202 Senior Security Specialists jobs in Johannesburg
Information Security Architect
Posted 2 days ago
Job Viewed
Job Description
Job title: Information Security Architect
Contract duration: Start with 6 months
First preference: EEE candidates
Location: JHB
The Head of Security Architecture for the organization is responsible for designing, implementing, and maintaining robust security architectures that protect sensitive data in compliance with regulations such as POPIA, GDPR. This role is critical in safeguarding the confidentiality, integrity, and availability of electronic health records (EHR), patient and employee information, medical devices, and cloud-based healthcare services. The role will focus on designing and developing security architecture that aligns business and corporate security strategy. The role will collaboratively direct Security Architects, IT, and Engineers to design and build security controls and solutions compliant with approved enterprise architecture frameworks and standards across business and digital.
Key Responsibilities:
- Design and develop complex and comprehensive security architectures for our systems, applications, and infrastructure, considering both current and future needs.
- Collaborates with stakeholders, including developers, engineers, and project managers, to integrate security requirements into the system design and development lifecycle.
- Provides guidance and expertise in secure coding practices, network security, identity and access management, data protection, and other security domains.
- Model threats and risks, designing the controls necessary to mitigate them, on both an organizational and technical level – thinking like an attacker, understanding and anticipating the moves and tactics that a hacker might use to attack systems.
- Follow the architecture analysis process, which consists of research, validation, and evaluation of all new initiatives, with phase gate reviews presented to all stakeholders during key forums, including current trends such as AI and LLMS.
- Evaluates and selects security technologies, tools, and frameworks to support the organization’s security.
- Define portfolio vision and reusable security patterns aligned with the EA strategy.
- Lead architecture reviews for high-risk projects, driving recommendations to resolution.
- Advise on security controls for hybrid and cloud platforms, balancing usability, cost, and compliance.
- Defines and applies security policies, standards, and procedures to ensure compliance with industry regulations and best practices.
- Leads incident response activities, including identification, containment, eradication, and recovery, in coordination with the incident response team.
- Experience with Cloud Security platform vendors and technologies such as Azure and AWS.
- Manage security architects and mentor engineers, developers, and vendors.
What will you bring?
- Risk-based decision-making - expert in ISO 27001 / NIST / CIS controls, able to quantify and articulate risk, then select proportionate, cost-effective controls.
- Pen-testing & threat-modelling - scoping, overseeing, and translating results into enforceable patterns and backlog items.
- Influential communication - proven ability to engage C-suite and delivery stakeholders alike, adapting style to gain agreement and drive secure-by-design culture.
- Teamwork and Energy – work across different functional and business teams with effective collaboration.
- Technical depth - hands-on knowledge of cloud security, IAM, container & API security, network segmentation, encryption, and DevSecOps toolchains; capable of explaining the exploitability of complex vulnerabilities. Zero trust design thinking.
- Mentoring & governance - experience in line-managing or coaching security architects/engineers and running architecture assurance or design-review boards.
- Secure-system design leadership - demonstrable track record creating or validating architectures for large-scale, high-risk services using recognised frameworks (SABSA, TOGAF).
Requirements / Skills and Competence
- Tertiary qualification in Computer Science, Engineering, or related field (preferred)
- Minimum of 5-10 years of experience in Security Architecture.
- CISSP, CISA, CISM, or other relevant security-related designation(s) preferred.
- Certifications in CISSP-ISSAP, TOGAF, or SABSA, cloud architecture (Microsoft, AWS, GCP)
- Experience in identifying gaps in existing architectures.
- Understanding of security infrastructure in Public and Private Cloud, e.g., virtual network infrastructure, hybrid IaaS/PaaS/SaaS solutions.
- Experience in designing security architectures to mitigate threats and sound knowledge of security strategies and technologies.
- Direct the Project and Security teams with the guidance to build policies, standards, risks, and controls frameworks supporting operational requirements for the business.
- Good experience in security architecture design in Cloud and on-prem.
- Design and implementation of IOT, endpoint protection, and secure IAM.
