure the completion of Data Protection Impact Assessments and other Data Privacy assessments to assess the impact of new processing activities and business changes involving personal data
- Document and assess Data Privacy risks in the IT function and develop strategies to manage or mitigate them
- Monitor and report on the implementation and effectiveness of Data Privacy controls across the IT function
- Coordinate and support the response to data subject requests in accordance with applicable data protection laws and regulations and company Data Privacy policies and processes
- Coordinate and support in the investigation, response, resolution, notification, and closure of personal data breaches and other Data privacy Incidents in accordance with applicable data protection laws and regulations and company Data Privacy policies and processes
- Support IT in the vendor engagement process by ensuring Data Privacy assessments are completed, Data Processing Agreements (or equivalents) are in place and controls implemented for all new and existing vendors
- Document and implement a Data Privacy playbook specific to IT practices to provide guidance on Data Privacy requirements and controls
- Provide Data Privacy training and awareness specific to IT practices
- Monitor developments in global data protections laws and regulations, understanding the impact for NTT DATA, Inc. and the IT function and put in place appropriate mechanisms to support compliance
- Maintain your technical expertise by keeping abreast of developments in data privacy, participating in industry forums and undertaking continual training and development
- Demonstrates accuracy and thoroughness and high levels of attention to detail
- Demonstrates strong analytical skills, including the ability to assess risk and impact from a data privacy and protection perspective
- Demonstrates a pragmatic and risk-based approach to data privacy
- Excellent leadership, creativity, presentation, writing and collaboration skills
- Excellent written and verbal communication skills (including leadership and no-leadership) and negotiation skills
- Ability to thrive under pressure, function and deliver effectively in a fast-paced environment
- Ability to work well independently and productively with minimal supervision
- Proactive in approach with high levels of motivation, being a self-starter with good planning and organizing skills
- Ability to work well in a team environment
- Demonstrates strong stakeholder engagement skills coupled with the ability to conduct presentations to both technical and non-technical stakeholders
- Positive role model, demonstrating the ability to coach, inspire and mentor others
- Strong critical thinking and decision-making skills
- Strong organizational and project management skills, including the ability to manage competing tasks and prioritize effectively
- Experience managing complex projects and working alongside cross-functional teams
- Deep knowledge of global data protection laws and regulations
- Operates with a high degree of integrity
- Bachelor’s degree
- CIPT, CIPP, CIPM (Preferred)
- +5 years’ experience in Data Privacy or related fields
- Experience in implementing Data Privacy programs and controls in IT functions in multi-national organizations
- Understanding of IT processes and frameworks
- Relevant degree and/or Data Privacy certifications and qualifications (e.g. CIPT)
- Experience in advising on complex data protection matters with practical advice
- Experience in risk management activities and practices (preferred)
- Experience in working with or advising large, multinational organizations
- Experience in working on compliance projects
- Experience in telecommunications, technology and/or professional services (preferred)
- Experience with One Trust, 6clicks (preferred)
- Passionate about Data Privacy and up to date with the latest developments in Data Privacy globally
- Able to communicate effectively with internal and external parties at all levels
- Comfortable and proficient working in a role that interfaces with multiple cultures and time zones
- Analytical mind, initiative and able to work independently
- Excellent in time management and able to manage competing priorities
- Able to work under pressure
- Willing to travel locally or overseas
Workplace type:
Hybrid Working Equal Opportunity Employer
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Accelerate your career with us. Apply today
Your career here is about believing in yourself and taking on great opportunities and new challenges.
It’s about growing your skills and expertise in your current role and preparing yourself for the future. That’s why we encourage you to take every opportunity to grow your career within our great global team.
#J-18808-LjbffrData Privacy Specialist - Information Technology (IT)

Posted 1 day ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
The Data Privacy Specialist - IT reporting into the global Data Privacy Corporate Implementation Services lead will be responsible for supporting the effective implementation and oversight of the Data Privacy program within the IT function globally. The Data Privacy Specialist - IT will work closely with stakeholders within the IT function to ensure that appropriate controls, across people, process and technology, are put in place to support compliance with data protection laws and regulations, industry standards and NTT DATA, Inc.'s global Data Privacy policies
**Key Roles and Responsibilities**
+ Implementation of NTT DATA Inc.'s Data Privacy policies, processes, and standards within the IT function
+ Implementation of Data Privacy strategic projects within the IT function globally
+ Provide Data Privacy guidance on all operational and business as usual activities involving personal data within the IT function
+ Support the IT function and provide input in the documentation of its record of processing and associated data flows and cross-border data transfers relating to the introduction or change in the way the organization processes personal data.
