To protect the Banks information assets IT systems and digital infrastructure from internal and external cyber threats by implementing monitoring and continuously improving cybersecurity measures frameworks and awareness programs. |
Key Responsibilities and Job Dimensions |
Key Responsibilities |
Cybersecurity Monitoring and Incident Response v Monitor and analyse system logs security events and alerts to detect investigate and respond to cybersecurity incidents in real time. v Conduct root cause analysis and lead incident containment eradication and recovery activities. Security Architecture and Risk Management v Support the design and implementation of secure IT systems and network architectures. v Conduct regular vulnerability assessments and penetration testing recommending mitigation measures to address identified risks. v Collaborate with internal teams to perform risk assessments of new technologies systems and third-party solutions. Policy Implementation and Compliance v Enforce information security policies procedures and controls in alignment with global standards (e.g. ISO/IEC 27001 NIST). v Ensure compliance with data protection and privacy regulations across all jurisdictions where the Bank operates. Security Awareness and Training v Develop and deliver cybersecurity awareness campaigns training sessions and phishing simulations to staff. v Promote a security-conscious culture throughout the organization. Business Continuity and Disaster Recovery v Participate in the development testing and maintenance of the Banks business continuity and disaster recovery plans. v Ensure critical data is securely backed up and can be recovered efficiently in case of a breach or system failure. |
Decision Making/ Job Influence |
v Makes tactical decisions on cybersecurity controls tools and remediation actions. v Influences IT governance by contributing to security strategy and enterprise risk management. |
Working Conditions |
v Office-based with availability for after-hours incident response. v May occasionally travel for audits training or cross-border coordination. |
Academic Qualifications | |
v Bachelors degree in Cybersecurity Information Security Computer Science or a related field. | |
Professional Qualifications / Membership to professional bodies | |
v CISSP CISM CEH CompTIA Security or equivalent industry certifications are required. v Membership in a recognized cybersecurity or IT governance body (e.g. ISACA ISC²) is an added advantage. | |
Previous relevant work experience required | |
v Minimum 5 years of hands-on experience in cybersecurity operations ideally in banking financial services or a regulated environment. v Experience with SIEM firewalls endpoint security and vulnerability management platforms. | |
Functional Skills: | Behavioural Competencies/Attributes: |
v Threat intelligence and incident handling v Network security and cloud security tools v Security assessments and penetration testing v Regulatory compliance and IT risk management v Scripting and automation (e.g. Python PowerShell) | v High integrity and confidentiality v Critical thinking and problem-solving v Proactive and detail-oriented v Communication and teamwork v Resilience under pressure |
IT Services and IT Consulting