Old Mutual Limited (OML) is a premium African financial services group that offers a broad spectrum of financial solutions to retail and corporate customers.
Old Mutual is a firm believer in the African opportunity and our diverse talent reflects this.
Key Responsibilities:
Threat Monitoring & Mitigation:
Continuously monitor the organization’s IT ecosystem for vulnerabilities, threats, and attacks using advanced security tools and methodologies.
Respond to security incidents, including identifying, tracing, and neutralizing cyberattacks in real-time.
Conduct post-incident analyses to strengthen future defenses.
Security Patching & Updates:
Ensure all systems, applications, and services are up to date with the latest security patches and upgrades.
Work closely with IT operations to maintain a streamlined patch management process.
Secure Software Development:
Conduct regular code reviews and penetration testing of in-house applications to identify vulnerabilities.
Implement and maintain automated tools for vulnerability scanning during the CI/CD process.
API Security:
Develop and enforce security standards for API development and consumption.
Monitor API endpoints for potential threats, such as unauthorized access or data exfiltration.
Implement best practices such as rate limiting, OAuth 2.0, and robust authentication mechanisms for APIs.
AWS Cloud Security:
Design, implement, and manage robust security controls for AWS-hosted systems, ensuring adherence to the principle of least privilege.
Continuously assess AWS services and configurations for vulnerabilities and compliance with best practices.
Oversee the use of AWS-native security tools like AWS GuardDuty, Inspector, Security Hub, and CloudTrail.
Risk Management & Compliance:
Conduct regular risk assessments and audits to ensure compliance with security policies, standards, and regulatory requirements.
Provide technical leadership in developing and updating the organization’s cybersecurity policies and procedures.
Team Collaboration & Training:
Collaborate with cross-functional teams to integrate security into every phase of the system development lifecycle.
Provide training and awareness programs for staff to cultivate a strong security culture.
Required Qualifications:
Education:
Bachelor’s degree in Computer Science, Information Technology, or a related field.
Certifications (at least 2 of the following):
Certified Information Systems Security Professional (CISSP).
AWS Certified Security – Specialty.
Certified Ethical Hacker (CEH).
Offensive Security Certified Professional (OSCP).
GIAC Security Essentials Certification (GSEC).
GIAC Cloud Security Automation (GCSA).
The appointment will be made from the designated group in line with the Employment Equity Plan of Old Mutual South Africa and the specific business unit in question.
Old Mutual Limited is pro-vaccination and encourages its workforce to be fully vaccinated against Covid-19.
All prospective employees are required to disclose their vaccination status as part of the recruitment process.