South Africa Job Openings

Vodafone

Senior Specialist: Secure By Design

Midrand

September 2, 2024

.
When it comes to igniting a team of trailblazers, we're number 1.
The number 1 Top Employer in South Africa.
Certified by the Top Employer Institute 2024.

Role Purpose/Business Unit


  • The primary purpose of the role is to work within a team of Secure by Design and Security Architecture professionals, in collaboration with the Privacy and Business Risk Teams to Perform Secure by Design Assessments against Vodacom policies and standards. In performing this role you will:
    • Identify potential cyber security risks for new products, services and operations and identify controls to minimise, mitigate or remove those privacy and security risks;
    • Review Design and implementation of the identified controls to ensure they are built into the product (at Design & Build stages);
    • Provide assurance that privacy and security controls have been implemented before the product goes “live” and product complies with Vodacom/Vodafone Security requirements and applicable laws (at Test & Go-Live stages);
    • Assess security and privacy risks arising from changes to existing live products that impact the processing of personal data (In-Life); and
    • Ensuring security and privacy risks are addressed when decommissioning these products (Decommissioning).
  • You will also be required to drive the delivery of Cyber Security strategy and maturity improvement or risk reduction initiatives into the business unit(s) to which you will be assigned, monitor progress against agreed targets with the objective of safeguarding Vodacom Infrastructure and customer data from Cyber threat actors. This role will involve working with Business unit, Cyber and IT stakeholders in Vodacom South Africa to drive out Cyber Security baseline requirements – Some of these responsibilities may extend to collaboration with Group Cyber Security and other operating companies to ensure that cyber security controls are consistently applied across markets.
Your responsibilities will include:


  • Provide technology security assurance, guidance and support to high profile projects,
  • Ensure security is embedded in IT System and Network Infrastructure (Mobile, IS and Enterprise) across the Vodacom Group
  • Defining, implementing, and efficiently maintaining technology security controls and requirements
  • Ensure timely delivery of technology security assurance and support for projects, products and services.
  • Ensure compliance with Legal and Regulatory requirements
  • Support Technology Security awareness programs and educational efforts within the business unit to which you are assigned
  • Provide accurate and timely reporting of technology security risks identified during secure by design assessments, project engagement and propose remediation and mitigation options in line with policy and good practice
  • Fulfil key customers’ obligations and stakeholders’ expectation
  • Ensure financial efficiency in Tech Security Solutions
  • Ensure compliance with the applicable legislative and regulatory interpretation and corporate risk appetite;
  • Engage with the stakeholders on compliance to control effectiveness and deficiencies in the design and operating effectiveness of information security controls, design and recommend opportunities for continuous improvement.
  • Manage and conduct formal information security risk analyses, reviews, tests, audits and/or self-assessments.
  • Design appropriate remedial actions for identified risks, drive remediation of findings and management of risks and exemptions.
.
  • Assist to compile a report of information security risks in an appropriate way for different audiences.
  • Develop, manage and maintain an information security incident management capability.
  • Collaborate with various key stakeholders, and provide information security advice to stakeholders
  • Together with CSO team advise on Security decisions for the Agile Team to which you have been assigned and guide the identified Security Champions to imbed security within the CI/CD pipeline. This will include coaching or guiding them:
    • Coach identified Security Champions to gain practical cyber and Dev Sec Ops understanding and knowledge
    • Coach Product Owners and all team members on the importance of security requirements
    • Support product and service development with Secure by Design expertise
    • Alert Cyber Security to security incidents following Vodafone Standards for reporting.
    • Report on risk and compliance levels for relevant product and services
    • Provide input into the definition of the Secure by Design blueprints, patterns and design principles to support product and service development
    • Give teams recommendations for remediation of vulnerabilities or weaknesses in products or services
    • Give overall guidance on different security activities across Agile teams
    • Provide first level supervision, support and guidance to specialist cyber secure by design resources in your area.
The Ideal Candidate for this role will have:


  • 3-year Technical Diploma/Degree in Information Security, Computer Science or Engineering
  • An industry certification. The CISSP is strongly preferred, however CCSP, OSCP, CISM, CISA or other relevant certifications will be considered. Security/IT Architecture qualifications such as SABSA, TOGAF etc and relevant security architecture experience will be an added advantage
  • Minimum of 5 years of experience in a Cyber Security role
  • Knowledge of common information technology management / compliance frameworks such as ISO/IEC 27001, NIST CSF, ISF, PCI DSS, OWASP, SANS etc.
  • A deep understanding of Technology Security risks and mitigating solutions
  • A diverse security background with knowledge and experience in three or more of the Security Domains including: Security Assessment and Testing; Software Development Security; Security Governance and Risk Management; Security Architecture and Engineering; Communication and Network Security; Identity and Access Management; Security Operations; Asset Security.
  • Knowledge of operating systems such as Windows and Linux and how to secure them
.
  • Knowledge of Cloud and container technologies such as AWS/GCP/Azure, Docker, Kubernetes, and how to implement developer tools such as Git Hub and Dependency management will be an added advantage.
  • Specialist knowledge or experience in either, Dev Sec Ops, Application Security, Security Architecture or Offensive Security will be an added advantage.
  • Ability to work under time and resource pressure
  • An ability and desire to collaborate and communicate with a broad set of stakeholders, including senior management.
  • A customer-focused, responsive, and transparent attitude

