Enter a job title or keyword

Information Security & Compliance Officer


Job Location:

Cape Town - South Africa

Monthly Salary: Not provided by the employer
Experience Required: 5-7years
Posted: 14 July 2026 (30+ days ago)
Application Deadline: 11 October 2026
Vacancies: 1 Vacancy

Job Summary

We are seeking an experienced Information Security & Compliance Officer to lead and support the operational delivery of our information security programme and regulatory compliance obligations. This role combines cybersecurity operations risk management governance compliance and security engineering to help protect business systems data and infrastructure.

The successful candidate will play a key role in monitoring security threats managing incidents maintaining security controls ensuring regulatory compliance and driving security awareness across the organisation.



Requirements
Youll:
  • Monitor systems networks and security platforms for suspicious activity and potential threats.
  • Investigate respond to and document security incidents including root cause analysis.
  • Manage and maintain endpoint protection SIEM and other security monitoring tools.
  • Develop implement and maintain incident response plans and procedures.
  • Conduct vulnerability assessments security reviews and penetration testing initiatives.
  • Track remediation activities and work with IT teams to address identified risks.
  • Support security hardening across cloud and on-premises environments.
  • Ensure compliance with POPIA and support broader regulatory compliance requirements.
  • Manage data protection requests incidents and breach notifications.
  • Conduct data protection impact assessments for new systems applications and integrations.
  • Maintain security policies standards and governance documentation.
  • Produce regular security risk and compliance reporting for stakeholders.
  • Review threat intelligence security alerts and vulnerability management activities on an ongoing basis.
  • Assist with disaster recovery testing and business continuity initiatives.
You Should Have:
  • 57 years of hands-on experience in Information Security Cybersecurity Engineering or IT Security.
  • Proven experience with security monitoring incident response and vulnerability management.
  • Experience with POPIA compliance and IT governance frameworks.
  • Hands-on experience with endpoint protection platforms SIEM solutions and security tooling.
  • Exposure to cloud platforms such as Azure AWS or GCP.
  • Strong understanding of cybersecurity principles frameworks and best practices.
  • Knowledge of threat intelligence frameworks such as MITRE ATT&CK.
  • Experience with Windows environments Entra ID/Azure AD and networking fundamentals.
  • Understanding of firewalls network security and security architecture.
  • Scripting knowledge in Python or Bash would be advantageous.
  • Experience within telecommunications ISP or similar operational environments would be beneficial.
Qualifications:
  • Diploma or Degree in Computer Science Information Technology Cybersecurity or a related field.
  • Relevant security certifications are highly desirable including:
    • CISSP
    • CISM
    • ISO 27001 Lead Implementer or Lead Auditor
    • CEH
    • CompTIA Security



Required Skills:

Monitor systems networks and security platforms for suspicious activity and potential threats. Investigate respond to and document security incidents including root cause analysis. Manage and maintain endpoint protection SIEM and other security monitoring tools. Develop implement and maintain incident response plans and procedures. Conduct vulnerability assessments security reviews and penetration testing initiatives. Track remediation activities and work with IT teams to address identified risks. Support security hardening across cloud and on-premises environments. Ensure compliance with POPIA and support broader regulatory compliance requirements. Manage data protection requests incidents and breach notifications. Conduct data protection impact assessments for new systems applications and integrations. Maintain security policies standards and governance documentation. Produce regular security risk and compliance reporting for stakeholders. Review threat intelligence security alerts and vulnerability management activities on an ongoing basis. Assist with disaster recovery testing and business continuity initiatives. Proven experience with security monitoring incident response and vulnerability management. Experience with POPIA compliance and IT governance frameworks. Hands-on experience with endpoint protection platforms SIEM solutions and security tooling. Exposure to cloud platforms such as Azure AWS or GCP. Strong understanding of cybersecurity principles frameworks and best practices. Knowledge of threat intelligence frameworks such as MITRE ATT&CK. Experience with Windows environments Entra ID/Azure AD and networking fundamentals. Understanding of firewalls network security and security architecture. Scripting knowledge in Python or Bash would be advantageous. Experience within telecommunications ISP or similar operational environments would be beneficial.


Required Education:

Diploma or Degree in Computer Science Information Technology Cybersecurity or a related field. Relevant security certifications are highly desirable including: CISSP CISM ISO 27001 Lead Implementer or Lead Auditor CEH CompTIA Security