- Understanding of authentication and authorisation technologies (SAML, LDAP, PKI, etc.) and other IAM technologies
- Understanding of the implementation, operation, and maintenance of SIEM, boundary protection technologies (firewalls, mail gateways), Antivirus, and AD security products
- Knowledge of web application architectures and threat modelling.
Fintech Security Architect
Posted 2 days ago
Job Viewed
Job Description
1 week ago Be among the first 25 applicants
Get AI-powered advice on this job and more exclusive features.
Direct message the job poster from LSA Recruit
This role is responsible for comprehensively reviewing and embedding technical security architecture and controls requirements in digital, cloud, mobile money, IOT and new products and application areas. This includes planning and preparing solution designs, reference architectures, standards and configurations, and engagement models to be implemented across all business areas, core systems, third-party interfaces, and the internal core network interfaces. This role will be a valued partner to development and engineering teams to ensure secure architectures, patterns, and solutions are created and maintained for Cloud, digital, IoT and Fintech environments.
Technical Excellence:
• Participate in and lead the security design and implementation of all products across Consumer, Enterprise, Technology, Digital and Financial Services - design phase security architecture and post implementation.
• Experience with Cloud Security platform vendors and technologies such as Azure, and GCP Drive the design and implementation of secure technologies and applications in support of Enterprise-wide and Business Unit applications.
• Partner with IT and risk management to develop a comprehensive set of cyber-security policies and procedures governing hosted and SaaS environments.
• Provide security architectural guidance and review on business and technology products/ solutions
• Model threats and risks as well as the controls necessary to mitigate them, on both an organisational and technical level – thinking like a malicious hacker, understanding and anticipating the moves and tactics that a hacker might use to attack MTN systems.
• Follow the architecture analysis process, which consists of research, validation and evaluation of all new initiatives, with phase gates reviews presented to all stakeholders during the process
• Ensure that third party solutions and products follow MTN Controls standards.
• Review the security architecture design of MTN applications and products, for cloud and on-prem. Perform best-practices risk assessment of MTN’s products’ security stacks
• Build security into MTN Software Development Lifecycle, creating secure software development methodology (secure application development and coding practices; security testing), defining processes and establishing meaningful metrics for management 3 Sensitivity:
• Work with the product and existing Security teams to identify and assist with the building and implementation of policies, standards, processes, risk and control frameworks that meet MTNSA’s business requirements
• Evaluate and oversee the security of outsourced / third-party technologies and hosting environments to ensure they provide adequate protection for the processing, transmission, and storage of MTN’s information: − Implement reference architecture for integrating with third parties and partners − Implement mechanisms for vetting and implementing integration with cloud providers − Develop and implement architectural and development standards for third party technologies
• Act as a subject matter expert and provide consistant interpretation of security controls and requirements to MTNSA security teams ,application development and support personnel. This includes enterprise operational staff and business unit personnel.
• Evaluate outsourced mobile money integration points to ensure they provide adequate protection for the processing, transmission, and storage of transactions.
Minimum Requirements Education:
• Minimum of 3 years tertiary qualification in Information Technology/ Engineering
• SABSA , Cloud Security and/or TOGAF qualification will be an advantage
• Other qualifications (CompTIA Security+, ITIL, COBIT) advantage
• Fluent in English Experience:
• Minimum of 3+ years of relevant work experience in Information Security
• Experience in designing and implementing cybersecurity systems architectures
• Experience in managing and implementing large scale security projects
• Advanced working understanding of the information technology environment of a telecom company
• Understanding of security infrastructure in Public and Private Cloud, e.g. virtual network infrastructure, hybrid IaaS/PaaS/SaaS solutions.
