IT GRC Consultant at Digital Jewels Africa

3 - 5 Years
or Register to apply for this job
Company Details
Industry: Telecommunications
Description: Digital Jewels Limited is an ISMS Certified Information Value Chain Consulting and Capacity Building Firm specialising in Information Technology and Project Management. Our areas of focus are Information Security, Information Assurance, Project Management, e-business and Knowledge Capital Development. Today, the Firm is the First and Only Professional Services Firm in Africa to be accredited by the ISO27001 Global Standard for Information Security. Digital Jewels is also a PCIDSS QSA (Payment Card System Industry Data Security Standard Qualified Security Assessor).
Job Description
  • The ideal candidate would be agile, ability to perform duties independently under general, minimal supervision within specific assignments.

KEY RESPONSIBILITIES

  • Be a key part of GRC projects, end to end from consulting to implementation
  • Apply GRC fundamentals incorporated in various processes.
  • Understands and document information systems and processes correctly.
  • Engage with clients to understand relevant solutions and advise them
  • Understands information security controls and how they relate to engagement requirements.
  • Raise awareness for clients and internal team around GRC.
  • Lead the system-wide information security compliance program, ensuring IT activities, processes, and procedures meet defined requirements, policies, and regulations.
  • Develop and implement effective and reasonable policies and practices to secure protected and sensitive data and ensure information security and compliance with relevant legislation and legal interpretation.
  • Execute strategy for dealing with increasing number of audits, compliance checks and external assessment processes for internal/external auditors

Education/Certifications:

  • Bachelor’s degree in an IT-related discipline
  • Working knowledge of frameworks standards and regulations, including PCI, ISO 27001/22301/9001/20000/DPR.
  • Experience in conducting VAPT would an advantage.
  • Possession of ISO 27001/22301/9001/20000 valid certifications.
  • Possession of COBIT 2019, PIMS, CISA, CISM, CISSP would be an advantage
  • 3-5 years of experience in an information systems environment, with strong knowledge of IT Governance and Systems Information Security.
Salary: Discuss During Interview
Education: Diploma, High/Secondary School
Employment Type: Full Time
Contact Information

Key Skills

informationtechnology 
Beware of Fraudsters!
Never pay anyone for job applications, interview tests, or job interviews. A genuine employer will never ask you for payment under any circumstances.
Disclaimer & TOS: We do not guarantee the authenticity of every single job posting and are not responsible for any fraudulent activity or misrepresentation by third parties. We are not involved in any stage of the interview or recruitment process and do not charge any fees from job seekers. For further details, please read the rest of the Terms of Service.

Recent Jobs