Senior Information Security Officer

3 weeks ago


Nairobi, Nairobi Area, Kenya Inkomoko Full time
Inkomoko's vision is an Africa with thriving communities where young people and refugees are engaged, communities have access to relevant innovations for self-determination, and where African solutions are unleashed to solve African problems

About the Opportunity

The Senior Information Security Officer (SISO) will be responsible for ensuring the security and integrity of an organization's information and technology systems.

The Senior Information Security Officer plays a crucial role in safeguarding an organization's information assets and ensuring the confidentiality, integrity, and availability of sensitive data.


The successful candidate will be reporting to the IT Director with a dotted line to the Senior IT Infrastructure and Systems Administrator.

Responsibilities

Information Security Strategy and Governance:
Develop and implement an organization-wide information security strategy aligned with business objectives.
Establish and maintain information security policies, standards, and procedures.
Provide guidance and direction to senior management on information security matters.
Chair the Information Security Steering Committee or equivalent governance body.

Risk Management and Compliance:
Identify, assess, and prioritize information security risks.
Develop and implement risk mitigation strategies and controls.
Ensure compliance with relevant laws, regulations, and industry standards (e.g., Local DPA, GDPR, ISO 27001, SOC1 & SOC2).
Conduct regular security assessments and audits to assess compliance and identify areas for improvement.

Security Operations:
Oversee the operation of security controls and technologies, including firewalls, intrusion detection/prevention systems, and endpoint protection.
Monitor and analyze security alerts and incidents, leading incident response and investigation efforts.
Coordinate with internal teams and external partners to remediate security vulnerabilities and threats.

Security Awareness and Training:
Develop and deliver information security awareness programs for employees, contractors, and third-party vendors.
Provide training on security policies, procedures, and best practices to promote a culture of security awareness and compliance.

Security Architecture and Engineering:
Collaborate with IT teams to design and implement secure systems and networks.
Review and approve system architecture and design changes to ensure alignment with security requirements.
Evaluate and recommend security technologies and solutions to enhance the organization's security posture.

Incident Response and Business Continuity:
Develop and maintain an incident response plan and business continuity/disaster recovery plan.
Lead the response to security incidents, coordinating with internal teams and external stakeholders.
Conduct post-incident reviews and implement lessons learned to improve incident response capabilities.

Vendor and Third-Party Risk Management:
Assess and manage security risks associated with third-party vendors and service providers.
Establish security requirements for vendor contracts and agreements.
Monitor vendor compliance with security requirements and conduct periodic reviews and audits.

Other IT Infrastructure Duties:

The role holder should expect to support any other IT duties as allocated by the IT Director and the Sr IT Infrastructure and System Admin.


Continuous Improvement:
Monitor the effectiveness of security controls and processes and recommend improvements.
Stay informed about the evolving threat landscape and adjust security strategies accordingly.

Requirements
Minimum Qualifications

Bachelor's degree in Computer Science, Information Security, or a related field. Advanced degree and professional certification (CompTia S+, CISSP, CISM, CISA, CISO) is preferred.
5-7 years of experience in information security, with a proven track record of progressively increasing responsibility and leadership.
In-depth knowledge of information security principles, practices, technologies, and standards.

Strong understanding of regulatory requirements and industry best practices related to information security (e.g., Local DPA, GDPR, ISO 27001, SOC1 & SOC2).

Proficiency in security tools and technologies such as firewalls, intrusion detection/prevention systems (IDS/IPS), endpoint protection, encryption, SIEM (Security Information and Event Management), and DLP (Data Loss Prevention) solutions.

Strong knowledge of emerging cybersecurity threats and trends.
Experience leading incident response and managing security incidents.
Excellent communication and interpersonal skills, with the ability to effectively communicate complex security concepts to non-technical stakeholders.
Strong analytical and problem-solving skills, with the ability to analyze security risks and develop effective risk mitigation strategies.
Ability to work collaboratively with cross-functional teams and external partners to achieve common security objectives.