• Other security experience such NAC, Cisco ISE, CASB Solution Netscope, Web security technologies, architecture, operations, GRC, OWASP, etc
• Able to provide the Project and existing Security teams the necessary guidance to build policies, standards, risks and controls frameworks that meet MTN Group and operational requirements of the business
• Good experience in security architecture design in Cloud and on-premDesign and implementation of NGFW PA / Fortinet /, IOT, End point protection, multi-factor authentication
• Understanding of authentication and authorisation technologies (SAML, LDAP, PKI, etc) and other IAM technologies
• Understanding of the implementation, operation and maintenance of SIEM, boundary protection technologies (firewalls, mail gateways), Antivirus and AD security products
• Knowledge of web application architectures
• Knowledge of threat modelling
For more info, please contact
Seniority level- Seniority level Mid-Senior level
- Employment type Contract
- Job function Engineering, Information Technology, and Distribution
- Industries IT Services and IT Consulting, IT System Data Services, and IT System Installation and Disposal
Referrals increase your chances of interviewing at LSA Recruit by 2x
Get notified about new Cyber Security Architect jobs in Johannesburg Metropolitan Area .
Johannesburg, Gauteng, South Africa 1 week ago
Security Architecture and Engineering ManagerJohannesburg Metropolitan Area 1 week ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrFintech security architect
Posted today
Job Viewed
Job Description
Fintech security architect
Posted today
Job Viewed
Job Description
Security Technical Architect

Posted 24 days ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**Your day at NTT DATA**
As a Security Technical Architect at NTT DATA, you'll design robust security architectures that safeguard our systems, applications, and infrastructure. Working closely with cross-functional teams, you'll integrate security requirements throughout the system design and development lifecycle, ensuring our technology solutions are secure, compliant, and industry-leading.
On a day-to-day basis, you'll be viewed as a trusted technical advisor, collaborating with developers, engineers, and project managers to embed security into every project. Your expertise in secure coding practices, network security, identity and access management, DATA protection, and other security domains will be instrumental.
You'll play a pivotal role in evaluating and selecting security technologies, creating and enforcing security policies, and leading incident response activities. By setting technical standards and providing pre-sales technical support, you'll help define how our solutions meet client objectives and regulatory requirements.
Your role extends to managing client proof-of-concept initiatives and ensuring a smooth transition from proposed solutions to delivery. You'll document executive summaries, statements of work, and network diagrams, oversee pricing formats, and validate proposals, making you a key player in bringing security-focused projects to life.
**To thrive in this role, you need to have:**
+ Deep knowledge of security domains: network security, application security, cloud security, DATA protection, identity and access management, cryptography, and secure coding.
+ Proficiency in enterprise architecture principles and frameworks (e.g., TOGAF).
+ Understanding of security regulations, standards, and frameworks (e.g., ISO 27001, NIST, PCI dSS).
+ Hands-on experience with security technologies and tools (e.g., firewalls, intrusion detection/prevention systems, SIEM, vulnerability scanners, secure coding analysis tools).
+ Experience in a large-scale, multinational technology services environment.
+ Excellent analytical and problem-solving abilities for assessing risks and analysing security issues.
+ Strong client engagement skills and technical consulting aptitude.
+ Ability to collaborate and communicate effectively with team members.
+ Bachelor's degree in IT, computer science, or a related field.
**Workplace type** **:**
Hybrid Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
Security Engineer Data Security
Posted 4 days ago
Job Viewed
Job Description
Business Segment: Personal & Private Banking
Location: ZA, GP, Johannesburg, 30 Baker Street
- Manage and fine-tune Microsoft Purview DLP policies for endpoints, SharePoint, OneDrive & Teams
- Investigate DLP alerts, coordinate incident response with stakeholders, and document outcomes.
- Work closely with Legal, Risk, and Compliance teams to align DLP policies with regulatory and internal requirements (e.g., POPIA, GDPR, PCI-DSS).
- Tune policy exceptions and reduce false positives without compromising security.
Email Security (Microsoft Defender for Office 365)
- Administer and optimize anti-phishing, anti-malware, and anti-spoofing policies.
- Monitor mail flow, quarantine, and threat reports to detect patterns and enhance protection.
- Configure Safe Links, Safe Attachments, and ATP policies.
- Support investigations of email-based threats and data leakage attempts.
Web Security (Forcepoint and DMARC)
- Maintain and support the Forcepoint Web Security environment, including URL filtering, content categorization, and user policies.
- Investigate web-based threat alerts and policy violations.
- Assist in integration of web security controls with broader DLP and SIEM tools.
- Provide guidance for policy tuning and user experience improvements.
