CIRCULAR NO.1 OF 2025
Applications are invited from suitably qualified candidates for the following positions:
JOB DESCRIPTION
JOB TITLE : CHIEF INFORMATION SECURITY OFFICER
GRADE : K
NO. OF POSITIONS : ONE (1)
DEPARTMENT : INFORMATION COMMUNICATIONS TECHNOLOGY
RESPONSIBLE TO: ICT DIRECTOR GENERAL
Job purpose
Assist ICT Director General to set strategic direction for the information security framework nationwide. Manage an organization’s cybersecurity strategy and its implementation to ensure that digital systems, services and assets are adequately secure and protected. Manage and implement the security architecture, IT Governance, Risk management & compliance security operations and incident response. Carry out functions delegated to him/her by the ICT Director General.
Key functions
- Defines, maintains and communicates the cybersecurity vision, strategy, policies and procedures. Manages the implementation of the cybersecurity policy across the organization. Assures information exchange with external authorities and professional bodies
- Defines, implement, communicate and maintain cybersecurity goals, requirements, strategies, policies, aligned with the business strategy to support the organizational objectives
- Prepare and present cybersecurity vision, strategies and policies for approval by the senior management of the organization and ensure their execution
- Supervise the application and improvement of the Information Security Management System (ISMS)
- Educate senior management about cybersecurity risks, threats and their impact to the organization
- Ensure the senior management approves the cybersecurity risks of the organization
- Develop cybersecurity plans
- Develop relationships with cybersecurity-related authorities and communities
- Report cybersecurity incidents, risks, to the senior management
- Monitor advancement in cybersecurity
- Secure resources to implement the cybersecurity strategy
- Negotiate the cybersecurity budget with the senior management
- Ensure the organization’s resiliency to cyber incidents
- Manage continuous capacity building within the organization
- Review, plan and allocate appropriate cybersecurity resources
Must have Master’s Degree in Information Security or Information Security Certification from a recognized Institution. Must have certification in Risk Management or IT governance course. The incumbent must have a minimum of 8 years’ experience 2 of which must have served at ICT Director level in Lesotho Government or equivalent level of experience in a reputable organization.
Or
Must have Bachelor’s Degree in Information Security or Information Security Certification from a recognized Institution. Must have certification in Risk Management or IT governance course. The incumbent must have a minimum of 10 years’ experience 2 of which must have served at ICT Director level in Lesotho Government or equivalent level of experience in a reputable organization.
Competences
- Technical Competences
- Technology Trend Monitoring
- Information Security Strategy Development
- Risk Management
- Information Security Management
- IS-Governance
- Behavioral competences
- Innovativeness
- Teamwork, leadership, and Networking
- Concern for quality standards
- Accountability
- Knowledge management
- Communicating
Applications should be made on the relevant forms of GP 104 for serving officers and GP 103 for job seekers duly accompanied by certified copies of educational certificates, transcripts, ID and Council on Higher Education (CHE) Certificate of verification should be hand delivered to:
The Human Resource Office
Ministry of Information, communication, Science, Technology and Innovation 3rd floor Moposo house
DEADLINE FOR SUBMISSION WILL BE ON THE 03rd FEBRUARY 2025