+ Project manage the Data Privacy requirements of new initiatives, transformation projects and business as usual projects in the IT function globally
+ Provide input and ensure the completion of Data Protection Impact Assessments and other Data Privacy assessments to assess the impact of new processing activities and business changes involving personal data
+ Document and assess Data Privacy risks in the IT function and develop strategies to manage or mitigate them
+ Monitor and report on the implementation and effectiveness of Data Privacy controls across the IT function
+ Coordinate and support the response to data subject requests in accordance with applicable data protection laws and regulations and company Data Privacy policies and processes
+ Coordinate and support in the investigation, response, resolution, notification, and closure of personal data breaches and other Data privacy Incidents in accordance with applicable data protection laws and regulations and company Data Privacy policies and processes
+ Support IT in the vendor engagement process by ensuring Data Privacy assessments are completed, Data Processing Agreements (or equivalents) are in place and controls implemented for all new and existing vendors
+ Document and implement a Data Privacy playbook specific to IT practices to provide guidance on Data Privacy requirements and controls
+ Provide Data Privacy training and awareness specific to IT practices
+ Monitor developments in global data protections laws and regulations, understanding the impact for NTT DATA, Inc. and the IT function and put in place appropriate mechanisms to support compliance
+ Maintain your technical expertise by keeping abreast of developments in data privacy, participating in industry forums and undertaking continual training and development
**Knowledge, Skills and Attributes**
+ Demonstrates accuracy and thoroughness and high levels of attention to detail
+ Demonstrates strong analytical skills, including the ability to assess risk and impact from a data privacy and protection perspective
+ Demonstrates a pragmatic and risk-based approach to data privacy
+ Excellent leadership, creativity, presentation, writing and collaboration skills
+ Excellent written and verbal communication skills (including leadership and no-leadership) and negotiation skills
+ Ability to thrive under pressure, function and deliver effectively in a fast-paced environment
+ Ability to work well independently and productively with minimal supervision
+ Proactive in approach with high levels of motivation, being a self-starter with good planning and organizing skills
+ Ability to work well in a team environment
+ Demonstrates strong stakeholder engagement skills coupled with the ability to conduct presentations to both technical and non-technical stakeholders
+ Positive role model, demonstrating the ability to coach, inspire and mentor others
+ Strong critical thinking and decision-making skills
+ Strong organizational and project management skills, including the ability to manage competing tasks and prioritize effectively
+ Experience managing complex projects and working alongside cross-functional teams
+ Deep knowledge of global data protection laws and regulations
+ Operates with a high degree of integrity
**Academic Qualifications and Certifications**
+ Bachelor's degree
+ CIPT, CIPP, CIPM (Preferred)
**Required Experience**
+ +5 years' experience in Data Privacy or related fields
+ Experience in implementing Data Privacy programs and controls in IT functions in multi-national organizations
+ Understanding of IT processes and frameworks
+ Relevant degree and/or Data Privacy certifications and qualifications (e.g. CIPT)
+ Experience in advising on complex data protection matters with practical advice
+ Experience in risk management activities and practices (preferred)
+ Experience in working with or advising large, multinational organizations
+ Experience in working on compliance projects
+ Experience in telecommunications, technology and/or professional services (preferred)
+ Experience with One Trust, 6clicks (preferred)
**What will make you a good fit for the role?**
+ Passionate about Data Privacy and up to date with the latest developments in Data Privacy globally
+ Able to communicate effectively with internal and external parties at all levels
+ Comfortable and proficient working in a role that interfaces with multiple cultures and time zones
+ Analytical mind, initiative and able to work independently
+ Excellent in time management and able to manage competing priorities
+ Able to work under pressure
+ Willing to travel locally or overseas
**Workplace type** **:**
Hybrid Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
Data privacy specialist – information technology (it)
Posted today
Job Viewed
Job Description
Be The First To Know
About the latest Data protection Jobs in Johannesburg !
