ICT Risk Officer
2026-04-20T20:42:14+00:00
United Bank for Africa (UBA) Kenya
https://cdn.greatkenyanjobs.com/jsjobsdata/data/employer/comp_8161/logo/uba.jpeg
https://www.ubakenya.com/
FULL_TIME
Nairobi
Nairobi
00100
Kenya
Financial Services
Computer & IT, Management, Business Operations
2026-05-08T17:00:00+00:00
8
Background
United Bank for Africa (UBA) PLC is a leading pan-African financial services institution with a global footprint. We have a clear purpose to be a role model for African businesses by creating superior value for all our stakeholders.
JOB OBJECTIVE(S)
The IT Security Manager is responsible for developing, implementing, and managing the bank’s information security strategy to protect systems, networks, and data. The role ensures alignment with the bank’s risk management framework, regulatory requirements, industry and group best practices.
INFORMATION SECURITY STRATEGY & GOVERNANCE
- Develop and implement the bank’s information security strategy aligned with enterprise risk management.
- Establish security policies, standards, and procedures.
- Ensure compliance with regulatory requirements (e.g., central bank regulations, data protection laws).
- Report on security posture and risks to senior management and risk committees.
RISK MANAGEMENT
- Identify, assess, and mitigate IT and cybersecurity risks.
- Conduct regular risk assessments and vulnerability analyses.
- Integrate IT security into the bank’s overall risk management framework.
- Maintain risk registers and track remediation action
SECURITY OPERATIONS & INCIDENT MANAGEMENT
- Oversee security operations including monitoring, detection, and response.
- Lead incident response and investigation of security breaches.
- Ensure timely resolution and reporting of incidents.
- Coordinate disaster recovery and business continuity planning.
COMPLIANCE & AUDIT
- Ensure compliance with standards such as ISO 27001, PCI DSS, and regulatory guidelines.
- Coordinate internal and external security audits.
- Address audit findings and implement corrective actions
SECURITY ARCHITECTURE & CONTROLS
- Design and implement secure IT infrastructure and systems.
- Manage identity and access management (IAM), encryption, and network security controls.
- Oversee third-party/vendor security risk management
AWARENESS & TRAINING
- Promote security awareness across the bank.
- Conduct training programs on cybersecurity best practices.
- Foster a culture of security and risk awareness.
KEY PERFORMANCE INDICATORS
- Reduction in security incidents and vulnerabilities.
- Compliance audit results and regulatory adherence.
- Incident response time and resolution effectiveness.
- Risk mitigation effectiveness.
- User awareness and training completion rates.
JOB REQUIREMENTS
Education:
- Bachelor’s degree in Information Technology, Cybersecurity, or related field.
- Master’s degree is an added advantage.
- Professional certifications such as:
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CRISC (Certified in Risk and Information Systems Control).
Experience:
- Minimum 5–10 years of experience in IT security, preferably in banking or financial services.
- Experience in risk management and regulatory compliance.
KEY COMPETENCY REQUIREMENTS
- Strong knowledge of cybersecurity frameworks and standards.
- Risk assessment and analytical skills.
- Leadership and stakeholder management.
- Incident response and crisis management.
- Excellent communication and reporting skills.
- High integrity and attention to detail.
- Develop and implement the bank’s information security strategy aligned with enterprise risk management.
- Establish security policies, standards, and procedures.
- Ensure compliance with regulatory requirements (e.g., central bank regulations, data protection laws).
- Report on security posture and risks to senior management and risk committees.
- Identify, assess, and mitigate IT and cybersecurity risks.
- Conduct regular risk assessments and vulnerability analyses.
- Integrate IT security into the bank’s overall risk management framework.
- Maintain risk registers and track remediation action
- Oversee security operations including monitoring, detection, and response.
- Lead incident response and investigation of security breaches.
- Ensure timely resolution and reporting of incidents.
- Coordinate disaster recovery and business continuity planning.
- Ensure compliance with standards such as ISO 27001, PCI DSS, and regulatory guidelines.
- Coordinate internal and external security audits.
- Address audit findings and implement corrective actions
- Design and implement secure IT infrastructure and systems.
- Manage identity and access management (IAM), encryption, and network security controls.
