| Government Entity | State Information Technology Agency |
|---|---|
| Location | Centurion, Gauteng |
| Reference Number | SITA/20260909/3114 |
| Salary | R478420.00 - R717630.00 |
| Centre / Location | SITA Centurion |
| Closing Date | September 18, 2026 |
| Source and Application | eservices.gov.za |
Division: RPL: HOD Northern Region
Employment Type: Permanent
The perform ISS assurance functions including compliance and vulnerability assessments, execute activities related to the implementation and maintenance of information security controls and services aligned to the Cybersecurity frameworks and standards.
Requirements
Minimum: 3-Years National Diploma in Computer Science or Information Technology or Network Management or a relevant discipline NQF level 6 qualification. Certification: ITIL and COBIT 2019 certifications will be an added advantage. Certified information system security professional (CISSP) or Certified Information Security Management (CISM) will be an added advantage. Experience: 3 - 5 Years Information and Communication Technology (ICT) Infrastructure or Information Systems Security (ISS) which should include the working knowledge of information security governance processes, frameworks and standards (e.g. ISO 27001/ 27002 COBIT, ITIL, NIST). Exposure to information systems security technical standards (e.g. NIST Special Publications, CIS Benchmarks, ISO/IEC standards, etc.) Experienced in (e.g. Vulnerability Management, Risk Management, Systems Auditing and Information Security Training, etc). Working knowledge of vulnerability management tools. Exposure to information security/cybersecurity frameworks (e.g. ISO 27001, NIST) knowledge of governance processes and standards (e.g. COBIT & ITIL). Exposure to information system security technical standards (e.g.: S NIST Special Publications, CIS Benchmarks, ISO/IEC standards, etc.) Experienced in (e.g. Vulnerability Management, Risk Management, Systems Auditing and Information Security Training, etc). Information Management The overall governance of how all types of information, structured and unstructured, whether produced internally or externally, are used to support decision-making, business processes and digital services. Encompasses development and promotion of the strategy and policies covering the design of information structures and taxonomies, the setting of policies for the sourcing and maintenance of the data content, and the development of policies, procedures, working practices and training to promote compliance with legislation regulating all aspects of holding, use and disclosure of data. Information Security and Application Protection The selection, design, justification, implementation and operation of controls and management strategies to maintain the security, confidentiality, integrity, availability, accountability and relevant compliance of information systems with legislation, regulation and relevant standards. IT Service Management The planning, implementation, control, review Active listening The ability to fully concentrate on what is being said rather than just passively 'hearing' the message of the speaker. Attention to Detail The ability to ensures information is complete and accurate. Analytical thinking Identifies issues; obtains relevant information, relates and compares data from different sources, and identifies alternative solutions. Continuous Learning The ability to constantly expand one's skill set. Disciplined Showing a controlled form of behaviour or way of working, diligently. N/A
Duties
Perform ongoing assessments of cyber threats and associated risks to identify vulnerabilities, evaluate potential impacts, and enhance organizational security posture. Perform Business Continuity and Disaster Recovery consultations and evaluations. Coordinate security awareness and training programs to increase employees' overall understanding, reaction time and the ability to envisage the company's potential safety and compliance requirements. Perform compliance assessments and vulnerability assessments to ensure government and citizen information is secure. Attend to all logged security incidents.
Source / Circular Reference
eservices.gov.za