- Manage, Maintain and Support DMARC to ensure Email is protected against spoofing.
SSE / Cloud Access Controls (Cato Networks)
- Configure and monitor policies on Cato Networks’ SSE platform for secure internet access and cloud app control.
- Help define Zero Trust Network Access (ZTNA) policies for remote users and sensitive resources.
- Review access logs, user behaviour, and cloud application usage for anomalies.
- Coordinate with network and identity teams to streamline SSE enforcement.
- Triage alerts across DLP, email, web, and SSE tools; escalate or respond as needed.
- Provide weekly/monthly reports to leadership on data protection metrics, incident trends, and policy effectiveness.
- Collaborate with SOC and Blue Teams on threat correlation and data security posture assessments.
- Maintain documentation and support audit readiness.
Technical Skills
- Strong hands-on experience with Microsoft Purview DLP (E5).
- Proficient in Microsoft Defender for Office 365 (email hygiene, ATP, threat management).
- Experience with Forcepoint Web Security policy design, deployment, and management.
- Working knowledge of Secure Service Edge (SSE) and ZTNA concepts; Cato Networks experience preferred.
- Familiarity with security incident workflows, SIEMs (e.g., Sentinel), and PowerShell scripting.
Experience
- 5+ years in IT Security roles, with at least 2–3 focused on data security.
- Direct involvement in policy design, incident triage, and ongoing tuning of DLP/email/web security tools.
- Exposure to regulated environments with compliance reporting (e.g., financial services)
- Soft Skills
- Detail-driven with strong analytical skills.
- Clear communicator, especially when engaging end-users on policy violations or tuning.
- Able to balance risk mitigation with operational practicality.
- Comfortable working across InfoSec, Infrastructure, Legal, and Business teams.
Preferred Certifications
- Bachelors Degree in Computer Science (advantageous)
- Microsoft Certified: Information Protection Administrator Associate (SC-400)
- Microsoft Certified: Security Operations Analyst Associate (SC-200)
- General security certifications (e.g., CompTIA Security+, CISM, CISSP) are a plus
Security engineer data security
Posted today
Job Viewed
Job Description
Be The First To Know
About the latest Senior security specialists Jobs in Johannesburg !
Security Engineer
Posted 2 days ago
Job Viewed
Job Description
About Nintex:
At Nintex, we are transforming the way people work, everywhere.
As the global standard for process intelligence and automation, we're trusted by over 10,000 public and private sector organizations across 90 countries. Our customers, from industry giants like Amazon, Coca-Cola, and Microsoft, rely on the Nintex Platform to accelerate their digital transformation journeys by managing, automating, and optimizing business processes quickly and efficiently. We improve their lives through the technology we build.
We are committed to fostering a workplace that supports amazing people in doing their very best work every day. Collaboration is constant, our workplace is fun, the environment is fast-paced, and we value our people’s curiosity, ideas, and enthusiasm. Driven by passion and accountability, we take initiative, measure progress, and deliver results. Our culture fosters innovation and problem-solving, fueled by curiosity and a commitment to thinking big. Together, we move with agility, prioritize customer needs, and build unity through empathy, leaving a positive impact wherever we go.
About the role:
The Security Engineer will implement the organization's security policies, procedures, and standards. This role requires an in-depth understanding of current and emerging threats and technology to drive innovation and improvement in all technical areas of security.
This role requires a proven background in Cloud Application Security Operations on Azure or AWS.
This role is hybrid in JHB.
Your contribution will be:
- Manage and support vulnerability scanning tools (e.g., Tenable, Qualys, Rapid7) including scheduling, result analysis, and report generation.
- Support and enhance SIEM platforms (e.g., Splunk, QRadar) including data ingestion, parsing, correlation rules, dashboards, and alerts.
- Collaborate with DevOps, IT, and development teams to ensure proper tool integration and secure configurations across environments.
- Troubleshoot and resolve issues related to security tool performance, configurations, and updates.
- Maintain and document tool configurations, SOPs, and knowledge base articles.
- Contribute to tool selection and evaluation processes by providing technical input and performing proof-of-concepts.
