Security & Compliance Analyst job at PYCS
New
Website :
Today
Linkedid Twitter Share on facebook
Security & Compliance Analyst
2025-11-04T15:24:11+00:00
PYCS
https://cdn.greatkenyanjobs.com/jsjobsdata/data/employer/comp_5768/logo/pycs.jpg
FULL_TIME
 
Nairobi
Nairobi
00100
Kenya
Consulting
Computer & IT
KES
 
MONTH
2025-11-12T17:00:00+00:00
 
Kenya
8

 

Key Roles and Responsibilities

  • Establish and manage the company’s security processes, including policies, tools, workflows, and documentation.
  • Monitor all applications and systems daily to identify and respond to potential threats or unusual activity.
  • Monitor, manage, and update the SIEM system to detect and respond to security threats. This includes setting up alerts, reviewing logs, investigating incidents, and ensuring all key systems are sending data to the SIEM.
  • Maintain access control mechanisms including user provisioning, de-provisioning, and role-based access
  • Handle all reported security issues-investigate, resolve, and ensure proper communication and follow-up within the SLA.
  • Develop clear security playbooks and procedures for incident response, access control, and reporting.
  • Conduct regular system and application checks to identify vulnerabilities and work with the team to resolve them.
  • Identify and mitigate security vulnerabilities in coordination with relevant teams.
  • Ensure compliance with relevant standards and regulations, including PCI DSS, ISO 27001, GDPR, CBK guidelines, and others as required.
  • Maintain detailed records of incidents, and actions taken, and prepare periodic security reports for management.
  • Manage access rights across systems,ensure proper permissions, regular reviews, and timely updates.
  • Support the implementation of encryption and secure communication protocols to ensure the security of data in transit.
  • Support client and auditor requests related to security by providing clear responses and documentation.
  • Train staff on basic security practices and ensure team members follow the company’s security policies.
  • Actively support employee onboarding by leading training sessions on relevant topics and providing departmental introductions to new hires.
  • Stay updated on evolving security threats, tools, and regulatory changes, and ensure internal practices are updated accordingly.
  • Support access control management within infrastructure environments, ensuring appropriate permissions are granted and reviewed periodically.
  • Participate in daily stand-ups, planning meetings, and retrospectives to learn agile development rhythms.
  • Perform any other duties as required to support the business in response to evolving needs, changes, and growth.

Qualifications

  • Bachelor's or Master’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • At least 4 years of experience in information security, cybersecurity, or IT risk management.
  • Knowledge of firewalls, intrusion detection systems, SIEM, and antivirus software.
  • Experience with security frameworks (ISO 27001, NIST, CIS Controls, etc.).
  • Familiarity with network security, penetration testing, and incident response.
  • Strong understanding of cloud security (AWS, Azure, GCP).
  • Certifications such as CISSP, CISM, CEH, or CompTIA Security+ (preferred).
  • Excellent problem-solving, analytical, and communication skills.
Establish and manage the company’s security processes, including policies, tools, workflows, and documentation. Monitor all applications and systems daily to identify and respond to potential threats or unusual activity. Monitor, manage, and update the SIEM system to detect and respond to security threats. This includes setting up alerts, reviewing logs, investigating incidents, and ensuring all key systems are sending data to the SIEM. Maintain access control mechanisms including user provisioning, de-provisioning, and role-based access Handle all reported security issues-investigate, resolve, and ensure proper communication and follow-up within the SLA. Develop clear security playbooks and procedures for incident response, access control, and reporting. Conduct regular system and application checks to identify vulnerabilities and work with the team to resolve them. Identify and mitigate security vulnerabilities in coordination with relevant teams. Ensure compliance with relevant standards and regulations, including PCI DSS, ISO 27001, GDPR, CBK guidelines, and others as required. Maintain detailed records of incidents, and actions taken, and prepare periodic security reports for management. Manage access rights across systems,ensure proper permissions, regular reviews, and timely updates. Support the implementation of encryption and secure communication protocols to ensure the security of data in transit. Support client and auditor requests related to security by providing clear responses and documentation. Train staff on basic security practices and ensure team members follow the company’s security policies. Actively support employee onboarding by leading training sessions on relevant topics and providing departmental introductions to new hires. Stay updated on evolving security threats, tools, and regulatory changes, and ensure internal practices are updated accordingly. Support access control management within infrastructure environments, ensuring appropriate permissions are granted and reviewed periodically. Participate in daily stand-ups, planning meetings, and retrospectives to learn agile development rhythms.
 