We make an impact by offering:

  • Enticing incentive programs, competitive benefit packages, and an exclusive 13th cheque
  • Retirement funds, risk benefits, and medical aid benefits
  • Cell phone and data benefits, advantages fibre connection discounts, and exclusive staff discounts offered in collaboration with partner companies

Closing date for Applications:06 September 2024



The base location for this role is Vodacom Campus Midrand



The company's approved Employment Equity Plan and Targets will be considered as part of the recruitment process. As an Equal Opportunities employer, we actively encourage and welcome people with various disabilities to apply.
Vodacom is committed to an organizational culture that recognizes, appreciates, and values diversity & inclusion

New Job Alerts
Air Liquide

State Clinical Key Account Manager

Bedfordview

FULL TIME

September 23, 2024

View Job Description
Clinical Mycobacteriology and Epidemiology Research Group

PhD position in the CLIME group, Faculty of Medicine and Health Sciences, Stellenbosch University

Cape Town

FULL TIME

September 23, 2024

View Job Description
Durban University of Technology

LECTURER : PUBLIC MANAGEMENT/LOCAL GOVERNMENT MANAGEMENT (PE05)

Durban

FULL TIME

September 23, 2024

View Job Description
Educor

Head of Faculty - Education (JB3982)

Johannesburg

FULL TIME

September 23, 2024

View Job Description
Educor

Lecturer in Traffic and Metropolitan Policing (JB4533)

Johannesburg

FULL TIME

September 23, 2024

View Job Description
Company Partners

Senior Accountant

Cape Town

FULL TIME

September 23, 2024

View Job Description
Mercy Mission SA

Marketing Manager

Durban

September 23, 2024

View Job Description
Durban University of Technology

LECTURER (REF PE03) - DEPARTMENT OF PUBLIC MANAGEMENT AND ECONOMICS

Durban

FULL TIME

September 23, 2024

View Job Description
The Rank Group

DevOps Engineer

Cape Town

FULL TIME

September 23, 2024

View Job Description
University of Fort Hare

PROFESSOR: ANGLO GOLD ASHANTI RESEARCH CHAIR IN DAIRY SCIENCE AND TECHNOLOGY

FULL TIME

September 23, 2024

View Job Description
Looking for similar job?
Lula

Senior Data Engineer

Cape Town

FULL TIME

August 30, 2024

View Job Description
Lula

Senior Analytics Engineer

Cape Town

FULL TIME

August 30, 2024

View Job Description
Murray & Roberts

Senior Projects Manager

FULL TIME

August 30, 2024

View Job Description
Global Health Strategies

Communications & Advocacy Senior Associate, Africa

Johannesburg

August 29, 2024

View Job Description
Wilderness

Senior Travel Designer - Owned Brands

Sandton

FULL TIME

August 30, 2024

View Job Description
Rysun Labs Pvt Ltd

Senior Business Development Manager

Johannesburg

FULL TIME

August 30, 2024

View Job Description
See What’s New: Vodafone Job Opportunities
Vodafone

Intern in Project Management for 6G-ANNA Project] (m/f/d) in Dresden or Hybrid (2024)

Dresden

September 19, 2024

View Job Description
Vodafone

(Senior) Expert Supplier Management (m/f/d) for Vantage Towers

Düsseldorf

September 14, 2024

View Job Description
Vodafone

Head of Market Financial Reporting

Düsseldorf

FULL TIME & PART TIME

September 13, 2024

View Job Description
Vodafone

Group Lead Infrastructure Deployment - East (m/f/d) for Vantage Towers

Berlin

September 7, 2024

View Job Description
Vodafone

Field Marketing Lead

Düsseldorf

FULL TIME & PART TIME

September 6, 2024

View Job Description
View More Jobs by Vodafone
New Job Alerts
Air Liquide

State Clinical Key Account Manager

Bedfordview

FULL TIME

September 23, 2024

View Job Description
Clinical Mycobacteriology and Epidemiology Research Group

PhD position in the CLIME group, Faculty of Medicine and Health Sciences, Stellenbosch University

Cape Town

FULL TIME

September 23, 2024

View Job Description
Durban University of Technology

LECTURER : PUBLIC MANAGEMENT/LOCAL GOVERNMENT MANAGEMENT (PE05)

Durban

FULL TIME

September 23, 2024

View Job Description
Educor

Head of Faculty - Education (JB3982)

Johannesburg

FULL TIME

September 23, 2024

View Job Description
Educor

Lecturer in Traffic and Metropolitan Policing (JB4533)

Johannesburg

FULL TIME

September 23, 2024

View Job Description
Company Partners

Senior Accountant

Cape Town

FULL TIME

September 23, 2024

View Job Description
Mercy Mission SA

Marketing Manager

Durban

September 23, 2024

View Job Description
Durban University of Technology

LECTURER (REF PE03) - DEPARTMENT OF PUBLIC MANAGEMENT AND ECONOMICS

Durban

FULL TIME

September 23, 2024

View Job Description
The Rank Group

DevOps Engineer

Cape Town

FULL TIME

September 23, 2024

View Job Description
University of Fort Hare

PROFESSOR: ANGLO GOLD ASHANTI RESEARCH CHAIR IN DAIRY SCIENCE AND TECHNOLOGY

FULL TIME

September 23, 2024

View Job Description