EnableSA (Pty) Ltd

Cybersecurity Assurance and Compliance Specialist (Hybrid)

EnableSA (Pty) Ltd Nelson Mandela Bay Metropolitan Municipality, Eastern Cape, South Africa

Staffing and Recruiting · 2-10 employees

Jun 26
security Senior (5-10 yrs) Full-time South Africa
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The specialist will lead cybersecurity compliance initiatives, manage risk assessments, and coordinate internal and external audits. They are also responsible for developing security policies and maintaining the enterprise cybersecurity risk register.

What they look for

Cybersecurity Governance Risk Management Compliance ISO/IEC 27001 SOC 2 NIST 800-171 CMMC Audit Coordination Security Policies Risk Assessment Vendor Risk Management Security Awareness Training Regulatory Compliance Information Security IT Audit

Requirements

Candidates must hold a bachelor's degree in a relevant field such as Information Security or IT. A minimum of 5 years of experience in cybersecurity, risk management, or compliance is required, along with knowledge of frameworks like ISO 27001 and SOC 2.

Full description

Our client in Port Elizabeth is seeking an experienced Cybersecurity Assurance & Compliance Specialist to drive and strengthen their global cybersecurity governance, risk, and compliance initiatives. This role is ideal for a cybersecurity professional who enjoys working at the intersection of security, risk management, compliance, and business operations.

The successful candidate will play a key role in maintaining industry-recognised security certifications, managing cybersecurity risks, supporting audits and assessments, and ensuring the organization remains compliant with regulatory, customer, and industry requirements. Working closely with IT, Legal, HR, Audit, and business stakeholders, you will help shape and enhance the organisation's overall security posture.

Responsibilities:

  • Lead and support compliance initiatives relating to recognized cybersecurity and compliance frameworks.
  • Coordinate internal and external audits, assessments, and certification activities.
  • Maintain audit readiness and ensure accurate documentation and evidence is available for review.
  • Monitor audit findings and oversee remediation activities through to completion.
  • Act as the primary point of contact for auditors, assessors, certification bodies, and internal stakeholders.
  • Develop and maintain security policies, procedures, standards, and governance documentation.
  • Manage customer security questionnaires, due diligence requests, and security assessments.
  • Collaborate with internal departments to provide accurate responses to customer and vendor security reviews.
  • Maintain and enhance the organisation's cybersecurity risk management processes.
  • Facilitate risk assessments across systems, applications, business processes, cloud environments, and third-party vendors.
  • Identify, evaluate, prioritize, and track cybersecurity risks and mitigation plans.
  • Manage and maintain the enterprise cybersecurity risk register.
  • Develop risk reporting dashboards, compliance metrics, and key risk indicators for leadership.
  • Support third-party risk management and vendor security review activities.
  • Assist with security awareness, compliance training, and governance initiatives.
  • Research emerging regulatory and compliance requirements and assess business impact.
  • Drive continuous improvement of cybersecurity governance, compliance, and risk management practices.

Requirements

  • Bachelors Degree in Information Security, Cybersecurity, Information Technology, Risk Management, Business Administration or related.
  • 5+ years experience in Cybersecurity, information security, IT Audit, Risk Management, Governance or Compliance.
  • Experience supporting SOC 2 / ISO/IEC 27001 / CMMC / NIST 800-171

Similar roles