(794) Cyber Security Risk Analyst

South African Reserve Bank
Pretoria
ZAR 200 000 - 300 000
Job description

The main purpose of this position is to research and analyse the cyber security landscape to ensure cyber threats to the South African Financial sector are known and adequately managed by the respective institutions.

Detailed description

The successful candidate will be responsible for the following key performance areas:

  1. To develop cyber frameworks, standards, and guidelines for adoption across the industry.
  2. Apply appropriate analytical techniques, methodologies, and technologies to meet the research objectives.
  3. Produce intelligence outputs to provide an accurate depiction of the current threat landscape and associated risk.
  4. Liaise with key internal and external stakeholders regarding current and developing cyber threats.
  5. To plan and coordinate intelligence-based CIS (cyber and information security) penetration testing assessments (advanced simulated cyber-attacks) across the sector i.e. Banks, Insurance, and Market Infrastructures.
  6. To develop project methodologies for external consultants to perform advanced simulated cyber-attacks on the financial sector.
  7. Identify, collect, collate, analyse, and document cyber security threats to the financial sector using threat intelligence feeds from multiple sources.
  8. Plan and prioritise work in conjunction with team lead and other stakeholders.
  9. Conduct ongoing research into legislative and best practice cybersecurity requirements.
  10. Review risk and threat information in order to identify applicable gaps in the industry.

To be considered for this position, candidates must have:

  1. A minimum of a Postgraduate qualification (NQF 8) in Security, Information Technology or an equivalent relevant qualification.
  2. At least eight years’ experience in an Information security or IT Risk / cybersecurity governance environment.
  3. Solid knowledge of risk management, compliance, and Information security governance.
  4. Have exposure to cyber risk frameworks.
  5. Be familiar with relevant legislation.
  6. Understanding of Cyber Risk Trends.
  7. Knowledge of leading cyber / information security best practices.

Job-related knowledge

  1. Relevant security certification, such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Control (CRISC), Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), or Certified Information Systems Auditor (CISA) will be an added advantage.
  2. Problem solving and analysis.
  3. Planning and organising.
  4. Verbal and written communication.
  5. Impact & influence.

Job-related skills and attributes

  1. Solid knowledge of risk management, compliance, and Information security governance.
  2. Have exposure to cyber risk frameworks.
  3. Be familiar with relevant legislation.
  4. Understanding of Cyber Risk Trends.
  5. Knowledge of leading cyber / information security best practices.

In line with the SARB’s commitment to diversifying its workforce, preference will be given to suitable candidates from designated groups. People with disabilities are welcome to apply.

The SARB offers remuneration and benefits commensurate with the level of the position and in line with the market. The level at which the successful applicant will be appointed will depend on his/her competence and experience.

Get a free, confidential resume review.
Select file or drag and drop it
Avatar
Free online coaching
Improve your chances of getting that interview invitation!
Be the first to explore new (794) Cyber Security Risk Analyst jobs in Pretoria