Enter a job title or keyword

Require an Engineer Information Security in Nairobi, Kenya

TestHiring


Job Location:

Nairobi - Kenya

Monthly Salary: Not provided by the employer
Experience Required: 2-5years
Posted: 8 October 2026 (2 days ago)
Application Deadline: 5 January 2027
Vacancies: 1 Vacancy

Job Summary

Security Architecture & Design

  • Develop secure architecture for new systems and services ensuring alignment with best practices (e.g. Zero Trust principles micro-segmentation) and regulatory requirements
  • Design and enforce cloud security controls (AWS Azure GCP) to protect resources data and services.

Endpoint Protection Management

  • Configure and manage endpoint protection solutions on all laptops and devices to prevent malware viruses shadow IT and other security threats
  • Configure monitor and tune security tools (e.g. SIEM EDR WAF IAM solutions) to ensure optimal coverage and timely threat detection
  • Evaluate emerging security technologies and make recommendations for improvements or replacements.

Secure Access Management

  • Deploy and manage Zero Trust Network Access (ZTNA) controls to provide secure access to applications and data both on-prem and cloud following identity management models such as least privilege and role-based access
  • Implement privileged access management (PAM) solutions to enforce least privilege principles and control access to sensitive systems and resources.

Enterprise Applications / Infrastructure

  • Fine-tune and operate vulnerability scanning tools interpret reports and prioritize remediation efforts. This will include coordinating patch management activities with system owners and track remediation progress to closure
  • Perform security hardening of the Google Workspace environment including configuration of security settings access controls mobile device management and data protection measures.

Network and Data Security:

  • Secure data at rest by implementing secure key management practices encryption algorithms and access controls to protect sensitive information. This includes implementation and management of secure key management solutions to safeguard cryptographic keys used for encryption and decryption
  • Manage security certificate lifecycle including issuance renewal and revocation to ensure the integrity and authenticity of digital certificates used for authentication and encryption
  • Collaborate with infrastructure teams to ensure network devices are hardened and monitored.

Secure Coding (DevSecOps)

  • Collaborate with DevOps teams to integrate security practices into the software development lifecycle (DevSecOps) including secure coding practices code review and automated security testing
  • Perform API and application security assessments; work closely with developers to integrate secure coding practices conduct threat modeling and perform code reviews
  • Collaborate with cross-functional teams to integrate security requirements into software development and infrastructure deployment processes.

Continuous Improvement

  • Stay updated on the latest security trends threats and technologies.
  • Identify and lead initiatives that enhance the organizations overall security posture and resilience.


Requirements
  • Bachelors Degree in computer science information security or any other related field.
  • Certifications including but not limited to CISSP CEH CISM or OSCP are a plus
  • 3 years of experience in cybersecurity preferably within payments FinTech or financial services
  • Practical experience integrating security tools (SIEM IDS/IPS EDR) and frameworks (PCI DSS ISO 27001 NIST)
  • Hands-on experience with cloud security (AWS GCP or Azure)
  • In-depth knowledge and understanding of network security concepts (firewalls routing network segmentation) and cloud security (AWS GCP Azure).
  • Proficiency and expertise in security tools and technologies (SIEM IDS/IPS EDR WAF IAM vulnerability scanners)
  • Familiarity and expertise in DevSecOps tools and processes (CI/CD pipelines containerization automation scripting)
  • Understanding of modern application security (OWASP Top 10 API security secure coding practices)
  • Knowledge of operating systems (Windows Linux) and scripting languages (e.g. Python Bash)
  • Expertise in security assessments and vulnerability management
  • Excellent verbal and written communication skills
  • Ability to collaborate effectively in cross-functional team environments
  • Strong documentation skills for maintaining security standards and teamwork records.



Required Skills:

Minimum 8 years of experience in HVAC engineering Strong knowledge of technical engineering estimation and operational works Hands-on experience with: VRF Systems Chilled Water Systems Good understanding of HVAC project execution and site coordination Strong problem-solving and communication skills Ability to work independently and handle multiple responsibilities Candidates available for immediate joining will be preferred