- Oversee third-party/vendor security risk management
- Promote security awareness across the bank.
- Conduct training programs on cybersecurity best practices.
- Foster a culture of security and risk awareness.
- Strong knowledge of cybersecurity frameworks and standards.
- Risk assessment and analytical skills.
- Leadership and stakeholder management.
- Incident response and crisis management.
- Excellent communication and reporting skills.
- High integrity and attention to detail.
- Bachelor’s degree in Information Technology, Cybersecurity, or related field.
- Master’s degree is an added advantage.
- Professional certifications such as:
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CRISC (Certified in Risk and Information Systems Control).
JOB-69e68fa6123d7
Vacancy title:
ICT Risk Officer
[Type: FULL_TIME, Industry: Financial Services, Category: Computer & IT, Management, Business Operations]
Jobs at:
United Bank for Africa (UBA) Kenya
Deadline of this Job:
Friday, May 8 2026
Duty Station:
Nairobi | Nairobi
Summary
Date Posted: Monday, April 20 2026, Base Salary: Not Disclosed
Similar Jobs in Kenya
Learn more about United Bank for Africa (UBA) Kenya
United Bank for Africa (UBA) Kenya jobs in Kenya
JOB DETAILS:
Background
United Bank for Africa (UBA) PLC is a leading pan-African financial services institution with a global footprint. We have a clear purpose to be a role model for African businesses by creating superior value for all our stakeholders.
JOB OBJECTIVE(S)
The IT Security Manager is responsible for developing, implementing, and managing the bank’s information security strategy to protect systems, networks, and data. The role ensures alignment with the bank’s risk management framework, regulatory requirements, industry and group best practices.
INFORMATION SECURITY STRATEGY & GOVERNANCE
- Develop and implement the bank’s information security strategy aligned with enterprise risk management.
- Establish security policies, standards, and procedures.
- Ensure compliance with regulatory requirements (e.g., central bank regulations, data protection laws).
- Report on security posture and risks to senior management and risk committees.
RISK MANAGEMENT
- Identify, assess, and mitigate IT and cybersecurity risks.
- Conduct regular risk assessments and vulnerability analyses.
- Integrate IT security into the bank’s overall risk management framework.
- Maintain risk registers and track remediation action
SECURITY OPERATIONS & INCIDENT MANAGEMENT
- Oversee security operations including monitoring, detection, and response.
- Lead incident response and investigation of security breaches.
- Ensure timely resolution and reporting of incidents.
- Coordinate disaster recovery and business continuity planning.
COMPLIANCE & AUDIT
- Ensure compliance with standards such as ISO 27001, PCI DSS, and regulatory guidelines.
- Coordinate internal and external security audits.
- Address audit findings and implement corrective actions
SECURITY ARCHITECTURE & CONTROLS
- Design and implement secure IT infrastructure and systems.
- Manage identity and access management (IAM), encryption, and network security controls.
- Oversee third-party/vendor security risk management
AWARENESS & TRAINING
- Promote security awareness across the bank.
- Conduct training programs on cybersecurity best practices.
- Foster a culture of security and risk awareness.
KEY PERFORMANCE INDICATORS
- Reduction in security incidents and vulnerabilities.
- Compliance audit results and regulatory adherence.
- Incident response time and resolution effectiveness.
- Risk mitigation effectiveness.
- User awareness and training completion rates.
JOB REQUIREMENTS
Education:
- Bachelor’s degree in Information Technology, Cybersecurity, or related field.
- Master’s degree is an added advantage.
- Professional certifications such as:
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CRISC (Certified in Risk and Information Systems Control).
Experience:
- Minimum 5–10 years of experience in IT security, preferably in banking or financial services.
- Experience in risk management and regulatory compliance.
KEY COMPETENCY REQUIREMENTS
- Strong knowledge of cybersecurity frameworks and standards.
- Risk assessment and analytical skills.
- Leadership and stakeholder management.
- Incident response and crisis management.
- Excellent communication and reporting skills.
- High integrity and attention to detail.
Work Hours: 8
Experience in Months: 60
Level of Education: bachelor degree
Job application procedure
Application Link:Click Here to Apply Now
All Jobs | QUICK ALERT SUBSCRIPTION