Data Privacy and Business Continuity Compliance Manager
Posted 4 days ago
Job Viewed
Job Description
At Ogilvy, we believe in the power of creativity to transform brands and businesses. As a global leader in advertising, marketing, and public relations, we handle vast amounts of sensitive data and operate in a dynamic, fast-paced environment. We are seeking a highly skilled and experienced Data Privacy & Business Continuity Compliance Manager to join our team in Johannesburg.
This critical role is responsible for safeguarding our data, ensuring regulatory compliance, and building resilient operations that can withstand any challenge. You will be instrumental in protecting personal information, mitigating privacy risks, and ensuring our business continues to thrive, even in unforeseen circumstances.
Key Responsibilities & Accountabilities
As our Data Privacy & Business Continuity Compliance Manager, your mandate will be to :
- Lead Data Privacy Compliance: Drive our data privacy efforts, ensuring strict adherence to the Protection of Personal Information Act (POPIA) and other relevant global data protection regulations. This includes developing and implementing policies, managing risks, handling data subject rights requests, investigating breaches, and providing essential training to employees and vendors across Ogilvy South Africa.
- Develop & Maintain Business Continuity: Design, implement, and manage robust business continuity and disaster recovery plans. Conduct Business Impact Analyses (BIAs), collaborate across departments, regularly test and update plans, and lead crisis management efforts to protect critical business functions and ensure operational resilience during emergencies.
- Champion Ethical AI Practices: Uphold ethical AI principles by conducting audits, collaborating with legal and technical teams, advising leadership on risks, and integrating global trends into our AI strategy, ensuring compliance with data protection laws and promoting responsible AI development.
- Ensure Regulatory Compliance & Reporting: Provide regular, comprehensive reports to senior management on our compliance with privacy laws, business continuity, and AI ethics. Assist the Chief Finance Officer with regulatory liaison, monitor changes, and maintain accurate records, including Data Processing Agreements (DPAs).
Here's what you'll bring to the table :
- We are looking for a strategic thinker with a deep understanding of data privacy and business continuity, coupled with excellent communication and leadership skills.
- Deep Expertise: Proven experience and in-depth knowledge of data privacy laws and regulations, particularly POPIA, and familiarity with international standards like GDPR.
- Risk Management & Analytical Acumen: Strong skills in risk management, analytical thinking, and problem-solving, with a proactive approach to identifying and mitigating potential threats.
- Communication & Interpersonal Skills: Exceptional ability to communicate complex legal and technical concepts clearly and effectively to diverse audiences, fostering collaboration across departments.
- Strategic & Operational Mindset: Demonstrated strategic thinking and the ability to translate regulatory requirements into practical, actionable plans for business continuity and disaster recovery.
- AI Ethics Knowledge: Understanding of AI ethics and governance principles, with the ability to advise on responsible AI development and usage.
- Project Management: Strong project management skills to lead and execute complex compliance and continuity initiatives.
Professional, technical skills and previous experience requirements :
- A relevant Bachelor's degree in Law, Information Technology, Business Administration, or a related field. A Master's degree or relevant certifications (e.g., CIPP / E, CISM, CBCP) would be highly advantageous.
- While not strictly required, experience in data privacy, compliance, risk management, or business continuity roles, particularly within a large, dynamic organization or advertising / marketing agency, would be highly advantageous.
- Demonstrated experience in developing, implementing, and managing data privacy programs and business continuity plans.
- Proven track record of advising senior leadership on compliance matters and strategic risks.
- Experience with regulatory liaison and managing external audits.
- Ability to work independently and as part of a cross-functional team.
- A "roll up your sleeves" attitude and a commitment to continuous improvement.
You'll also be required to advance the following :
- Continuous Improvement: Continuously assess and enhance our organization's privacy, risk management, and continuity strategies, fostering a culture of compliance and risk awareness.
- Quantum Data Management & Reporting: Regularly assess and update data mapping in Quantum and report the Group's revenue in Quantum monthly.
