Get in Touch

Terms and Conditions
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
White Arrow Icon
White Arrow Icon

Information Security Officer

3+ years experience
South Africa
/
Hybrid
EFT Corporation
EFT Corporation
Apply Now
White Arrow Icon
White Arrow Icon

Why EFT Corporation

At EFT Corporation, success starts with people. Our team of 290+ professionals works across the United Kingdom, South Africa, Zambia, Ghana, Kenya, Mauritius, Zimbabwe, and India, bringing together deep local knowledge and shared ambition.
With over 25 years of experience, we partner with more than 100 financial institutions to deliver secure, modern payment solutions that improve access and make everyday transactions easier. We're building the future of payments through smart technology, strong partnerships, and a clear focus on progress.

Why You'll Love Working Here:

  • Career Development: We invest in your future by providing continuous learning, mentorship, and growth opportunities.

  • Work-Life Balance: We support flexible work arrangements and wellness programs to ensure you can thrive both professionally and personally.
  • Impact-Driven Work: Be part of a company driving innovation and transforming financial services across Africa.
  • Diversity, Equity & Inclusion Commitment: Be part of a workplace where everyone feels valued and appreciated

Your Role

  • As an Information Security Officer, your job purpose is to be held accountable in respect to assisting the Senior Security and Infrastructure Engineer and the Senior DevOps Engineers in the following:
    • Assisting in maintaining the safety and security of the organisation’s systems and network database to prevent unauthorized access and avoid data breaches.
    • Maintaining the organisation’s systems and networks.
    • Assisting in overseeing the entire software development process, from planning and development to deployment and maintenance.
    • This role requires expertise in both software development and operations, as well as an understanding of the DevOps methodology.
    • This includes CI/CD, Infrastructure management (AWS), Automation, Monitoring, logging and metrics, Collaboration and Security.
    • The role also requires a significant focus on PCI compliance and support and collaboration with the Security and Infrastructure team is required.
  • You will be responsible for owning the Futurex HSM and Thales HSM device management which includes:
    • Yearly Key management/replacement ceremonies.
    • PCI compliance as it relates to the HSM.
  • Assisting with new security compliance:
    • ISO27001.
    • PCI+PIN.

What You’ll Do

Maintain Operational Systems, Networks and Security:

  • Facilitate annual PCI audits.
  • Linux Operating systems are security patched in a timely manner. If patching will affect customers, arrange with operations support, and follow the correct change control process.
  • Maintain Elastic SIEM.
  • Respond to and investigate SIEM alerts.
  • Respond to operational system alerts and/or operational queries across the entire technology stack (Production and QA system issues, infrastructure issues, Databaseissues, Network issues, Security and Firewall issues and any 3rd party or customer integration issues) as they occur.
  • Manage / Deploy system tooling that may be beneficial to the business.
  • Research, POC and deploy new open source or when applicable closed source tooling that is beneficial to the business systems or processes. This can be in supporting Applications, Monitoring, Logging, SIEM, AI/machine Learning, Fraud Detection, Operational Support applications, Authentication systems, BI / Data Analytics, networks, Security or compliance.
  • Create ad hoc Python scripts / Applications to perform various repetitive tasks.
  • Ensure that AWS environments and services are architectured and configured in a secure and redundant manner including all security services from AWS.
  • Maintain AWS services including but not limited to: VPC, EC2, ECS, ECS Fargate, ECR, Guard Duty, Cloudwatch, Cloudtrail, Security groups, VPC Routing, Site to Site VPNs, Application Load balancers / network load balancers, Web application firewalls,etc.
  • Architect, support and maintain connectivity between 3rd parties, Banking partners, integrators and on prem datacentres.
  • Ensure best practice security measures are implemented.
  • Ensure best practices regarding system isolation and scope reduction.
  • Provide support to field engineers on HSMs and key management.
  • Maintain internal HSMs and key management procedures.
  • Provide support to the product and SLDC teams – this includes consulting on design, finding compliant solutions for customer issues, and filling out cyber risk assessments for customers or tenders.

Regulatory Compliance:

  • Maintain/Improve (PC14) PCI.
  • Stretch: ISO 27001.
  • GDPR.

Policies:

  • Ensure Security, Infrastructure & Procedures (with supporting team) are comprehensive and kept up to date.Security Tooling:
  • Ensure SSO, Intrusion detection, SIEM, Antivirus, Patch Management and PGP are implanted as per the polices.
  • Stimulation / adoption of user-driven security culture (give security a brand within the org and educate).

Automation:

  • To increase efficiency and reduce errors for both security and infrastructure management.

Cost Efficiency:

  • To reduce costs (optimize) without sacrificing performance and security.

Perform Security Activities & Reporting:

  • Ensure that weekly vulnerability scans results are tracked, and vulnerabilities are remediated within set severity timeframes weekly.
  • Review all daily and weekly BAU PCI Items for signoff monthly.
  • Ensure weekly Internal and External Scans were completed.
  • Perform data analysis reporting monthly.
  • Maintain a strong security posture within the card holder environment.
  • Work with 3rd party to ensure PCI Certification Audit is completed and passed on time.
  • Review Security Commitment to third parties.

What We’re Looking For

Qualification & Experience:

  • Bachelor’s degree in Computer Science or related field.
  • 3 years’ relevant experience.
  • Experience within the payment / banking sector.
  • Experience working with PCI Audits / Security in DevOps, Linux, Mysql, Cloud (AWS).
  • Network experience (particularly cloud based / virtual).

Skills & Knowledge Required:

  • PCI Audits / Security / Processes.
  • Linux, Mysql, and Cloud (AWS).
  • Experience with automation tools like CloudFormation, Ansible, Puppet, Chef, etc.
  • CI/CD tooling eg. Bitbucket pipelines, Jenkins, etc.
  • Scripting languages: Bash, Python, etc.
  • Cloud knowledge, specifically AWS.
  • Containerisation: Docker, Kubernetes, AWS ECS, etc.
  • Logging Frameworks: ELK stack, cloudwatch, etc.
  • Cloud-based virtual networking eg VPC, subnets, ALB, NLB, WAF, Peering, Transit Gateways, VPN gateways, etc.
  • SIEM experience – Elastic, Splunk, etc.
  • Monitoring and Alerting Framework: Zabbix, Nagios, etc.

Personal Attributes:

  • Ability to learn new technologies at pace.
  • Problem solving.
  • Ability to work within a high stress & flux environment.
  • Ability to foster & cultivate relationships with internal & external stakeholders.
  • Ability to work autonomously as well as part of a team.
  • Assertiveness – communicating feelings and beliefs; being non-offensive.
  • Detail & deadline oriented.
  • Analytical & critical thinking.

Our Benefits

  • Celebrate Your Special Day: Enjoy a dedicated day off to celebrate your birthday.
  • Wellbeing Matters: Maintain a healthy work-life balance with up to 3 days of wellbeing leave annually.
  • Family Comes First: Support your loved ones when it matters most with up to 20 days of family responsibility leave.

Our Values

  • Empowerment
    We trust our team to lead, make decisions, and drive outcomes.

  • Financial Inclusion for All

    We build payment solutions that broaden access and support diversity.

  • Technology with Purpose
    We design tech that simplifies and improves every transaction.

  • Customer-Centric
    Our customers are at the heart of everything we do.

Join EFT Corporation and help shape simpler, more inclusive payments for millions across Africa.


Ready to make your mark? Apply Now