Manager, Cyber Security Audit
Nairobi
• Kenya

Angular Developer
Nairobi
• Kenya

Mid level Java Developer
Nairobi
• Kenya

VOC Programs Manager
Nairobi
• Kenya

CX Analytics Officer
Nairobi
• Kenya

Lead Data Engineer
Nairobi
• Kenya

Software Engineer
Nairobi
• Kenya
Core Banking Support Officer
Nairobi
• Kenya
Manager, Server and Storage
Nairobi
• Kenya

Get personalised job alerts directly to your inbox!
Technical Assurance Specialist
Nairobi
• Kenya
Top cities with open vacancies
Jobs in Nairobi, Jobs in Kampala, Jobs in Lagos, Jobs in Kikuyu, Jobs in LamuProfession (Banking, microfinance, insurance, Mid-level)
Industry (Information technology, software development, data, Mid-level)
Seniority (Information technology, software development, data, Banking, microfinance, insurance)
© Fuzu Ltd
Banking + 2 more
Description
MINIMUM POSITION REQUIREMENTS
ACADEMIC & PROFESSIONAL
Education
Bachelor’s Degree
- Information Technology, Electrical Engineering, Computer Science RQ
- Professional Qualifications – Information Systems Audit / Security
- CISA/CISM/CISSP AA
Professional Qualifications – Vulnerability Assessment and Penetration Testing
- OSCP/ CCIE Security / CRTO / CRTP/ CRTE / CRTM /CPTS RQ
- Master’s Degree
- IT, MBA, Computer Science AA
Experience
Total Minimum No of Years’ Experience Required
- 4 Years
Detail Minimum No of Years Need Type[2]
- Cyber Security Reviews, Vulnerability Assessments and Penetration Testing Experience 4 ES
- IT Security and/or IT Audit 3 ES
- Red Team Exercises 1 AA
- Stakeholder management 2 ES
Responsibilities
Conduct cyber risk assessment for assigned cyber security audit and advisory assignments.
Perform independent threat and vulnerability assessment and penetration test audits of the bank’s ICT systems to assess the effectiveness of the cybersecurity control framework and report on cyber risks noted.
- Serve as an objective and independent advisor to business functions by providing assurance that cyber security operations and processes conform to current KCB group policies and procedures, regulatory requirements as well as applicable legislation.
Conduct walkthroughs, testing of controls, and negotiating potential issues for Technology audits within the cybersecurity and infrastructure portfolio, including scope areas such as identity and access management, asset classification, network security, operating system security, database security, web application security, mobile application security, public cloud (AWS/GCP/Azure) environments, vulnerability management, endpoint protection, etc.
- Identify and evaluate significant cyber security risk exposures and contribute to the improvement of technology risk management and control systems.
- Ensure cyber security audits are performed in accordance with the Internation Professional Practices Framework (IPPF) and the bank’s internal audit methodology.
Documents the results of audit work in accordance with internal audit guidelines and the Institute of Internal Auditors (IIA) standards.
- Maintain respectful and effective communications and relationships with key stakeholders pre, during and post audit assignments to ensure alignment of audit objectives to Bank strategy.
- Follow up on the implementation of audit recommendations, identifying and reporting any gaps that may derail implementation of audit recommendations.
- Keep the organisation updated on cyber security industry trends, regulatory changes, and best practices in internal auditing as well as developments in the Banking industry and business environments that would inform the quality of the audit and quality assurance
Start hiring with Fuzu
Recruit better talent faster - on your own or with our support.
Explore recruitment platformJob search tips from Fuzu
Selected articles on cover letters, CV structure, and interview preparation.