Information Security Architect
Posted today
Job Viewed
Job Description
Job title: Information Security Architect
Contract duration: Start with 6 months
First preference: EEE candidates
Location: JHB
The Head of Security Architecture for the organization is responsible for designing, implementing, and maintaining robust security architectures that protect sensitive data in compliance with regulations such as POPIA, GDPR. This role is critical in safeguarding the confidentiality, integrity, and availability of electronic health records (EHR), patient and employee information, medical devices, and cloud-based healthcare services. The role will focus on designing and developing security architecture that aligns business and corporate security strategy. The role will collaboratively direct Security Architects, IT, and Engineers to design and build security controls and solutions compliant with approved enterprise architecture frameworks and standards across business and digital.
Key Responsibilities:
- Design and develop complex and comprehensive security architectures for our systems, applications, and infrastructure, considering both current and future needs.
- Collaborates with stakeholders, including developers, engineers, and project managers, to integrate security requirements into the system design and development lifecycle.
- Provides guidance and expertise in secure coding practices, network security, identity and access management, data protection, and other security domains.
- Model threats and risks, designing the controls necessary to mitigate them, on both an organizational and technical level – thinking like an attacker, understanding and anticipating the moves and tactics that a hacker might use to attack systems.
- Follow the architecture analysis process, which consists of research, validation, and evaluation of all new initiatives, with phase gate reviews presented to all stakeholders during key forums, including current trends such as AI and LLMS.
- Evaluates and selects security technologies, tools, and frameworks to support the organization’s security.
- Define portfolio vision and reusable security patterns aligned with the EA strategy.
- Lead architecture reviews for high-risk projects, driving recommendations to resolution.
- Advise on security controls for hybrid and cloud platforms, balancing usability, cost, and compliance.
- Defines and applies security policies, standards, and procedures to ensure compliance with industry regulations and best practices.
- Leads incident response activities, including identification, containment, eradication, and recovery, in coordination with the incident response team.
- Experience with Cloud Security platform vendors and technologies such as Azure and AWS.
- Manage security architects and mentor engineers, developers, and vendors.
What will you bring?
- Risk-based decision-making - expert in ISO 27001 / NIST / CIS controls, able to quantify and articulate risk, then select proportionate, cost-effective controls.
- Pen-testing & threat-modelling - scoping, overseeing, and translating results into enforceable patterns and backlog items.
- Influential communication - proven ability to engage C-suite and delivery stakeholders alike, adapting style to gain agreement and drive secure-by-design culture.
- Teamwork and Energy – work across different functional and business teams with effective collaboration.
- Technical depth - hands-on knowledge of cloud security, IAM, container & API security, network segmentation, encryption, and DevSecOps toolchains; capable of explaining the exploitability of complex vulnerabilities. Zero trust design thinking.
- Mentoring & governance - experience in line-managing or coaching security architects/engineers and running architecture assurance or design-review boards.
- Secure-system design leadership - demonstrable track record creating or validating architectures for large-scale, high-risk services using recognised frameworks (SABSA, TOGAF).
Requirements / Skills and Competence
- Tertiary qualification in Computer Science, Engineering, or related field (preferred)
- Minimum of 5-10 years of experience in Security Architecture.
- CISSP, CISA, CISM, or other relevant security-related designation(s) preferred.
- Certifications in CISSP-ISSAP, TOGAF, or SABSA, cloud architecture (Microsoft, AWS, GCP)
- Experience in identifying gaps in existing architectures.
- Understanding of security infrastructure in Public and Private Cloud, e.g., virtual network infrastructure, hybrid IaaS/PaaS/SaaS solutions.
- Experience in designing security architectures to mitigate threats and sound knowledge of security strategies and technologies.
- Direct the Project and Security teams with the guidance to build policies, standards, risks, and controls frameworks supporting operational requirements for the business.
- Good experience in security architecture design in Cloud and on-prem.
- Design and implementation of IOT, endpoint protection, and secure IAM.
- Understanding of authentication and authorisation technologies (SAML, LDAP, PKI, etc.) and other IAM technologies
- Understanding of the implementation, operation, and maintenance of SIEM, boundary protection technologies (firewalls, mail gateways), Antivirus, and AD security products
- Knowledge of web application architectures and threat modelling.
