JobsZA
Back to Midrand jobs
Live · posted 3 weeks agoFull-time

Head of Information Security (CISO)

Dis-Chem Pharmacies Limited

Midrand, Gauteng

Salary not listed

Opens the original listing in a new tab. Applying is free. Never pay money to get a job — report anyone who asks.

Cyber security roles across analyst, engineer and governance positions, concentrated in banking, telecoms and the large consultancies.

Job description

The Head of Information Security (CISO) is accountable for Dis-Chem’s information security strategy, governance, risk management, and security operations. The role ensures the confidentiality, integrity, and availability of systems and data while enabling business growth and digital innovation. The CISO operates as both risk authority and business enabler, embedding security-by-design across platforms, vendors, and delivery teams.

Requirements

  • Degree in Information Security, IT, or related field
  • Masters in Cyber Security preferred
  • Relevant InfoSec certifications
  • 10+ years’ experience in senior security leadership
  • Experience in regulated, large-scale enterprise environments

Responsibilities

Security strategy and governance

  • Define, own, and continuously evolve the enterprise information security strategy aligned to business objectives and risk appetite
  • Establish and enforce security policies, standards, and control frameworks across the organisation
  • Govern enterprise security architecture, patterns, and platform guardrails in alignment with Enterprise Architecture
  • Provide regular security posture, risk, and compliance reporting to executive leadership and Board-level forums

Security operations and resilience

  • Oversee security operations, including threat monitoring, incident response, and forensic investigations
  • Ensure effective detection, response, and recovery capabilities across all platforms and environments
  • Partner with Technology Resilience to ensure business continuity, disaster recovery, and cyber resilience readiness
  • Own relationships and performance of SOC/MDR providers and security tooling ecosystem

Risk and third-party security

  • Own enterprise information security risk management, including identification, assessment, mitigation, and reporting
  • Define and maintain the organisation’s cyber risk framework aligned to enterprise risk management
  • Govern third-party and supply chain security risk, including supplier assurance and ongoing monitoring
  • Lead engagement with internal and external audit, regulators, and compliance bodies

Data, Privacy, and Regulatory Compliance

  • Ensure protection of sensitive data, including customer, patient, and operational data, in line with regulatory requirements (e.g. POPIA)
  • Oversee data security, privacy controls, and secure use of data across platforms and integrations
  • Ensure compliance with applicable laws, regulations, and industry standards

Competencies

  • Deep expertise in cyber security, governance, and risk
  • Strong executive communication and influence
  • Ability to balance security rigor with business agility
  • Lead, coach, and develop Tribes and Squad Leads and their teams
  • Set performance expectations and conduct performance reviews
  • Manage team capacity, workload allocation, and capability development
  • Support recruitment, succession planning, and organisational design

Key Performance Indicators

  • Reduction in high-severity security incidents
  • Effectiveness of security controls and risk remediation
  • Compliance with regulatory, audit, and policy requirements
  • Security posture maturity and resilience readiness
  • Stakeholder confidence in security governance
  • Contribution to culture and leadership outcomes, measured through employee engagement, culture index improvements, and adherence to organisational values and leadership behaviours.
  • Drive a security-first culture across the organisation through awareness, training, and leadership engagement
  • Promote accountability for security across all levels of the organisation
  • Embed secure-by-design and secure-by-default principles across technology and business teams

Found on Indeed · Posted 3 weeks ago · Last checked 1 weeks ago

Good to know

What does this cyber security job pay?

The salary is not listed on this cyber security role. Check the source listing or ask the employer when you apply.

Do I need experience for cyber security jobs in Midrand?

This cyber security role may ask for some experience or a relevant qualification. Read the listing for the specifics before you apply.

How do I apply for this job?

Tap "Apply on Indeed" to open the original listing, where you can read the full description and apply directly. JobsZA never charges you to apply, and you should never pay money to get a job.

Found on Indeed · Posted 3 weeks ago

More cyber security and similar jobs in Midrand

Todayvia Adzuna
Business Development Manager: Retail Electronic Shelf Labels (ESL)

Confidential · Midrand, Gauteng

R50K - R50K/mo
Yesterdayvia Adzuna
Business Development Manager: Retail Electronic Shelf Labels (ESL) - Gauteng, Midrand

Carlysle Human Capital · Midrand, Gauteng

R50K - R70K/mo
Yesterdayvia Adzuna
Business Development Manager: Retail Electronic Shelf Labels (ESL)

Centurion · Midrand, Gauteng

R50K - R50K/mo
4 days agovia Adzuna
Senior Consultant: Wellbeing & Employee Experience

Deloitte6 · Midrand, Gauteng

R50K/mo

Get jobs on WhatsApp (free)

New jobs every morning. No spam.

Follow on WhatsApp