General Manager Security Risk and Cyber Governance

Listing reference: eskom_000783
Listing status: Online
Apply by: 29 October 2025
Position summary
Industry: Electricity, Energy & Water Supply
Job category: General Management
Location: Sunninghill
Contract: Permanent
Remuneration: Market Related
EE position: No
Introduction
Position/Task Grade: E-Band Department: Security Risk and Cyber Governance Business Unit: Information Technology Reporting to the Chief Technology and Information Officer the General Manager Security Risk and Cyber Governance will be responsible to provide direction, leadership and oversight to ensure the organisations’s Information Technology (IT)and Operational Technology (OT) environments are secure, resilient and complaint with regulatory standards, develop and implement robust security frameworks, manage risks and foster a culture of cybersecurity awareness to protect critical infrastructure and support business objectives, ensure IT infrastructure and systems are aligned with the organisation’s business goals and objectives, drive efficiency, innovation, strategic growth and oversee all security policies, strategy, security projects and deployment of multi-factor authentication(MFA) and zero threat networks.
Job description

Skills and Competencies Required

 

·       Behavioural: 

o   Integrity

o   Honesty

o   Trustworthiness

o   Professionalism

o   Accountability

·       Leadership: 

o   General management and expertise

o   Build effective relationships and deliver on expectations

o   Coaching and mentoring

o   Promote teamwork

o   Ignite passion

·       Knowledge: 

o   Business relationships

o   Stakeholder engagement

o   General IT and technical understanding

o   Relevant policies, procedures, business processes and systems

o   Security architecture design for IT and OT systems

o   Risk scorecard structure

o   Vulnerability management for IT and OT systems

o   Risk management frameworks for IT and OT systems

o   Policy development

o   Incident management

o   Incident response planning

o   Threat modelling

 

·       Skills: 

o   Strong financial

o   Business acumen

o   Strategic and decision-making

o   Project and contracts management

o   Analytica thinking

o   Stakeholder management

o   Threat intelligence

o   Negotiation

o   Communications

o   Strategic functional leadership

 

Key Responsibilities

·       Develop and articulate a comprehensive security, risk and cyber governance strategy aligned with business goals.

·       Provide visionary leadership to drive the implementation of security initiatives across IT and OT domains.

·       Establish and enforce security policies, procedures and frameworks to guide IT/OT security practices.

·       Implement robust cybersecurity measures to protect against cyber threats.

·       Collaborate with key stakeholders.

Minimum requirements

Qualification(s):

·       B Degree in Information Technology/ Computer Science/ Engineering/ Business Administration/ Business Management at NQF level 7 with 360 credits or

·       B Tech in Information Technology/ Computer Science/ Engineering/ Business Administration/ Business Management at NQF level 7 with 360 credits or

·       Advanced Diploma in Information Technology/ Computer Science/ Engineering/ Business Administration/ Business Management at NQF level with 360 credits

Experience: 

·       10 years’ extensive experience in relationship management of IT/OT projects.

 

Eskom is committed to being an employer of choice, one that inspires highly talented employees to join and stay, and it continues to attract and retain the best talent to achieve organisational goals.

“Eskom is committed to equality, employment equity, and diversity. In accordance with the employment equity plan of Eskom and its employment equity goals and targets, preference may be given, but is not limited, to candidates from under-represented designated groups.  Eskom reserves the right not to make an appointment to the posts as advertised.  Candidates with disabilities are encouraged to apply for positions.”  

“If you have not been contacted within 28 days after the closing date of this advertisement, please accept that your application was unsuccessful.”

 

 

Our website uses cookies so that we can provide you with the best user experience. By continuing to use our website, you agree to our use of cookies.