Overview
Information Security and Data Protection Officer Jobs in Port Louis, Mauritius at Mauritius Cargo Community Services Ltd
Title: Information Security and Data Protection Officer
Company: Mauritius Cargo Community Services Ltd
Location: Port Louis, Mauritius
Job Purpose
The Information Security & Data Protection Officer will support the maintenance, monitoring and continuous improvement of the organisation’s Information Security Management System (ISMS) and data protection compliance framework in accordance with ISO/IEC 27001 and the Mauritius Data Protection Act.
Job Responsibilities
Information Security – 80%
●Assist in the maintenance and continual improvement of the organisation’s Information Security Management System (ISMS) in accordance with ISO/IEC 27001 requirements.
●Support the monitoring and enforcement of information security policies, standards, procedures and guidelines across the organisation.
●Participate in information security risk assessments, vulnerability reviews and risk treatment activities.
●Monitor, track and follow up on corrective actions, non-conformities, audit findings and improvement plans.
●Support internal audits and external certification audits.
●Assist in identifying security gaps and recommending appropriate remediation measures.
●Assist in information security incident management, including reporting, investigation, documentation, escalation and follow-up actions.
●Work closely with IT teams and other departments to ensure security requirements are integrated into operational processes and projects.
●Coordinate staff awareness campaigns, phishing awareness activities and information security training sessions.
Data Protection – 20%
●Assist the organisation in complying with the Mauritius Data Protection Act and applicable privacy obligations.
●Maintain records related to personal data processing activities and assist in ensuring data accuracy, confidentiality, integrity and retention compliance.
●Monitor organisational practices to ensure that personal data is collected, processed, stored, shared and disposed of in accordance with legal and regulatory requirements.
●Liaise with internal stakeholders to promote awareness and understanding of data protection obligations and privacy best practices.
●Assist in preparing reports, compliance documentation and evidence for management reviews, audits and regulatory inspections.
●Monitor developments in data protection laws and compliance frameworks and provide recommendations where necessary.
Key Performance Indicators
●Percentage of ISO 27001:2022 controls with current evidence.
●Number of nonconformities per audit cycle.
●Percentage of high/critical risks with approved treatment plans.
●Percentage of policies/procedures reviewed within schedule.
●Percentage completion of data protection awareness sessions across departments.
●Compliance with requirements of the Mauritius Data Protection Act.
Education and Qualifications
● Degree in Information Technology, Cybersecurity or related filed.
● Certification in ISO 27001, cybersecurity and/or data protection would be an advantage.
Relevant Experience and Knowledge
●3-5 years’ experience in information security, compliance, risk management or data protection.
●Competence in ISO/IEC 27001 controls and audit processes.
●Knowledge of the Mauritius Data Protection Act and privacy principles.
Required Skills
●Strong documentation, version control and audit-traceable record keeping.
●Ability to translate risks into pragmatic controls actions and measurable outcomes.
●Effective coordination with MACCS teams and supports cross-functional initiatives.
●Good communication and awareness-training capabilities.
Deadline : Tuesday, 30th June 2026 at noon
MACCS reserves the right:
• to call only the best qualified candidates for interview;
• not to make any appointment following this advertisement; and
• to cancel the recruitment exercise at any stage of the process without prior notice.
For any information regarding the post, candidates may call on 206 2987 or address their queries to [email protected]