What You'll Get

This role is inside a high-growth, mission-driven social enterprise

By joining, you'll access:
Competitive salary, and potential Goal-based bonus
Incredible company culture, including deep investment in your learning and growth
Diverse colleagues and policies that show our commitment to equity and inclusion
Talented, passionate, and committed team colleagues across the region
Ability to make a significant social impact to your community
Generous health insurance, staff savings, parental leave, sabbatical, and more benefits.

  • Nairobi, Nairobi Area, Kenya Refugee Consortium of Kenya Full time

    JOB PURPOSE:The Administration and security Officer shall coordinate security and provide coordination of logistics including travel and administration. The role will also support/assist in ensuring the smooth functioning of day-to-day operations across various functions, with a focus on HR, Finance, Admin, Safety and Culture. The Administration and Security...


  • Nairobi, Nairobi Area, Kenya Technical University of Mombasa Full time

    A university of global excellence in advancing Knowledge, science and Technology. To provide leadership and outstanding programmes by engaging in scholarly reflection, cultivating critical thinking and advancing creative problem-solving skills in the fields of engineering, the sciences, business and related areas that benefit society.Reporting To: Chief...


  • Nairobi, Nairobi Area, Kenya M-KOPA Solar Full time

    M-KOPA's mission is to make high quality energy affordable to everyone. OUR GROWTH SO FAR... M-KOPA has connected more than 400,000 homes in Kenya,Tanzania and Uganda to solar power with over 550 new homes being added every day.SummaryAs an Associate Engineer, you will be monitoring and detecting security incidents, responding to them, and implementing and...


  • Nairobi, Nairobi Area, Kenya Kenya Power Full time

    Kenya Power owns and operates most of the electricity transmission and distribution system in the country and sells electricity to over 4.8 million customers (as at June 29, The Company's key mandate is to plan for sufficient electricity generation and transmission capacity to meet demand; building and maintaining the power distribution and transmission...


  • Nairobi, Nairobi Area, Kenya United Nations Full time

    The United Nations is an intergovernmental organization to promote international co-operation. A replacement for the ineffective League of Nations, the organization was established on 24 October 1945ResponsibilitiesWithin limits of delegated authority, the Cyber Security Officer will be responsible for the following duties: Design, implement, and monitor...

  • Security Officer

    4 weeks ago


    Nairobi, Nairobi Area, Kenya Kenya Pipeline Company (KPC) Limited Full time

    The Kenya Pipeline Company Limited is a State Corporation established on 6th September, 1973 under the Companies Act (CAP 486) of the Laws of Kenya and started commercial operations in 1978. The Company is 100% owned by the Government and complies with the provisions of the State Corporations Act (Cap 446) of 1986.Responsibilities Carry out patrols and...


  • Nairobi, Nairobi Area, Kenya Kenya Pipeline Company (KPC) Limited Full time

    The Kenya Pipeline Company Limited is a State Corporation established on 6th September, 1973 under the Companies Act (CAP 486) of the Laws of Kenya and started commercial operations in 1978. The Company is 100% owned by the Government and complies with the provisions of the State Corporations Act (Cap 446) of 1986.Responsibilities Develop, implement, and...


  • Nairobi, Nairobi Area, Kenya Nairobi City County Public Service Board Full time

    Our mission is tp provide affordable, accessible and sustainable quality services, enhancing community participation and creating a secure climate for political,social and economic development through the commitment of a motivated and dedicated team.Job Requirement A Bachelor's Degree in Computer Science/Information Technology or any other ICT related...


  • Nairobi, Nairobi Area, Kenya Action Against Hunger Full time

    ABOUT THE COMPANYAction Against Hunger saves lives while building long-term strategies for self-sufficiency.JOB SUMMARYAction Against Hunger Kenya Country Office is looking to fill the position of The Information Management Officer who shall be the reference person for all information systems encompassing data collection, collation, management, and analysis...


  • Nairobi, Nairobi Area, Kenya United Nations Office at Nairobi UNON Full time

    ResponsibilitiesProvides substantive inputs in the designing of the physical security environment and the UN's security and operational responses. Using analytical techniques and collaborative team research, supports planning and ensure awareness of the current trends to enhance or adjust security programmes. Maintains continuing lines of communication with...


