Search thousands of fresh jobs

×
This job is expired
Recru-it

IT GRC Governance Compliance Specialist

Recru-it

  • R Undisclosed
  • Contract Senior position
  • South Africa
  • Posted 15 Jan 2026 by Recru-it
  • Expires in 28 days
  • Job 2630886 - Ref PE011459

About the position

Summary of role
The organisation is looking for an IT governance, risk and compliance specialist who will develop and
implement IT governance frameworks and controls aligned with international standards; manage IT audits
and risks; ensure compliance to the applicable IT regulations and policies and deliver on the IT reporting
requirements.

Responsibilities

  • Develop and implement a comprehensive IT GRC strategy.
  • Development and implementation of IT Governance, risk management and compliance policies, processes and procedures implementation and embedment of various frameworks (e.g. COBIT, ITIL, ISO, NIST, SABSA, PRINCE II, CMM, etc).
  • Implementation of IT controls in alignment with risk, legislative and regulatory requirements and industry trends.
  • Develop, monitor and report on IT governance metrics and performance indicators.
  • Assist in the maintenance of IT alignment activities, including report submissions, across various governance committees and structures.
  • Assist the various IT departments with the development and maintenance of incident response plan.
  • Assist in the preparation of stakeholder communications in response to cyber security incidents.
  • Maintain accurate and up-to-date documentation related to IT GRC activities.
  • Establish processes for continuous monitoring and IT audit and risk management reporting on compliance and risk management activities.
  • Develop an IT risk profile for the university in alignment with the approved risk management framework and process.
  • Conduct periodical internal risk assessments in various IT departments and tracking of application access reviews, active directory reviews, information security maturity, network and vulnerability assessments and IT audits identifying any gaps or areas for improvement.
  • Lead preparations and facilitate audits for IT certifications, such as ISO27001.
  • Maintain and drive the implementation of mitigation controls of the IT Risk Register.
  • Continuously analyse the effectiveness of IT and Information security controls.
  • Collaborate with internal stakeholders to perform risk analysis on information hosted by third parties and controls implemented, ensuring the maintenance of acceptable levels of residual risk.
  • Ensure visibility of audit and risks by escalating to the relevant committees.
  • Facilitate IT disaster recovery and business continuity initiatives, including testing.
  • Continuously assess the adequacy of the IT and information security.
  • Business continuity and disaster recovery plans in conjunction with risk management.
  • Coordinate and support internal and external compliance audits.
  • Oversee and evaluate compliance with regulatory requirements and practices to ensure that IT-related activities adhere to prescribed standards.
  • Ensure the organizations IT practices meet all applicable legal and regulatory requirements.
  • Manage execution of compliance activities to enhance the compliance maturity with the applicable legal and regulatory standards such as POPIA, ETC Act, cybercrimes act.
  • Oversee and facilitate data protection activities to ensure full compliance with POPIA and associated regulations concerning personally identifiable information and business-related sensitive.
  • Develop, implement, and monitor reporting mechanisms for IT governance, risk management and Audit, to support compliance and highlight areas of exposure to management.
  • Ensure timely and accurate reporting to regulatory bodies as required.


Qualifications

  • Matric and a Degree in IT or related field.
  • 8 years experience in a similar role.
  • CGEIT, CRISC, CISA and GIAC certifications are advantageous.

Summary of role
The organisation is looking for an IT governance, risk and compliance specialist who will develop and
implement IT governance frameworks and controls aligned with international standards; manage IT audits
and risks; ensure compliance to the applicable IT regulations and policies and deliver on the IT reporting
requirements.

