Regional Information Security Manager (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Regional Information Security Manager (Cybersecurity): Managing risk exposure and compliance across GCC and Africa entities with an accent on regulatory alignment and framework integration. Focus on implementing SAMA, NCA ECC, and POPIA controls and driving the regional technology risk forum.
Location: Onsite in Cape Town, South Africa (Apex House)
Company
is one of the world’s largest fund administration and middle office solutions providers with a global presence across 112 offices.
What you will do
- Manage risk exposure and compliance across GCC and Africa entities, aligning with Cyber Strategy and Group CISO directives.
- Integrate and govern regional regulations including UAE PDPL, DIFC Data Protection, Saudi SAMA CSF, Saudi NCA ECC, and South Africa POPIA.
- Map regional controls to the Apex Gold Standard and global frameworks such as NIST CSF 2.0, ISO 27001:2022, and COBIT 2019.
- Define MEA KRIs/KPIs, lead annual RCSAs using ISO 31000 principles, and drive risk remediation.
- Coordinate with local regulators, business heads, and technology stakeholders to deliver executive-level risk narratives.
- Maintain PCI DSS v4.0 readiness and ensure SOX 404 alignment for ICFR/ITGCs.
Requirements
- 10–15 years of experience in Cyber/Technical Risk or Compliance within GCC/Africa financial institutions.
- Practical delivery experience across UAE PDPL, DIFC, SAMA CSF, NCA ECC, and POPIA landscapes.
- Exceptional communication, presentation, and stakeholder influence skills.
- Strong knowledge of cloud and hybrid security models (Azure, AWS, or equivalent).
- Must be located in or able to work from Cape Town, South Africa
Nice to have
- Industry certifications such as CISM, CRISC, or ISO 27001 Lead Auditor.
- Cloud security certifications.
- Experience with IAM/PAM platforms such as CyberArk or SailPoint.
Culture & Benefits
- High visibility within a fast-growing global organization.
- Exposure to leading security technologies across multiple environments and jurisdictions.
- Professional development opportunities, including certifications and hands-on learning.
- Collaborative and supportive international work environment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →