
Johan Opperman
Information Technology Information Security Consultant

Connect with Johan Opperman to Send Message
Connect
Connect with Johan Opperman to Send Message
ConnectTimeline
About me
Managing Director of Ristco | Certified Director | MBL | Cert. Senior Lead Risk Manager | Cert. ISO 27001 Lead Auditor | Risk, governance, strategy, performance management consultant.
Education

Information Systems Audit and Control Association - ISACA
2015 - 2015Certified Information Security Manager (CISM - passed June 2015 Examination)
Information Systems Audit and Control Association - ISACA
2001 - 2001Certified Information Systems Auditor - CISA Information systems governance, controls / security
University of South Africa/Universiteit van Suid-Afrika
2000 - 2002Master of Business Leadership - MBL Leadership, labour laws, Strategy, Risk, Finance / Accounting, Marketing & OperationsActivities and Societies: My study group won the CSIR prize for the best company analysis.

University of South Africa/Universiteit van Suid-Afrika
1999 - 1999Programme in Business Leadership Bridge to MBL study. Contemporary management, Financial reporting, Cost management, Statistics etc.
University of Johannesburg
1994 - 1994Diploma in Information Technology Program design & data structures, Security, Operating systems, Databases, Communication & Networks
University of South Africa/Universiteit van Suid-Afrika
1983 - 1986Bachelor's degree International Politics, Political Sciences, Communications, Public Administration, Accountancy
Experience

Ingwe Coal Corporation Ltd
Apr 1997 - Feb 2001Information Technology Information Security ConsultantInformation Technology Security Consultant to Ingwe Coal Corporation reporting to the IT Manager (Chief Information Officer). Ingwe Coal Corporation consisted of a number of coal mines in South Africa and formed part of the Billiton Group - now BHPBilliton.Responsible for the successful overall design, implementation and maintenance of the information security program in support of business automation processes and the establishment of network connectivity among all the mines and the Billiton Group. - Requested to chair the global Billiton Group Information Security Forum as an Ingwe member. - Successful establishment, execution and monitoring of an information security strategy, tightly aligned with the Ingwe corporate and business strategies. Overall responsible for the effective delivering of intrusion detection systems, policy monitoring systems and secure remote access system related projects, in addition to the process and governance related dimensions.- Establishment and maintenance of an effective business continuity strategy for the Ingwe Group.- Exceptionally high level of Information Security awareness to ensure support for the program.- Proving the value of an intrusion and vulnerability assessment management system. - Realise substantial cost saving via the utilisation of a Public Key Infrastructure (PKI) in key areas.- Effective introduction of one of the first multi-factor remote access solutions in the South African industry. - The security model of Ingwe Coal Corporation and lessons learnt was the subject of a case study by one of the big auditing firms in South Africa. Show less

Absa Group
Mar 2001 - Jan 2015Group Consultant to the Absa / Barclays Africa Group, based in Johannesburg, South Africa with operations in a number of countries on the Africa continent. It is structured into clusters (Retail, Business Banking, Investment Banking, Financial services (including short and life insurance), Africa Operations and Central Services.) As Group function I deal with the respective mentioned clusters and is responsible / mandated for Regulator engagement on operational risk.Achieved the Prestige Award for being the first Bank in Africa to obtain Basel II Operational Risk Advanced Measurement Approach status providing the Absa Group with a competititive edge.My interst lies in the effective and efficient correlation of strategy (and execution), risk and governance to achieve the optimum sustainable risk reward profile and effective support of business goals. Responsible for operational risk oversight, new product approval and product monitoring, the risk processes associated with merger, acquisitions and start-up operaions on general management level. Holistic / integrated and cross risk views are taken from a product approval / monitoring and start-up / acquisition perspective. Extensive background experience also on related disciplines such as business continuity and information sececurity (qualified as a certified information system auditor in the past), information system auditing, regulatory compliance as well as counter intelligence and other operational risk / enterprise risk management disciplines. Show less
Group Consultant Operational Risk
Mar 2003 - Jan 2015Information Technology and E-commerce Auditor
Mar 2001 - Apr 2003
%20Ltd.webp)
Ristco (PTY) Ltd
Feb 2015 - nowCEO / Owner ConsultantI optimise client value via the strategic correlation of risk, strategy, governance and performance management by addressing specific building blocks required to achieve the above.My consultation services include:- Climate change and sustainability- Ethics- Strategy- Entity (risk) strategy and associated risk governance management. Risk based environmental analysis to enhance the risk identification and associated management processes. - Risk integration with the strategic and operational processes.- Design and optimisation of an enterprise risk management in support of objectives. - Chief Risk Officer services.- Implementation / optimisation of an information security / risk program. Chief Information Security / Risk Officer services. - Risk appetite, tolerance and risk bearing capacity. - Recovery and resolution processes.- Business continuity and crisis management.- Key indicator management framework.- Risk loss event management.- Aggregated interpretive risk management reporting. - Design of a risk oversight program – inclusive of risk management plans and remediation tracking.- Risk scenario management.- Integration and alignment of risk in management processes. - Corporate governance – King IV alignment assessments.- Risk maturity assessment and management. - Project risk management.- Merger / acquisition / start-up due diligence / integration / implementation.- Top management risk awareness briefings. Risk training strategy development and implementation. - New product approval assessment and reviews / facilitation.- Basel Operational Risk services.- Combined assurance.- Board / Executive management and individual risk / governance / strategy training. I provide training on enterprise risk management and related aspects, amongst others as a Certified ISO 31000 Senior Risk Lead Manager and a Certified Trainer. Contact detail: Mobile +27 83 233 4630 or johan.opperman@ristco.co.za. Show less
Licenses & Certifications

Certified Director (IODSA)
Institute of Directors South AfricaOct 2017- View certificate

Certified Trainer
PECBMar 2019 - View certificate

PECB Certified ISO 37301 Lead Auditor
PECBJun 2021 - View certificate

Certified ISO 31000 Senior Lead Risk Manager
PECBFeb 2025 - View certificate

PECB Certified ISO 37301 Lead Implementer
PECBJun 2021 - View certificate

PECB Certified ISO 22301 Lead Implementer
PECBMay 2024 - View certificate

PECB Certified ISO/IEC 27001 Lead Auditor
PECBApr 2023 - View certificate

PECB Certified ISO 38500 Lead IT Corporate Governance Manager
PECBMay 2024 
MSECB Certified Management Systems Auditor - ISO 27001:2022
MSECBFeb 2021- View certificate

PECB Certified Management Systems Auditor
PECB MSFeb 2021
Volunteer Experience
Chairperson of the SABS TC 262 - South African Mirror Committee of ISO TC 262 Risk Standards
Issued by South African Bureau of Standards on Mar 2015
Associated with Johan OppermanMember - South African ISO 37000 Mirror Committee (TC309) addressing Governance of Organisations
Issued by South African Bureau of Standards on Feb 2020
Associated with Johan Opperman
Languages
- enEnglish
- afAfrikaans
Recommendations

Justin hawkinson
Chef & Kitchen ManagerFerndale, Washington, United States
Alexander liebhart
Manager bei Value Dimensions Management Services GmbHStockerau, Lower Austria, Austria
Michael thompson, ca
Securitisation and Funding Manager at KiwibankWellington, Wellington, New Zealand
Gustavo freitas
Desenvolvedor | Suporte | AZ-900 | ADSSantos, São Paulo, Brazil
Jayaram p d
Chief Manager at KERALA GRAMIN BANKMalappuram, Kerala, India
Andy autuori
Ingénieur Affaire/Produit chez EQUANS INEOToulouse, Occitanie, France
Kiran bhoday
Enterprise Customer Support Supervisor at SoftchoiceToronto, Ontario, Canada
Sonal doshi, cpa
General Manager at Delta Air LinesDuluth, Georgia, United States
Marcelino mouro
Supervisor Técnico Operacional.Nova Iguaçu, Rio de Janeiro, Brazil
Colin jackson nraemt, tccc
Emergency Medical ServicesGALVESTON COUNTY EMERGENCY SERVICES DISTRICT NO. 2
Naga kamal guttula
Btech '23 | MCA '26 | JNTUHHyderabad, Telangana, India
Enryco oetomo
Director at PT. Rajawali Agung PratamaSouth Jakarta, Jakarta, Indonesia
Sotheara veng
Fulbright Scholar | Computer Science Education | STEM EducationNewark, Delaware, United States
Mikko sivonen
Liiketoimintapäällikkö, laatuvastaava at RambollFinland
Akshit yabaloori
Business Management & Administration | Best Manager 2022 |Hyderabad, Telangana, India
Richard park
Product Owner at Amused GroupPrahran, Victoria, Australia
Adi maor
Electrical Engineering Student @TAUTel Aviv-Yafo, Tel Aviv District, Israel
Sumith c mohan
Seasoned Project Manager | Mastering Agile and Water fall project management, Project Costing, Nego...Kerala, India
Sherian bachan
Instructional Design Coordinator | Executive AssistantTrinidad and Tobago
Enrique rodríguez
Assistant Project Manager at HITT Contracting Inc.Dallas-Fort Worth Metroplex
...