Bachelor's or Master’s degree in Cybersecurity, Information Technology, Computer Science, or a related field. At least 4 years of experience in information security, cybersecurity, or IT risk management. Knowledge of firewalls, intrusion detection systems, SIEM, and antivirus software. Experience with security frameworks (ISO 27001, NIST, CIS Controls, etc.). Familiarity with network security, penetration testing, and incident response. Strong understanding of cloud security (AWS, Azure, GCP). Certifications such as CISSP, CISM, CEH, or CompTIA Security+ (preferred). Excellent problem-solving, analytical, and communication skills.
bachelor degree
48
JOB-690a1a9b6fb45

Vacancy title:
Security & Compliance Analyst

[Type: FULL_TIME, Industry: Consulting, Category: Computer & IT]

Jobs at:
PYCS

Deadline of this Job:
Wednesday, November 12 2025

Duty Station:
Nairobi | Nairobi | Kenya

Summary
Date Posted: Tuesday, November 4 2025, Base Salary: Not Disclosed

Similar Jobs in Kenya
Learn more about PYCS
PYCS jobs in Kenya

JOB DETAILS:

Key Roles and Responsibilities

  • Establish and manage the company’s security processes, including policies, tools, workflows, and documentation.
  • Monitor all applications and systems daily to identify and respond to potential threats or unusual activity.
  • Monitor, manage, and update the SIEM system to detect and respond to security threats. This includes setting up alerts, reviewing logs, investigating incidents, and ensuring all key systems are sending data to the SIEM.
  • Maintain access control mechanisms including user provisioning, de-provisioning, and role-based access
  • Handle all reported security issues-investigate, resolve, and ensure proper communication and follow-up within the SLA.
  • Develop clear security playbooks and procedures for incident response, access control, and reporting.
  • Conduct regular system and application checks to identify vulnerabilities and work with the team to resolve them.
  • Identify and mitigate security vulnerabilities in coordination with relevant teams.
  • Ensure compliance with relevant standards and regulations, including PCI DSS, ISO 27001, GDPR, CBK guidelines, and others as required.
  • Maintain detailed records of incidents, and actions taken, and prepare periodic security reports for management.
  • Manage access rights across systems,ensure proper permissions, regular reviews, and timely updates.
  • Support the implementation of encryption and secure communication protocols to ensure the security of data in transit.
  • Support client and auditor requests related to security by providing clear responses and documentation.
  • Train staff on basic security practices and ensure team members follow the company’s security policies.
  • Actively support employee onboarding by leading training sessions on relevant topics and providing departmental introductions to new hires.
  • Stay updated on evolving security threats, tools, and regulatory changes, and ensure internal practices are updated accordingly.
  • Support access control management within infrastructure environments, ensuring appropriate permissions are granted and reviewed periodically.
  • Participate in daily stand-ups, planning meetings, and retrospectives to learn agile development rhythms.
  • Perform any other duties as required to support the business in response to evolving needs, changes, and growth.

Qualifications

  • Bachelor's or Master’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • At least 4 years of experience in information security, cybersecurity, or IT risk management.
  • Knowledge of firewalls, intrusion detection systems, SIEM, and antivirus software.
  • Experience with security frameworks (ISO 27001, NIST, CIS Controls, etc.).
  • Familiarity with network security, penetration testing, and incident response.
  • Strong understanding of cloud security (AWS, Azure, GCP).
  • Certifications such as CISSP, CISM, CEH, or CompTIA Security+ (preferred).
  • Excellent problem-solving, analytical, and communication skills.

 

Work Hours: 8

Experience in Months: 48

Level of Education: bachelor degree

Job application procedure

Interested and qualified? Click here to apply

 

All Jobs | QUICK ALERT SUBSCRIPTION

Job Info
Job Category: Security, Homeland Security jobs in Kenya
Job Type: Full-time
Deadline of this Job: Wednesday, November 12 2025
Duty Station: Nairobi | Nairobi | Kenya
Posted: 04-11-2025
No of Jobs: 1
Start Publishing: 04-11-2025
Stop Publishing (Put date of 2030): 10-10-2076
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.