Business Information Security Officer at Absa Group Limited
--Powermax General Electrical Merchants Ltd--
Job Description
Empowering Africa’s tomorrow, together…one story at a time.
With over 100 years of rich history and strongly positioned as a local bank with regional and international expertise, a career with our family offers the opportunity to be part of this exciting growth journey, to reset our future and shape our destiny as a proudly African group.
Job Summary
The Business Unit Business Information Security Officer (BISO) is responsible for integrating cybersecurity measures into the business unit’s strategy, ensuring that information security initiatives align with and support its specific goals. The BU BISO acts as a bridge between the central security function and business unit leadership, providing expertise on risk management, compliance, and data protection within the unit’s unique operational context. This role involves implementing security policies, conducting risk assessments, and managing security incidents to safeguard the unit’s information assets.
Job Industry
Job Salary Currency
Job Salary Fixed
NoKey Deliverables
- Bridge the gap between business operations and IT security. Act as a liaison and translator between technical security teams and business units, ensuring security initiatives align with business objectives and risk appetite.
- Implement and maintain information security policies and procedures. Develop, implement, and enforce information security policies, standards, and procedures aligned with industry best practices and regulatory requirements.
- Conduct risk assessments and business impact analyses. Identify, assess, and prioritize information security risks across the organization, and develop mitigation plans to address them.
- Oversee security awareness and training programs. Develop and implement security awareness programs to educate employees on security best practices and promote a security-conscious culture.
- Collaborate with IT security teams. Work closely with IT security teams to ensure technical security controls are implemented effectively and aligned with business needs.
- Monitor and respond to security incidents. Assist in the investigation and response to security incidents, ensuring appropriate actions are taken to contain and remediate threats.
- Manage third-party security risks. Assess and manage security risks associated with third-party vendors and partners.
- Ensure compliance with regulations and standards. Maintain compliance with relevant regulations and standards, such as GDPR, HIPAA, PCI-DSS, and ISO 27001.
- Report on security posture and KPIs. Provide regular reports to senior management on the organization's security posture, risks, and key performance indicators.
Essential Qualities
| Essential Qualities |
|---|
|