Job Description
ENVIRONMENT:
A secure e-Signature platform based in Cape Town is seeking a Security & Compliance Manager who is responsible for owning and operating the companys information security and compliance posture. This includes implementing and maintaining ISO/IEC 27001, handling customer security reviews, managing audits, and ensuring security controls are practical, effective, and aligned with a modern cloud-native SaaS environment.
This is a hands-on role, suited to someone comfortable working closely with engineering, product, and leadership.
DUTIES:
Information Security Management (ISO 27001)
- Own the ISO/IEC 27001 ISMS, including:
- Risk assessments and treatment plans
- Policies, procedures, and control implementation
- Statement of Applicability (SoA)
- Lead initial ISO 27001 implementation and ongoing certification maintenance
- Plan and run internal audits and management reviews
- Coordinate and manage external certification and surveillance audits
Customer & Partner Security Reviews
- Act as the primary point of contact for:
- Customer security questionnaires
- Vendor risk assessments
- Due diligence reviews (enterprise & financial services clients)
- Prepare and maintain standard security responses (ISO, SOC-style answers, cloud security posture)
- Support enterprise sales by explaining security controls clearly and confidently
Security Governance & Controls
- Maintain and improve:
- Security policies (access control, incident response, vendor management, etc.)
- Asset management and data classification
- Supplier and third-party risk management
- Ensure security controls are practical and proportionate, not bureaucratic
- Track and manage security risks and exceptions
Audit, Monitoring & Evidence
- Maintain audit-ready evidence for:
- Access controls
- Change management
- Incident handling
- Backups, logging, and monitoring
- Work with engineering to ensure evidence is automated where possible
- Monitor compliance drift and follow up on corrective actions
Incident & Vulnerability Management
- Own the security incident response process
- Coordinate incident handling, root cause analysis, and corrective actions
- Track vulnerabilities and remediation status (with engineering)
Awareness & Enablement
- Run lightweight security awareness training for staff
- Help teams understand why controls exist, not just enforce them
- Embed security into day-to-day operations without slowing delivery
REQUIREMENTS:
Essential
- 37 years experience in information security, compliance, or GRC
- Hands-on experience with ISO/IEC 27001 (implementation or maintenance)
- Experience supporting external audits
- Ability to translate security requirements into practical controls
- Comfortable working with cloud environments (e.g. Google Cloud, AWS, Azure)
- Strong written communication skills (policies, audit responses, customer answers)
Desirable
- SaaS or fintech / financial services experience
- Familiarity with:
- SOC 2 concepts
- NIST or CIS Controls
- Cloud-native security tooling
- Experience responding to enterprise security questionnaires
- Background working in small or scaling companies
ATTRIBUTES:
- Pragmatic and solutions-oriented
- Comfortable pushing back on unnecessary bureaucracy
- Confident working independently with minimal supervision
- Able to work across technical and non-technical teams
- Calm and methodical under audit or incident pressure
How to Apply
Click the green “Go Apply” button below to apply directly online with the employer.
About Other IT/Computer Jobs in Western Cape
The Western Cape, situated on the south coast of South Africa, is home to a thriving IT industry that offers a diverse range of career opportunities for professionals with expertise in various fields.
The job market in the Western Cape is highly competitive, with many major companies and startups operating in the region. The province’s strategic location, combined with its well-developed infrastructure, makes it an attractive hub for businesses looking to establish themselves in Africa. As a result, there is a high demand for skilled IT professionals who can support the growth of these companies.
The average salary ranges for IT professionals in the Western Cape are as follows: software engineers and developers can expect to earn between R800 000 to R1 200 000 per annum; data scientists and analysts can range from R600 000 to R900 000; cybersecurity specialists can earn anywhere from R500 000 to R800 000; and IT project managers can command salaries ranging from R400 000 to R700 000. These figures are based on industry standards and may vary depending on factors such as experience, qualifications, and company size.
To succeed in an IT career in the Western Cape, professionals need to possess a range of key skills, including programming languages (Java, Python, C++), data structures and algorithms, software development methodologies, cloud computing (AWS, Azure, Google Cloud), cybersecurity principles, and excellent communication skills. Additionally, knowledge of industry-specific tools and technologies, such as SAP or Oracle, can be highly valued.
Several major companies and industries are actively hiring IT professionals in the Western Cape. For example, tech giants like IBM and Dell have a strong presence in the region, while financial institutions such as Standard Bank and First National Bank also have significant IT departments. The automotive industry is another major sector that employs IT professionals, with companies like Toyota and Volkswagen having operations in the province.
Career growth opportunities are plentiful for IT professionals in the Western Cape, with many companies offering training and development programs to help employees upskill and reskill. With experience, professionals can move into senior roles such as technical lead or manager, or transition into related fields like business analysis or consulting. The region’s entrepreneurial spirit also makes it an ideal location for startups, providing opportunities for IT professionals to launch their own businesses or join innovative companies that are shaping the future of technology.
This information provides general career guidance. Actual salaries and requirements vary by employer.
GO APPLY NOW
Safe & secure application process
Explore More Opportunities
Get Similar Job Alerts
Job Seeker Tip
Always arrive 10-15 minutes early for interviews to show punctuality and reliability.
How to Apply
Click “GO APPLY NOW” to visit the company’s application page.
Follow their instructions carefully.
JVR Jobs connects you with employers – we don’t process applications directly.
Latest Job Opportunities
Somerset West: Client Service Coordinator posted by Helderberg Personnel
Requirements Include (But not limited to): Managing WhatsApp customer communication (primary channel)Answering inbound phone callsAssisting customers with...
View JobDurban: Finance Executive posted by Hire Resolve
A leading Logistics and Supply Chain company is seeking an experienced Finance Executive with comprehensive experience in strategic financial planning,…
View JobZeerust: Experienced Electrical / Mechanical Engineer posted by Skillnet Pty Ltd
Job Title: Experienced Electrical/Mechanical EngineerSeniority Level: ProfessionalType: PermanentDuties and Responsibilities:Safety Compliance: Ensure...
View JobDurban: Bank Reconciliation Clerk posted by Hire Resolve
A leading financial institution is seeking a Bank Reconciliation Clerk to join their dynamic Finance team. The ideal candidate will…
View JobNelspruit: Data Capturer posted by Skillnet Pty Ltd
Duties and Responsibilities:Data Entry & Management: Accurately inputting, updating, and maintaining information in digital databases, systems, or...
View JobDurban: Bank Reconciliation Clerk posted by Hire Resolve
A leading financial institution is seeking a Bank Reconciliation Clerk to join their dynamic Finance team. The ideal candidate will…
View Job
Browse Employers
Job Alerts