Deputy Director: Chief Information Security Officer
Department of Basic Education
- Location
- Department of Basic Education, Gauteng
- Salary
- R1 101 468 per year
- Job type
- Permanent
- Work setting
- On-site
- Sector
- Government & public service
- Closing date
- 05 Oct 2026
Posted today
What you need
- Qualification
- Diploma
- Experience
- 4+ years
- Driver's licence
- Code 8 (EB)
How to apply
Apply by email
How to apply: Submitted via post to: Private Bag X895, Pretoria, 0001 or hand-deliver to: The Department of Basic Education, 222 Struben Street, Pretoria or you can email your application to Sechele.O@dbe.gov.za/Segowa.M@dbe.gov.za/Kumalo.N@dbe.gov.za./Sko sana.th@dbe.gov.za Please visit the Department of Education’s website at www.education.gov.za Official advert: DPSA Public Service Vacancy Circular 34 of 2026, post 34/03, ref DBE/69/2026. Government applications usually need the new Z83 form and a detailed CV.
Email: Sechele.O@dbe.gov.za
Applying is free. Never pay anyone to get a job.
Job description
Branch: Business Intelligence Chief Directorate: Information and Management Systems Directorate: Government Information Technology Office
Requirements:
Applicants must be in possession of NQF level 6 post matric qualification in Information Technology/Information Systems or equivalent qualification as recognised by SAQA; Four (4) years relevant experience as an Assistant Director or equivalent; A minimum of two (2) certifications in any of the following: ITIL, COBIT, CISA, CISM, CISSP, CRISC, ISO 27001 plus a minimum of at least five (5) years’ experience as a Chief Information Security Officer/ Information Security Officer; Experience in managing networks; Sound knowledge of Enterprise or Technology architecture environment is required, strategic management, information and communication technology systems and processes; Sound knowledge of Microsoft environment, virtualised, cloud environments; Sound knowledge of business continuity management; Sound knowledge of the E-government strategy and roadmap, interactive communication, problem solving and analytical thinking orientation, planning and organising skills, project management skills, strategic thinking; Understanding organisational information flows and maintaining an inventory of data; Understanding the data classification framework and implementing controls in accordance with the sensitivity levels; Vulnerability awareness through an understanding of the vulnerability Detection and management program; Patching and Remediation SLAs and Agreed-upon timelines for addressing security vulnerabilities; A valid driver's license.
Duties:
The successful candidate will be responsible for CyberSecurity Program: Designing, configuring, deploying, and maintaining security controls to safeguard the Department’s infrastructure; Actively protecting the Department’s information technology assets and infrastructure from external or internal threats and ensuring compliance with statutory and regulatory requirements regarding information access, security, and privacy; Analysing problems and recommending solutions, products and technologies to meet the Organisation’s security and information security objectives; Performing security assessments for all systems and applications and checking for compliance with cybersecurity standards and regulations in projects and new system design implementation; Developing and interpreting the cybersecurity strategy and framework; Interpreting cybersecurity maturity levels and implementing road maps; Leading the implementation of best practice network security controls across cloud environments and On-premises platforms to maintain resistance against cyberattacks; Focusing on the safe adoption of AI integration; Data protection and encryption: Ensuring sensitive information is identified and adequately protected; Developing or installing software, such as data-at-rest encryption programs and SSL certificates to protect sensitive information in transit and in use; Supporting the development of disaster response and recovery strategies and its implementation within the DBE; Troubleshooting security and network problems to maintain a fit-for-purpose DR site and business continuity plans; Network, web, and Endpoint Security and monitoring; Threat and Vulnerability Management: Leading threat landscape assessment and situational Cyber-attack; Ensuring vulnerability assessments and penetration tests are performed periodically; Analysing and interpreting vulnerability results and facilitating remediation of identified vulnerabilities at Protection and Response Maturity levels in conjunction with other business application owners; Providing reports to Senior Management on the vulnerability management program. Incident response and third-line support: Providing third-line support to any Information security-related queries; Overseeing and providing advanced incident response support for breaches, intrusions, or data theft; Performing Third-Party Risk Management: Effective monitoring of supplier security postures; Ensuring rapid recovery capabilities. Delivering on Security Projects within budget; Training employees on Information Security.
Enquiries: Ms N Monyela Tel No: (012) 357 3294/ Mr M Segowa Tel No: (012) 357 4291
Reference number: DBE/69/2026