674,537open jobs
39,091companies
101,942added this week
Browse all
Salary
$15k – $39k per year (Estimated)
Location
In office (Johannesburg)
Seniority
Junior · 1+ year exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Job Mail is a South African online job board offering a large selection of vacancies across the country and some positions abroad. Job seekers can search and apply for jobs online, upload a CV and receive job alerts, while employers and recruitment agencies can advertise positions to a broad national audience. The brand is one of the longer-established names in South African job advertising and is operated from South Africa.
Key Responsibilities

Governance & Control

  • Support the maintenance of information security and ICT governance frameworks.
  • Work with ISO 27001/27002 and NIST CSF frameworks.
  • Maintain control mappings across multiple frameworks and regulations.
  • Assist with reviewing and maintaining policies, standards and procedures.
  • Collect, validate and maintain evidence for audits and regulatory reviews.
Risk Management
  • Support ICT and information security risk assessments.
  • Maintain risk registers, including inherent and residual risk ratings.
  • Track remediation activities and control improvements through to completion.
  • Provide risk input into technology changes, cloud initiatives, outsourcing and new systems or services.
Regulatory & Compliance
  • Support compliance with POPIA, GDPR, DORA and Joint Standard 2.
  • Assist with data protection activities, DPIAs and breach documentation.
  • Support ICT risk management, incident reporting and resilience requirements.
  • Assist with regulatory submissions, compliance attestations and supervisory requests.
  • Monitor regulatory changes and assist with impact assessments.
Third-Party & Outsourcing Risk
  • Support ICT supplier and third-party risk assessments.
  • Assist with due diligence, security questionnaires and evidence validation.
  • Track supplier risks and remediation actions.
  • Support regulatory requirements relating to critical and outsourced service providers.
Incident & Operational Resilience
  • Support governance around cyber and ICT incident management.
  • Assist with business continuity, disaster recovery and resilience activities.
  • Support incident classification, documentation and regulatory reporting.
  • Participate in post-incident reviews and track resulting control improvements.
Audit & Assurance
  • Support internal and external audits and regulatory examinations.
  • Track audit findings and remediation actions.
  • Prepare risk and compliance reporting for management and governance forums.
Collaboration
  • Work closely with technical and business stakeholders to embed compliance by design.
  • Translate regulatory and framework requirements into practical control expectations.
  • Provide day-to-day GRC guidance to IT, Security, Cloud and business teams.
Requirements
  • 1-3 years’ experience in GRC, Information Security, Risk or Compliance.
  • Experience within financial services or another highly regulated environment.
  • Practical experience with:
    • ISO/IEC 27001 & 27002
    • NIST Cybersecurity Framework (CSF)
    • Relevant NIST SP standards
  • Experience with control mapping and evidence collection across multiple frameworks.
  • Working knowledge of:
    • POPIA / GDPR
    • DORA
    • Joint Standard 2 - Cybersecurity and Cyber Resilience
  • Exposure to ICT risk, cyber risk or technology compliance.
  • Experience supporting audit, regulatory or assurance activities.
Advantageous
  • ISO/IEC 27001 Foundation, Implementer or Auditor certification.
  • CGRC or similar GRC certification.
  • Financial services, risk or compliance-related certifications.
Skills & Attributes
  • Exceptional attention to detail and strong documentation skills.
  • Structured, analytical and risk-based approach.
  • Strong written and verbal communication skills.
  • Ability to engage confidently with both technical and non-technical stakeholders.
  • High level of integrity, accountability and professionalism.
  • Strong understanding of governance, risk and compliance principles.
Why Join?

This is an excellent opportunity for a GRC professional looking to develop their career within a regulated financial services environment, gaining exposure to leading security frameworks, regulatory requirements, ICT risk and operational resilience.

Apply today!

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
674,537 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Johannesburg
$22k – $55k per year (Estimated) • In office • Contractor • 10+ years exp
DevOps
Incident Management
SLI/SLO/SLA
Management
Agile
Apply
Systems Engineer III 3 hours ago
$45k – $123k per year (Estimated) • In office • Full-Time • London
Python
Bash
DevOps
Terraform
GCP
New Relic
CloudFormation
Azure
CI/CD
AWS
Docker
Kubernetes
Incident Management
Apply
$16k – $37k per year (Estimated) • In office • Full-Time • 7+ years exp
Python
JavaScript
Java
TypeScript
SQL
PowerShell
C#
C++
C#
.NET
Frontend
Angular
DevOps
Incident Management
Analytics
Power BI
Microsoft Excel
Management
Power Automate
Apply
$16k – $36k per year (Estimated) • In office • Full-Time • 5+ years exp • Pretoria
PowerShell
DevOps
Incident Management
SLI/SLO/SLA
Cybersecurity
Microsoft Entra ID
Management
Outlook
OneDrive
Apply
IT Operations Manager 3 hours ago
$21k – $45k per year (Estimated) • In office • Full-Time • 6+ years exp • Johannesburg
SQL
DevOps
Azure
AWS
Incident Management
Cybersecurity
Microsoft Entra ID
Apply
Executive Recruiter 3 hours ago
$20k – $43k per year (Estimated) • In office • Full-Time • 5+ years exp
Robotics
ACT
Apply
$9k – $17k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Natal
Analytics
Microsoft Excel
Apply
$9k – $17k per year (Estimated) • In office • Full-Time • Durban
Analytics
Microsoft Excel
Apply
$26k – $33k per year • In office • Full-Time • 3+ years exp • Bachelor's Degree • Natal
Apply
$9k – $17k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Sandton
Analytics
Microsoft Excel
Apply
Cost Accountant 2 hours ago
$18k – $22k per year • In office • Full-Time • 3+ years exp • Johannesburg
Analytics
Microsoft Excel
Apply
$14k – $34k per year (Estimated) • In office • Full-Time • 3+ years exp • Johannesburg
Apply
In office • Full-Time • Bachelor's Degree • Johannesburg
Apply
Internal Auditor 2 hours ago
$22k – $29k per year • In office • Full-Time • 2+ years exp • Bachelor's Degree • Johannesburg
Apply
FinOps Engineer 2 hours ago
$20k – $44k per year (Estimated) • In office • Full-Time • 8+ years exp • Bachelor's Degree • Johannesburg
Python
SQL
PowerShell
DevOps
Azure
AWS
FinOps
Analytics
Power BI
Management
Jira
ServiceNow
Apply
See all jobs
This is one of many
674,537 more open roles from verified company boards, updated every day.