Responsibilities

  • Develop and implement a comprehensive IT GRC strategy.
  • Development and implementation of IT Governance, risk management and compliance policies, processes and procedures implementation and embedment of various frameworks (e.g. COBIT, ITIL, ISO, NIST, SABSA, PRINCE II, CMM, etc).
  • Implementation of IT controls in alignment with risk, legislative and regulatory requirements and industry trends.
  • Develop, monitor and report on IT governance metrics and performance indicators.
  • Assist in the maintenance of IT alignment activities, including report submissions, across various governance committees and structures.
  • Assist the various IT departments with the development and maintenance of incident response plan.
  • Assist in the preparation of stakeholder communications in response to cyber security incidents.
  • Maintain accurate and up-to-date documentation related to IT GRC activities.
  • Establish processes for continuous monitoring and IT audit and risk management reporting on compliance and risk management activities.
  • Develop an IT risk profile for the university in alignment with the approved risk management framework and process.
  • Conduct periodical internal risk assessments in various IT departments and tracking of application access reviews, active directory reviews, information security maturity, network and vulnerability assessments and IT audits identifying any gaps or areas for improvement.
  • Lead preparations and facilitate audits for IT certifications, such as ISO27001.
  • Maintain and drive the implementation of mitigation controls of the IT Risk Register.
  • Continuously analyse the effectiveness of IT and Information security controls.
  • Collaborate with internal stakeholders to perform risk analysis on information hosted by third parties and controls implemented, ensuring the maintenance of acceptable levels of residual risk.
  • Ensure visibility of audit and risks by escalating to the relevant committees.
  • Facilitate IT disaster recovery and business continuity initiatives, including testing.
  • Continuously assess the adequacy of the IT and information security.
  • Business continuity and disaster recovery plans in conjunction with risk management.
  • Coordinate and support internal and external compliance audits.
  • Oversee and evaluate compliance with regulatory requirements and practices to ensure that IT-related activities adhere to prescribed standards.
  • Ensure the organizations IT practices meet all applicable legal and regulatory requirements.
  • Manage execution of compliance activities to enhance the compliance maturity with the applicable legal and regulatory standards such as POPIA, ETC Act, cybercrimes act.
  • Oversee and facilitate data protection activities to ensure full compliance with POPIA and associated regulations concerning personally identifiable information and business-related sensitive.
  • Develop, implement, and monitor reporting mechanisms for IT governance, risk management and Audit, to support compliance and highlight areas of exposure to management.
  • Ensure timely and accurate reporting to regulatory bodies as required.


Qualifications

  • Matric and a Degree in IT or related field.
  • 8 years experience in a similar role.
  • CGEIT, CRISC, CISA and GIAC certifications are advantageous.

Desired Skills:

  • Matric and a Degree in IT or related field.
  • 8 years experience in a similar role.
  • comprehensive IT GRC strategy
  • COBIT
  • ITIL
  • ISO
  • NIST
  • SABSA
  • PRINCE II
  • CMM
  • IT GRC activities.

Recru-it

About the agency

Recruit IT Recruitment IT Recruitment and Talent Sourcing Specialists Offices in Cape Town and Port Elizabeth as well as Consultants working remotely across the country Telephone number 087 805 8536 www.recru-it.co.za >recru-it* COMPANY PROFILE Certified at a BEE Procurement Recognition Level of 110% >Introduction* >recru-it*was established in August 2005 & specializes in and focuses on the full spectrum of positions within the IT and other sectors. We focus our approach on delivering a superior service to both our client and candidate, in all portfolios and phases throughout the Recruitment process, supporting real transformation within the IT Industry and other sectors through ethical and transparent business practices >Value added services* • Advertising Client Roles • Screening Applications • CV searches • Head Hunting Candidates • CV Selection • Labour Broking • Pay structure advice for client & candidate >Additional services on request* • Personal Reference checks • Credit checks • Criminal checks • ID checks • Academic checks • Qualification checks >Placements portfolio* • Software Engineering & Development • I.T. Solution Sales and Strategic Sales • Sales & marketing • Finance and Insurance • HR • Engineering • Administration / Office Management • Healthcare • FMCG • Warehousing / Logistics • Telecommunications • Training and Development • Executive and senior level placements • ERP & CRM Consultants • Project Management & Administration • I.T Executive Management • Business Analysis • Business Intelligence • Consulting • Network Engineering • Support • Testing • Product Support Specialists   >Operational structure * >recru-it*uses a flat open structure in our approach  Each consultant takes personal ownership for each client request. The consultants are account managers with their respective clients ensuring professional and personal interaction at all times.  Our team supports each other in an interactive, transparent manner to deliver highest quality candidates on each specification, thus ensuring a fast and effective turnaround time to fulfill your every labour requirement. >recru-it*was established in August 2005. Carbon foot print  We practice a 90% paperless environment as most of our duties are internet and electronic. >BEE Profile*  >recru-it*is owned by 2 individuals with 8 additional staff members • 50 % of the business is owned by a black person. • 50% of the business is women owned.  >recru-it*has been officially & precisely rated according to our company structure. • We have been certified at a BEE Procurement Recognition Level of 110%. • Enterprise development – on site as well as external training courses for staff ensuring continuous skill improvement. • Corporate Social Investment – we do not have a formal CSI policy, but we do annual donations.

Receive a daily digest of all new jobs matching this job. Your information is safe with us and you can cancel any time.

Expires in 28 days

Email me jobs similar to: IT GRC Governance Compliance Specialist

Receive a daily digest of all new jobs matching this job: Senior IT Auditor. Your information is safe with us and you can cancel at any time.