About the Role
The Department of Information and Communication Technology is seeking a dedicated Director: Departmental Information Security Officer based in the vibrant city of Pretoria. In this pivotal role, you will be at the forefront of safeguarding the department’s information assets and ensuring robust cybersecurity measures are in place. Your leadership will directly contribute to the enhancement of public service delivery by protecting vital information against cyber threats and ensuring compliance with established standards. This position is essential for maintaining public trust and security in government operations, making your work crucial to the community and the broader South African public service.
As the Departmental Information Security Officer (DISO), you will lead the development and implementation of comprehensive information security strategies. You will oversee the management of ICT risk functions and foster a culture of cybersecurity awareness across the department. Your efforts will not only protect sensitive data but also ensure that the department’s operations continue seamlessly in the face of potential cyber threats, thereby supporting the government’s commitment to transparency and accountability.
About the Department
The Department of Information and Communication Technology plays a vital role in advancing South Africa’s digital landscape. It is tasked with enhancing the efficiency and effectiveness of government services through information and communication technologies. By working in this department, you will contribute to a mission that focuses on leveraging technology to enhance service delivery and foster economic growth. The work you do will have a meaningful impact, helping to shape a secure digital environment for all South Africans.
What You’ll Do
- Lead the development and management of the department’s information and cybersecurity program.
- Oversee ICT risk management functions to align with the Departmental Risk Management framework.
- Facilitate governance in cybersecurity and information security through policy development and implementation.
- Design and implement a cybersecurity and data privacy framework based on established standards such as NIST.
- Ensure regular reporting on identity protection, detection, response, and recovery measures.
- Develop and manage ICT business continuity and disaster recovery processes to mitigate risks.
What You’ll Need
- A tertiary qualification (SAQA NQF level 7) in Computer Science or Information Technology.
- Certification as a Certified Information System Security Professional (CISSP) and/or Certified Information Security Manager (CISM).
- A minimum of five years’ experience in a cybersecurity environment at a middle or senior management level.
- Successful completion of the Pre-entry Certificate for SMS as endorsed by the National School of Government.
- In-depth knowledge of information and cybersecurity models and frameworks, as well as relevant legal and regulatory requirements.
- Strong understanding of network connectivity and business management principles.
- Excellent communication skills, both verbal and written, along with proven problem-solving abilities.
How to Apply
Please submit your application before the closing date as late applications will not be considered.
Looking for more South African government jobs? Browse the latest vacancies on JobsSouthAfrica.co.za. If you are applying for the first time, read our Complete Guide to Applying for Government Jobs in South Africa, covering the Z83 form, certified copies, CV format, interview tips and more.
Requirements
A tertiary qualification (SAQA NQF level 7) in Computer Science or Information Technology.Certified Information System Security Professional (CISSP) and/or Certified Information Security Manager (CISM).
Five (5) years’ experience in cyber security environment at middle/senior management level.
Successful completion of the Pre-entry Certificate for SMS as endorsed by the National School of Government.
Knowledge of information and cybersecurity models and frameworks.
Knowledge and understanding of relevant legal and regulatory requirements.
Knowledge of business ecosystems and business management principles.
Knowledge and understanding of network connectivity.
Knowledge and understanding of relevant quality standards and procedures (e.
g.
ISO 9001).
Knowledge and understanding of relevant security standards and frameworks (e.
g.
NIST, ISO 27001).
Knowledge of policy development and implementation.
Understanding financial management and knowledge of PFMA.
Knowledge of project management principles and practices.
Knowledge of analytical procedures, strategic capability and leadership.
People management and empowerment.
Understanding of corporate governance principles.
Problem solving and analysis.
Client orientation and customer focus.
Accountability and ethical conduct.
Excellent communication skills (both verbal and written).
Job Duties
Lead, develop, implement and manage the information and cybersecurity program as the Departmental Information Security Officer (DISO).Manage the ICT risk management functions to support the overall Departmental Risk Management framework.
Facilitate cyber and information security governance through policy development, standards implementation, awareness programs, and regular reporting to oversight structures.
Implement and manage a cybersecurity and data privacy framework, such as NIST, ensuring comprehensive reporting on identity, protection, detection, response, and recovery.
Develop, implement, and manage ICT business continuity and disaster recovery processes.