Cyber Security Administrator (Operations) job at Kenya Airways
New
Website :
Today
Linkedid Twitter Share on facebook
Cyber Security Administrator (Operations)
2026-09-21T15:38:55+00:00
Kenya Airways
https://cdn.greatkenyanjobs.com/jsjobsdata/data/employer/comp_10763/logo/kuy.png
FULL_TIME
Nairobi
Nairobi
00100
Kenya
Public Administration, and Government
Computer & IT, Science & Engineering, Protective Services, Transportation & Logistics, Aerospace
KES
MONTH
2026-10-03T17:00:00+00:00
8

Background information about the job or company (e.g., role context, company overview)

Kenya Airways, the leading African airline flying to more African destinations than any other carrier, takes pride in being at the forefront of connecting Africa to the world and the World to Africa through its hub Nairobi Jomo Kenyatta International Airport.

Purpose

The Cyber Security Administrator is responsible for safeguarding Kenya Airways' information systems, digital assets, and supporting infrastructure through offensive security operations primarily conducting penetration testing, red team simulations, adversary emulation, and vulnerability assessments to proactively identify and exploit weaknesses before malicious actors do. The role demands a hands-on, attacker-minded professional who can think creatively, adapt to evolving threat landscapes, and translate complex technical findings into clear, actionable remediation guidance that strengthens the organization's overall security posture.

Responsibilities or duties

Qualifications or requirements (e.g., education, skills)

Experience needed

Any other provided details (e.g., benefits, work environment, team info, or additional notes)

  • Identify, assess, and manage cybersecurity risks through defensive analysis and offensive testing. This includes evaluating both internal and external threats and vulnerabilities.
  • Develop risk mitigation strategies informed by threat monitoring and incident analysis, prioritizing security investments to protect critical assets against evolving threats.
  • Develop and implement the system-wide Information Security function of the information security program to ensure information security risks are identified and monitored.
  • Continuously identify, assess, and monitor information security risks across the organization and escalating emerging threats to inform defensive priorities.
  • Collaborate with developers, Systems engineers, database engineers, security engineers, project managers, cybersecurity administrators and SOC analysts.
  • Implement and fine tune security monitoring solutions, including SIEM (Security Information and Event Management) systems, to detect and respond to security incidents.
  • Collaborate with internal teams to investigate and mitigate security breaches.
  • Triage, investigate, contain, eradicate, and recover from security incidents while coordinating with internal teams and external partners as required.
  • Lead incident investigations using data-driven analysis, coordinate response efforts, and implement corrective actions to prevent recurrence
  • Maintain and continuously improve incident response plans and playbooks for common attack scenarios.
  • Consume and operationalize threat intelligence feeds and adversary TTPs to proactively update detection rules, block emerging IOCs, and inform defensive priorities.
  • Deploy and maintain SOAR workflows to automate alert triage, enrichment, and routine response tasks reducing response times and analyst fatigue.
  • Oversee the deployment, configuration, and maintenance of security technologies, including EDR/XDR and encryption solutions among others.
  • Ensure all defensive systems are patched, updated, and operating at optimal performance with high availability.
  • Assist in executing vulnerability assessments, penetration tests, and adversary emulation exercises mapped to the MITRE ATT&CK framework to validate and stress-test defensive controls.
  • Collaborate with SOC analysts in purple team exercises and translate offensive findings into actionable defensive improvements.
  • Work with Internal Audit and External Audit consultants as appropriate on required security assessments and audits
  • Ensure all projects and systems are subjected to security checks to avert possible security threats pre and post go-live
  • Respond promptly to all system and network security breaches, ensuring containment, eradication, and recovery in line with documented procedures.
  • Implement automation (SOAR) within the organization to enable efficient alert triage, incident response workflows, and routine security operations.
  • Evaluate the organization's security needs and establish defensive best practices, hardening baselines, and configuration standards accordingly.
  • Ensure the organization's data and infrastructure are protected through layered, defense-in-depth security controls across network, endpoint, application, and data layers.
  • Assess the organization's security posture through continuous monitoring, vulnerability scanning, and control validation.
  • Investigate breaches and incidents, conduct root cause analysis, and implement improvements to create ever more robust defensive protocols.
  • Excellent communication, interpersonal & problem-solving skills with the ability to work confidently on high-priority problems.
  • Strong analytical and critical-thinking skills with an attacker's mindset.
  • Ability to handle pressure and difficult situations with resilience, calmly and effectively.
  • Must be a person of unquestionable integrity.
  • Self-motivated with a passion for continuous learning in cybersecurity.
  • Strong ethical standards and commitment to responsible disclosure practices.
  • Bachelor’s degree in information technology or another related field
  • 3+ years of advanced IT skills with high level of information security experience and expertise (hands-on experience in defensive cybersecurity operations).
  • Proven hands-on experience in security monitoring, incident detection and response, and vulnerability management.
  • Proficiency with SIEM platforms and experience with vulnerability scanning and management tools
  • Experience in penetration testing, ethical hacking, and vulnerability assessments
  • Familiarity with security auditing processes
  • Well versed with Linux commands, scripting as well as windows security controls adoption
  • Ability to set up systems to identify intrusions, configuring these to suit the needs of the organization
  • Strong knowledge of networking protocols and common attack vectors.
  • Experience performing information security audits or risk assessments
  • Industry certifications highly preferred: CEH, CDSA CISSP, SSCP or equivalent defensive and offensive security certifications.
  • Knowledge of securing network technologies, applications, and operating systems.
  • Experience responding to, analyzing, and communicating information security incidents and performing forensic
  • Excellent interpersonal, communication, and presentation skills, including formal report writing experience
  • Understanding of common security standards and regulations relating to a higher education environment (e.g., PCI DSS, NIST, ISO27001, GDPR, IOSA etc.)
  • Capable of enforcing security best practices in line with the National Institute of Standards and Technology.
bachelor degree
12
JOB-6ab14f8fa36ff