Information Security Architect
Posted 4 days ago
Job Viewed
Job Description
Job title: Information Security Architect
Contract duration: Start with 6 months
First preference: EEE candidates
Location: JHB
The Head of Security Architecture for the organization is responsible for designing, implementing, and maintaining robust security architectures that protect sensitive data in compliance with regulations such as POPIA, GDPR. This role is critical in safeguarding the confidentiality, integrity, and availability of electronic health records (EHR), patient and employee information, medical devices, and cloud-based healthcare services. The role will focus on designing and developing security architecture that aligns business and corporate security strategy. The role will collaboratively direct Security Architects, IT, and Engineers to design and build security controls and solutions compliant with approved enterprise architecture frameworks and standards across business and digital.
Key Responsibilities- Design and develop complex and comprehensive security architectures for our systems, applications, and infrastructure, considering both current and future needs
- Collaborates with stakeholders, including developers, engineers, and project managers, to integrate security requirements into the system design and development lifecycle
- Provides guidance and expertise in secure coding practices, network security, identity and access management, data protection, and other security domains
- Model threats and risks, designing the controls necessary to mitigate them, on both an organizational and technical level - thinking like an attacker, understanding and anticipating the moves and tactics that a hacker might use to attack systems
- Follow the architecture analysis process, which consists of research, validation, and evaluation of all new initiatives, with phase gate reviews presented to all stakeholders during key forums, including current trends such as AI and LLMS
- Evaluates and selects security technologies, tools, and frameworks to support the organization's security
- Define portfolio vision and reusable security patterns aligned with the EA strategy
- Lead architecture reviews for high-risk projects, driving recommendations to resolution
- Advise on security controls for hybrid and cloud platforms, balancing usability, cost, and compliance
- Defines and applies security policies, standards, and procedures to ensure compliance with industry regulations and best practices
- Leads incident response activities, including identification, containment, eradication, and recovery, in coordination with the incident response team
- Experience with Cloud Security platform vendors and technologies such as Azure and AWS
- Manage security architects and mentor engineers, developers, and vendors
- Risk-based decision-making - expert in ISO 27001 / NIST / CIS controls, able to quantify and articulate risk, then select proportionate, cost-effective controls
- Pen-testing & threat-modelling - scoping, overseeing, and translating results into enforceable patterns and backlog items
- Influential communication - proven ability to engage C-suite and delivery stakeholders alike, adapting style to gain agreement and drive secure-by-design culture
- Teamwork and Energy - work across different functional and business teams with effective collaboration
- Technical depth - hands-on knowledge of cloud security, IAM, container & API security, network segmentation, encryption, and DevSecOps toolchains; capable of explaining the exploitability of complex vulnerabilities. Zero trust design thinking
- Mentoring & governance - experience in line-managing or coaching security architects/engineers and running architecture assurance or design-review boards
- Secure-system design leadership - demonstrable track record creating or validating architectures for large-scale, high-risk services using recognised frameworks (SABSA, TOGAF)
- Tertiary qualification in Computer Science, Engineering, or related field (preferred)
- Minimum of 5-10 years of experience in Security Architecture
- CISSP, CISA, CISM, or other relevant security-related designation(s) preferred
- Certifications in CISSP-ISSAP, TOGAF, or SABSA, cloud architecture (Microsoft, AWS, GCP)
- Experience in identifying gaps in existing architectures
- Understanding of security infrastructure in Public and Private Cloud, e.g., virtual network infrastructure, hybrid IaaS/PaaS/SaaS solutions
- Experience in designing security architectures to mitigate threats and sound knowledge of security strategies and technologies
- Direct the Project and Security teams with the guidance to build policies, standards, risks, and controls frameworks supporting operational requirements for the business
- Good experience in security architecture design in Cloud and on-prem
- Design and implementation of IOT, endpoint protection, and secure IAM
- Understanding of authentication and authorisation technologies (SAML, LDAP, PKI, etc.) and other IAM technologies
- Understanding of the implementation, operation, and maintenance of SIEM, boundary protection technologies (firewalls, mail gateways), Antivirus, and AD security products
- Knowledge of web application architectures and threat modelling
- Mid-Senior level
- Contract
- Information Technology
- IT Services and IT Consulting