IT Risk and Compliance Specialist - Sandton Verfied

Salary Negotiable Sandton, Gauteng Sandton, Gauteng more than 14 days ago 23-04-2014 6:28:27 AM
21-05-2014 6:28:27 AM
Synopsis:
Leading Sandton based financial services provider is looking to appoint a suitably skilled and experienced individual to assume responsibility for IT risk and compliance management process.

Minimum Requirements:
Matric
IT Degree
CRISC / CISA / CGEIT / CISM
Risk Management Certification
CoBIT
ITIL
Minimum 3 to 5 years experience in similar role
Knowledge of data privacy / PoPI
IT operational experience an advantage
Previous experience in Financial Service industry an advantage

Job Description:
Suitably skilled and experienced individual to assume responsibility for IT risk and compliance management processes, including:
• Implementing Risk Management programme in line with EWRM framework
• Conducting periodic risk assessments
• Capture and update risk registers on CURA
• Ensuring risk registers are accurately and completely updated, especially in time for RISCO and audit committee
• Ensuring risk mitigation strategies are employed in all areas of responsibility
• Ongoing monitoring and evaluation of processes, procedures and operations to identify and manage IT risks
• Monitoring and tracking risk mitigation actions until resolution and within agreed timelines
• Reporting on status of IT risks
• Overseeing project risks
• Review and analysis of project risk registers
• Ensuring risk ownership is assigned
• Ensuring risk response plans assigned to identified risks
• Reporting on project risks
• Assisting with building adequate controls to reduce risk exposure in various environments
• Providing control guidelines
• Assisting with control self assessments
• Promoting a culture of risk awareness
• Managing compliance using international standards, frameworks and best practices for benchmarking
• Ensuring that applicable legislation is adhered to
• Identifying and monitoring non-compliance and escalating where appropriate
• Providing guidance on compliance matters
• Driving Compliance Health Checks on IT environment
• Assisting in awareness activities iro compliance and compliance requirements
• Working with auditors and functional area owners to satisfy internal and external audit requirements
• Facilitating the resolution of audit / compliance exceptions
• Cultivating good working relationships with internal and external auditors to engender trust and confidence
• Providing input to related policies
• Adhoc Governance, Risk and Compliance tasks
• Applicable reporting as and when required