  • Nairobi, Nairobi Area, Kenya Kenya Power Full time

    ABOUT THE COMPANYKenya Power owns and operates most of the electricity transmission and distribution system in the country and sells electricity to over 2.6 million customers (as at April The Company's key mandate is to plan for sufficient electricity generation and transmission capacity to meet demand; building and maintaining the power distribution and...

  • Security Manager

    4 weeks ago


    Nairobi, Nairobi Area, Kenya Opticom Kenya Limited Full time

    ABOUT THE COMPANYOpticom Kenya Ltd provides integrated risk management solutions including remotely monitored IP CCTV, Fire Safety, Occupational Health & Safety, Access Control and Building Management Solutions.Opticom is a subsidiary of Optimum Security Ltd incorporated in 1998 in the UK.JOB SUMMARYQualifications, Skills & ExperienceDegree in Security...


  • Nairobi, Nairobi Area, Kenya United Nations Office at Nairobi (UNON) Full time

    United Nations and regional organizations; provides administrative and other support services to the United Nations Environment Programme (UNEP) and the United Nations Human Settlements Programme (UN-Habitat); provides joint and common services to other organizations of the United Nations system in Kenya, as applicable; and manages and implements the...


  • Nairobi, Nairobi Area, Kenya Anti-Counterfeit Agency (ACA) Full time

    ABOUT THE COMPANYThe Anti-Counterfeit Agency was established under the Anti-Counterfeit Act 2008 as a State Corporation with the mandates to enlighten and inform the public on matters relating to counterfeiting, combat counterfeiting, trade and other dealings in counterfeit goods, devise and promote training programs to combat counterfeiting and co-ordinate...


  • Nairobi, Nairobi Area, Kenya Jubilee Insurance KE Full time

    ABOUT THE COMPANYJubilee Insurance was established in August 1937, as the first locally incorporated Insurance Company based in Mombasa in 1937. Jubilee Insurance has spread its sphere of influence throughout the region to become the largest Composite insurer in East Africa, handling Life, Pensions, general and Medical insurance. Today, Jubilee is the number...


  • Nairobi, Nairobi Area, Kenya Habitat for Humanity International Full time

    Habitat for Humanity International, generally referred to as Habitat for Humanity or simply Habitat, is an international, non-governmental, and nonprofit organization, which was founded in 1976.Summary Habitat for Humanity International (HFHI) is looking for a seasoned security professional for the role of Africa Safety and Security Advisor (RSSD) The ASSA...


  • Nairobi, Nairobi Area, Kenya KCB Group Full time

    ABOUT THE COMPANYKCB Bank Group is East and Central Africa's oldest and largest commercial banking and has through its history set new records becoming the No.1 Bank in the region.JOB SUMMARYParticulars Detail Specific Field or QualificationEducationBachelor's Degree BSc. Information Technology /Computer Science / Telecommunications / Engineering...


  • Nairobi, Nairobi Area, Kenya Kenya Institute for Public Policy Research and Analysis (KIPPRA) Full time

    The Kenya Institute for Public Policy Research and Analysis (KIPPRA) is an autonomous public institute that was established in May 1997 through a Legal Notice and commenced operations in June 1999. In January 2007,His Excellency the President signed the KIPPRA Bill into law and the KIPPRA Act No. 15 of 2006 commenced on 1st February 2007.Duties and...


  • Nairobi, Nairobi Area, Kenya Kenya National Examinations Council (KNEC) Full time

    The Kenya National Examinations Council (also referred to as KNEC or the Council) was established in 1980 under the Kenya National Examinations Council Act Cap 225A of the Laws of Kenya. This Act (Cap 225A of 1980) was repealed in 2012 and replaced with KNEC Act No. 29 of 2012.The duties and responsibilities of the officer will entail: Coordinating systems...


  • Nairobi, Nairobi Area, Kenya Agricultural Finance Corporation (AFC) Full time

    ABOUT THE COMPANYThe Agricultural Finance Corporation (AFC), a wholly owned Government Development Finance Institution (DFI), was established in 1963 initially as a subsidiary of the Land and Agricultural Bank. In 1969, it was incorporated as a full – fledged financial institution under the Agricultural Finance Corporation Act, Cap 323 of the laws of...