Vacancy title:
Cyber Security Administrator (Operations)

[Type: FULL_TIME, Industry: Public Administration, and Government, Category: Computer & IT, Science & Engineering, Protective Services, Transportation & Logistics, Aerospace]

Jobs at:
Kenya Airways

Deadline of this Job:
Saturday, October 3 2026

Duty Station:
Nairobi | Nairobi

Summary
Date Posted: Monday, September 21 2026, Base Salary: Not Disclosed

Similar Jobs in Kenya
Learn more about Kenya Airways
Kenya Airways jobs in Kenya

JOB DETAILS:

Background information about the job or company (e.g., role context, company overview)

Kenya Airways, the leading African airline flying to more African destinations than any other carrier, takes pride in being at the forefront of connecting Africa to the world and the World to Africa through its hub Nairobi Jomo Kenyatta International Airport.

Purpose

The Cyber Security Administrator is responsible for safeguarding Kenya Airways' information systems, digital assets, and supporting infrastructure through offensive security operations primarily conducting penetration testing, red team simulations, adversary emulation, and vulnerability assessments to proactively identify and exploit weaknesses before malicious actors do. The role demands a hands-on, attacker-minded professional who can think creatively, adapt to evolving threat landscapes, and translate complex technical findings into clear, actionable remediation guidance that strengthens the organization's overall security posture.

Responsibilities or duties

Qualifications or requirements (e.g., education, skills)

Experience needed

Any other provided details (e.g., benefits, work environment, team info, or additional notes)

Work Hours: 8

Experience in Months: 12

Level of Education: bachelor degree

Job application procedure

Click Here to Apply Now

All Jobs | QUICK ALERT SUBSCRIPTION

Job Info
Job Category: Computer/ IT jobs in Kenya
Job Type: Full-time
Deadline of this Job: Saturday, October 3 2026
Duty Station: Nairobi | Nairobi
Posted: 21-09-2026
No of Jobs: 1
Start Publishing: 21-09-2026
Stop Publishing (Put date of 2030): 10-10-2076
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.