Manager, Cyber Security Audit job at KCB Bank
New
Website :
Today
Linkedid Twitter Share on facebook
Manager, Cyber Security Audit
2025-06-28T03:28:42+00:00
KCB Bank
https://cdn.greatkenyanjobs.com/jsjobsdata/data/employer/comp_2015/logo/KCB%20Bank.png
FULL_TIME
 
Kenya
Nairobi
00100
Kenya
Banking
Accounting & Finance
KES
 
MONTH
2025-07-11T17:00:00+00:00
 
Kenya
8

KEY RESPONSIBILITIES: 

  • Conduct cyber risk assessment for assigned cyber security audit and advisory assignments.
  • Perform independent threat and vulnerability assessment and penetration test audits of the bank’s ICT systems to assess the effectiveness of the cybersecurity control framework and report on cyber risks noted.
  • Serve as an objective and independent advisor to business functions by providing assurance that cyber security operations and processes conform to current KCB group policies and procedures, regulatory requirements as well as applicable legislation.
  • Conduct walkthroughs, testing of controls, and negotiating potential issues for Technology audits within the cybersecurity and infrastructure portfolio, including scope areas such as identity and access management, asset classification, network security, operating system security, database security, web application security, mobile application security, public cloud (AWS/GCP/Azure) environments, vulnerability management, endpoint protection, etc.
  • Identify and evaluate significant cyber security risk exposures and contribute to the improvement of technology risk management and control systems.
  • Ensure cyber security audits are performed in accordance with the Internation Professional Practices Framework (IPPF) and the bank’s internal audit methodology.
  • Documents the results of audit work in accordance with internal audit guidelines and the Institute of Internal Auditors (IIA) standards.
  • Maintain respectful and effective communications and relationships with key stakeholders pre, during and post audit assignments to ensure alignment of audit objectives to Bank strategy.
  • Follow up on the implementation of audit recommendations, identifying and reporting any gaps that may derail implementation of audit recommendations.
  • Keep the organisation updated on cyber security industry trends, regulatory changes, and best practices in internal auditing as well as developments in the Banking industry and business environments that would inform the quality of the audit and quality assurance.

MINIMUM POSITION REQUIREMENTS

ACADEMIC & PROFESSIONAL

  • Education     Bachelor’s Degree    Information Technology, Electrical Engineering, Computer Science       RQ
  • Professional Qualifications – Information Systems Audit / Security    CISA/CISM/CISSP    RQ
  • Professional Qualifications – Vulnerability Assessment and Penetration Testing    CEH/ LPT/OSCP/CCIE Security/CSX Practitioner/ Certified Red Team Expert (CRTE)    RQ
  • Master’s Degree    IT, MBA, Computer Science    AA

 Experience

  • Total Minimum No of Years’ Experience Required    4     

Detail Minimum No of Years Need Type[2]

  • Experience IT Security and/or IT Audit    4    ES
  • Cyber Security Reviews and Vulnerability Assessments Experience     3    ES
  • Red Team Exercises and/or Penetration Testing Experience     3    ES
  • Stakeholder management    2    ES
 
 
 
bachelor degree
48
JOB-685f616a51382

Vacancy title:
Manager, Cyber Security Audit

[Type: FULL_TIME, Industry: Banking, Category: Accounting & Finance]

Jobs at:
KCB Bank

Deadline of this Job:
Friday, July 11 2025

Duty Station:
Kenya | Nairobi | Kenya

Summary
Date Posted: Saturday, June 28 2025, Base Salary: Not Disclosed

Similar Jobs in Kenya
Learn more about KCB Bank
KCB Bank jobs in Kenya

JOB DETAILS:

KEY RESPONSIBILITIES: 

  • Conduct cyber risk assessment for assigned cyber security audit and advisory assignments.
  • Perform independent threat and vulnerability assessment and penetration test audits of the bank’s ICT systems to assess the effectiveness of the cybersecurity control framework and report on cyber risks noted.
  • Serve as an objective and independent advisor to business functions by providing assurance that cyber security operations and processes conform to current KCB group policies and procedures, regulatory requirements as well as applicable legislation.
  • Conduct walkthroughs, testing of controls, and negotiating potential issues for Technology audits within the cybersecurity and infrastructure portfolio, including scope areas such as identity and access management, asset classification, network security, operating system security, database security, web application security, mobile application security, public cloud (AWS/GCP/Azure) environments, vulnerability management, endpoint protection, etc.
  • Identify and evaluate significant cyber security risk exposures and contribute to the improvement of technology risk management and control systems.
  • Ensure cyber security audits are performed in accordance with the Internation Professional Practices Framework (IPPF) and the bank’s internal audit methodology.
  • Documents the results of audit work in accordance with internal audit guidelines and the Institute of Internal Auditors (IIA) standards.
  • Maintain respectful and effective communications and relationships with key stakeholders pre, during and post audit assignments to ensure alignment of audit objectives to Bank strategy.
  • Follow up on the implementation of audit recommendations, identifying and reporting any gaps that may derail implementation of audit recommendations.
  • Keep the organisation updated on cyber security industry trends, regulatory changes, and best practices in internal auditing as well as developments in the Banking industry and business environments that would inform the quality of the audit and quality assurance.

MINIMUM POSITION REQUIREMENTS

ACADEMIC & PROFESSIONAL

  • Education     Bachelor’s Degree    Information Technology, Electrical Engineering, Computer Science       RQ
  • Professional Qualifications – Information Systems Audit / Security    CISA/CISM/CISSP    RQ
  • Professional Qualifications – Vulnerability Assessment and Penetration Testing    CEH/ LPT/OSCP/CCIE Security/CSX Practitioner/ Certified Red Team Expert (CRTE)    RQ
  • Master’s Degree    IT, MBA, Computer Science    AA

 Experience

  • Total Minimum No of Years’ Experience Required    4     

Detail Minimum No of Years Need Type[2]

  • Experience IT Security and/or IT Audit    4    ES
  • Cyber Security Reviews and Vulnerability Assessments Experience     3    ES
  • Red Team Exercises and/or Penetration Testing Experience     3    ES
  • Stakeholder management    2    ES

 

Work Hours: 8

Experience in Months: 48

Level of Education: bachelor degree

Job application procedure

Interested and qualified? Go to KCB Bank Kenya on eoin.fa.em3.oraclecloud.com to apply

 

All Jobs | QUICK ALERT SUBSCRIPTION

Job Info
Job Category: Accounting/ Finance jobs in Kenya
Job Type: Full-time
Deadline of this Job: Friday, July 11 2025
Duty Station: Nairobi | kenya | Kenya
Posted: 28-06-2025
No of Jobs: 1
Start Publishing: 28-06-2025
Stop Publishing (Put date of 2030): 28-06-2031
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.