SATIC: Security & Compliance - Manager
PwC South Africa
Johannesburg, Gauteng
Security is one of SA's largest employers. With a PSIRA grade, security officer and guard roles are widely available across malls, estates, sites and events nationwide.
This listing does not state a salary. As a guide, security roles in South Africa typically pay R5 000 to R11 000 a month (indicative).
Job description
About PwC SATIC
Our South Africa Delivery Centre is the latest part of PwC, a global brand delivering services for the biggest clients in the world. PwC leads the way in human led, technology-enabled professional services working with clients to transform their organisations and make them fit for the future.
We are looking for candidates who bring in-depth market experience, fused with outstanding technical capabilities, who want to be a part of a community of solvers to tackle the biggest challenges in society.
If you are looking for a career where every day is different, where challenges are complex and where you can make a real difference, then we want to hear from you.By choosing to join SATIC, you are choosing to work with teams all over the world, harnessing the power of world leading tech, and making a difference to real people’s lives. We are building one of the most innovative and exciting capabilities in the consulting industry. Taking the very best of our market leading approaches relating to business analysis, operating model design, change management, programme and project management, and transformation implementation.
We believe that taking an enterprise level approach to transformation has the power to unlock the biggest opportunities our clients have, to improve efficiency and effectiveness, and ensure they deliver the outcomes required for the people and places they serve.
Summary
The Security & Compliance role, is responsible for leading and embedding security, risk and compliance practices across technology, data, AI and delivery teams.
The role acts as a key bridge between delivery teams, technology teams, cybersecurity, risk, legal, privacy, compliance and leadership. The role will help ensure that solutions, platforms, processes and client delivery activities are designed, implemented and operated in line with applicable security standards, internal policies, regulatory requirements and client obligations.
This role requires a practical, delivery-focused security and compliance professional who can influence teams, identify risks early, support remediation, improve control maturity and promote a culture of secure and compliant delivery.
Required experience
- 7 to 9 years of experience in Security, Risk, Compliance, IT Governance, Cybersecurity, or Technology Assurance.
- Relevant experience in security, risk, compliance, technology assurance, IT governance, cybersecurity or related fields.
- Experience working with technology, software delivery, data, cloud or digital transformation teams.
- Experience supporting audits, control testing, risk assessments or compliance reviews.
- Experience interpreting policies, standards and regulatory requirements into practical actions.
- Experience managing stakeholders and influencing cross-functional teams.
- Experience tracking risks, issues, remediation plans and compliance evidence.
- Experience in professional services, consulting, financial services, technology delivery or client-facing environments would be advantageous.
- Exposure to AI, automation, data analytics or cloud security would be advantageous.
Key responsibilities
Security and compliance leadership
- Lead the implementation of security and compliance practices across assigned teams, platforms, projects and initiatives.
- Act as the primary security and compliance point of contact for delivery teams.
- Promote secure-by-design, privacy-by-design and compliance-by-design principles.
- Support leadership in maintaining a strong security, risk and compliance culture.
- Translate policy, regulatory and control requirements into practical delivery guidance.
- Provide input into security and compliance strategy, roadmaps and improvement plans.
Risk identification and control oversight
- Identify, assess and track security, privacy, technology, data and compliance risks.
- Support risk assessments for new systems, platforms, data flows, vendors, AI tools and delivery processes.
- Ensure appropriate controls are defined, implemented and evidenced.
- Review control gaps and support remediation planning.
- Escalate material risks, overdue actions and control failures to relevant governance forums.
- Maintain risk, issue and exception registers where required.
Security governance and assurance
- Support governance over access management, data protection, secure development, third-party tools, cloud environments and AI-enabled solutions.
- Coordinate security reviews, control self-assessments and compliance checks.
- Support internal and external audits by preparing evidence, coordinating responses and tracking findings.
- Monitor compliance with internal policies, client requirements and applicable regulatory obligations.
- Ensure security and compliance requirements are included in project planning, design, testing and deployment activities.
- Support reporting to leadership on security posture, control performance, risk trends and remediation progress.
Secure delivery and technology support
- Work with architects, developers, engineers and delivery leads to embed security into the software development lifecycle.
- Support secure coding, vulnerability management, penetration testing and remediation activities.
- Review application, cloud, API and integration designs from a security and compliance perspective.
- Ensure appropriate controls for authentication, authorisation, encryption, logging, monitoring and data handling.
- Support incident readiness, response coordination and post-incident remediation.
- Provide practical advice on secure use of collaboration tools, development environments, cloud platforms and AI technologies.
Data protection and privacy
- Support compliance with data protection and privacy requirements.
- Assist teams in identifying personal, confidential, sensitive or client data.
- Review data flows, data access, retention, storage and transfer arrangements.
- Support privacy impact assessments or equivalent data protection reviews.
- Ensure data handling aligns with client obligations, internal policies and legal requirements.
- Promote responsible data use across analytics, reporting, automation and AI initiatives.
AI, automation and emerging technology compliance
- Support risk and compliance reviews for AI, generative AI, automation and data-driven solutions.
- Ensure AI use cases include appropriate security, privacy, human oversight and responsible AI controls.
- Review risks relating to data leakage, inaccurate outputs, bias, misuse, third-party AI tools and intellectual property.
Technical and compliance skills
Security governance
- Information security governance.
- IT risk management.
- Security control frameworks.
- Policy and standards implementation.
- Security assurance and evidence management.
- Control testing and remediation tracking.
Cybersecurity
- Secure software development lifecycle practices.
- Vulnerability management.
- Identity and access management.
- Cloud security principles.
- Application and API security.
- Security logging, monitoring and incident response.
- Data encryption and secure data transfer.
Compliance and assurance
- Internal policy compliance.
- Audit preparation and audit response.
- Control self-assessments.
- Risk and issue management.
- Third-party and vendor risk reviews.
- Client security requirements and due diligence support.
- Regulatory and contractual compliance awareness.
Data protection and privacy
- Data classification and handling.
- Privacy-by-design principles.
- Personal information protection.
- Data retention, access and transfer controls.
- Privacy impact assessments.
- Confidentiality and client data protection.
AI and emerging technology risk
- Respo
Good to know
What does this security job pay?
This listing does not state a salary. As a guide, security roles in South Africa typically pay R5 000 to R11 000 a month (indicative).
Do I need experience for security jobs in Johannesburg?
Many security roles in Johannesburg are open to candidates with little or no experience. Read the listing for its exact requirements.
How do I apply for this job?
Tap "Apply on Linkedin" to open the original listing, where you can read the full description and apply directly. JobsZA never charges you to apply, and you should never pay money to get a job.
Found on Linkedin · Posted 1 weeks ago
More security and similar jobs in Johannesburg
Confidential
R80K - R80K/mo