- Oversee security tooling and strategic automation as it relates to managing remediations at scale
- Assist in incident response and remediation of identified security-related events
To be successful , we think you need:
- 3+ years’ experience in software security / penetration testing role, or equivalent experience
- Experience with SIEM platforms like Splunk/QRadar etc
- Experience supporting API security tools (e.g., AWS WAF, Cloudflare, F5, Imperva)
- Blue team experience would be highly beneficial
- Some cloud experience i.e. AWS/GCP/Azure
What’s in it for you?
Nintex has a hybrid working model, enabling us to build culture, learn, and grow together. We intentionally connect and collaborate, while emphasizing flexibility with a blend of at-home and in-office work. This role is a hybrid role in our local Nintex office.
While our offerings differ from country to country, we offer our entire global workforce an array of exciting perks and benefits, including
- Global Gratitude and Recharge Days
- Flexible, paid time off policy
- Employee wellness programs and counseling resources
- Meaningful peer recognition and awards
- Paid parental leave
- Invention/patenting assistance
- Community impact, paid volunteer time, and opportunities
- Intercultural learning and celebration
- Multiple tools through which to learn and grow, and an incredible global community
View more about our benefits here: .
Equity Statement : Preference will be given to People Living with Disability who are members of the designated groups in line with the Employment Equity Plan and Targets of the Company.
#J-18808-LjbffrSenior Security Technical Architect

Posted 14 days ago
Job Viewed
Job Description
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive.
**Additional Career Level Description:**
**Knowledge and application:**
+ Applies advanced wide-ranging experience and in-depth professional knowledge to develop and resolve complex models and procedures in creative way.
+ Directs the application of existing principles and guides development of new policies and ideas; Determines own methods and procedures on new assignments.
**Problem solving:**
+ Understands and works on complex issues where analysis of situation or data requires an in-depth evaluation of variable factors, solutions may need to be devised from limited information.
+ Exercises judgment in selecting methods, evaluating, adapting of complex techniques and evaluation criteria for obtaining results.
**Interaction:**
+ Frequently advises key people outside own area of expertise on complex matters, using persuasion in delivering messages.
**Impact:**
+ Develops and manages operational initiatives to deliver tactical results and achieve medium-term goals.
**Accountability:**
+ May be accountable through team for delivery of tactical business targets.
+ Work is reviewed upon completion and is consistent with departmental objectives.
**Workplace type** **:**
Hybrid Working
**About NTT DATA**
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.
**Equal Opportunity Employer**
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
**Third parties fraudulently posing as NTT DATA recruiters**
NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters-whether in writing or by phone-in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an **@nttdata.com** email address. If you suspect any fraudulent activity, please contact us ( ) .
Cloud Security Engineer
Posted 1 day ago
Job Viewed
Job Description
We are seeking a skilled Cloud Security Engineer to join our team on a renewable contract basis.
The ideal candidate must have experience in conducting, coordinating, and responding to vulnerability assessments and penetration tests on Azure and Microsoft 365 environments. Responsibilities include analyzing penetration testing reports, triaging vulnerabilities, and prioritizing remediation efforts. The candidate will collaborate with cloud infrastructure and development teams to address and remediate identified vulnerabilities, and implement vulnerability scanning tools to continuously assess and monitor cloud environments.
Job DescriptionExperience required:
- 4+ years as a cloud security engineer.
- Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience).
- Proven experience with Azure Security and Microsoft 365 security tools and services.
- Expertise in vulnerability management, penetration testing, and incident response in cloud environments.
- Experience with tools such as Azure Security Center, Microsoft Defender for Cloud, Azure Sentinel, Qualys, or similar.
- Proficiency in scripting and automation (e.g., PowerShell, Python, etc.) to enhance security operations.
- Strong understanding of network security, identity and access management, and encryption technologies.
Advantageous certification and experience:
- Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), Microsoft Certified: Azure Security Engineer Associate, or Offensive Security Certified Professional (OSCP).
- Hands-on experience in penetration testing tools and techniques for cloud environments.
- Familiarity with cloud architecture frameworks and security best practices (e.g., Zero Trust Architecture, shared responsibility model).