Cyber Security Officer at

2 weeks ago


Nairobi, Nairobi Area, Kenya United Nations Full time
The United Nations is an intergovernmental organization to promote international co-operation. A replacement for the ineffective League of Nations, the organization was established on 24 October 1945

Responsibilities
Within limits of delegated authority, the Cyber Security Officer will be responsible for the following duties:

Design, implement, and monitor cyber security systems of controls in place to ensure that the Organization complies with applicable UN internal regulatory and compliance requirements.

Provide guidance on designing, implementing, auditing, and conducting compliance testing activities to ensure adherence to cyber security compliance requirements.

Provide guidance in the design and implementation of applicable cyber security frameworks, and ensure its policies, processes, procedures, and controls are appropriately mapped to relevant UN internal regulatory and compliance requirements.

Continuously assess the efficiency and effectiveness of control systems, recommend necessary remediations and propose steps for improvements to ensure ongoing compliance.

Develop the organisation's vulnerability management strategy.

Develop procedures for the organisation on patch and vulnerability management, including automated patch deployment, assessment procedures, and procedures for remediation.

Coordinate with appropriate teams to ensure prioritization of patching and mitigations to vulnerabilities.

Contribute to the development of the organisation's cyber security strategy, policy, and procedures in consultation with senior management and legal team, as necessary.

Provide guidance in the discussions regarding existing initiatives from security, compliance, and risk perspectives.

Routinely monitor and validate information security controls to ensure compliance with mandatory requirements, identify irregularities, risks, and potential weaknesses, and use this insight to develop and implement best practices and process improvements for the organisation's information systems.

Develop monitoring methods to track and evaluate compliance efforts, e.g., dashboards.

Participate in review of the cyber security programmes in collaboration with risk and governance and provide advice to ensure their alignment with organisational requirements.

Provide security guidance and advice to users and ICT specialists to ensure the cyber security of the organisation and achieve compliance.

Coordinate with external security auditors and penetration testers to verify security of information systems and to identify and remedy vulnerabilities.

Act as the main focal point for the coordination of required activities to address security vulnerabilities.
Prepare concise reports based on penetration test outcomes to communicate remediation recommendations to relevant stakeholders.
Train staff on security processes and procedures and actively participate in the security response process.
Monitor compliance of identity and access management (IAM) with access control policy and relevant technical procedures.

Keep abreast of the current and emerging security issues, risks, threats, vulnerabilities, and advancements in cyber security techniques and technologies.

Requirements
Competencies

PROFESSIONALISM:
Knowledge in cyber security management controls including cyber security policies, standards, and processes. Knowledge of cyber security industry standards, methodologies and frameworks, and ability to adapt and integrate subsequent changes. Knowledge of current and emerging cyber security threat landscape, attack methodologies, tools, technologies, and mitigation / remediation methods. Skill in designing and implementing a cyber security strategy. Analytical thinking skills. Ability to design and implement risk management processes.

Takes responsibility for incorporating gender perspectives and ensuring the equal participation of women and men in all areas of work.

Shows pride in work and in achievements; Demonstrates professional competence and mastery of subject matter; Is conscientious and efficient in meeting commitments, observing deadlines, and achieving results; Is motivated by professional rather than personal concerns; Shows persistence when faced with difficult problems or challenges; Remains calm in stressful situations.


PLANNING AND ORGANIZING:
Develops clear goals that are consistent with agreed strategies. Identifies priority activities and assignments; Adjusts priorities as required. Allocates appropriate amount of time and resources for completing work. Foresees risks and allows for contingencies when planning. Monitors and adjusts plans and actions as necessary. Uses time efficiently.

CLIENT ORIENTATION:

Considers all those to whom services are provided to be "clients" and seeks to see things from clients' point of view.

Establishes and maintains productive partnerships with clients by gaining their trust and respect. Identifies clients' needs and matches them to appropriate solutions. Monitors ongoing developments inside and outside the clients' environment to keep informed and anticipate problems. Keeps clients informed of progress or setbacks in projects. Meets timeline for delivery of products or services to client.

Education

Advanced university degree (Master's degree or equivalent degree) in computer science, information systems, mathematics, statistics, information security, cyber security, or a related field.

A first-level university degree in combination with two additional years of qualifying experience may be accepted in lieu of the advanced university degree.

Successful completion of both degree and non-degree programs in data analytics, business analytics or data science programs is desirable.

Job - Specific Qualification

An active certificate in Information Security (e.g., CISM, CISSP) or equivalent is desirable and may be accepted as substantiation of candidates' proficiency in the requisite knowledge, skills, and abilities for this position.

Work Experience

A minimum of seven years of progressively responsible experience using knowledge and skills indicated below with the phrase is required should be evident in the employment details in the application.

Use of knowledge in cyber management control including cyber security policies, standards and processes are required.

Use of knowledge of cyber security industry standards, methodology and frameworks, and ability to adapt and integrate subsequent changes is required.

Use of skill in designing and implementing a cyber security strategy is desirable. 1 year or more of experience in data analytics or related area is desirable.

Languages

English and French are the working languages of the United Nations Secretariat. For the position advertised, fluency in English is required. Knowledge of another official United Nations language is desirable.

NOTE:
"fluency equals a rating of "fluent" in all four areas (read, write, speak, understand) and " Knowledge of" equals a rating of " confident" in two of the four areas.

  • Nairobi, Nairobi Area, Kenya Frank Management Consult Ltd Full time

    Frank Management Consult Ltd is an international management consulting agency. We work with major companies, raising their performance, driving their strategies and enhancing their productivity.SummmaryThe Cyber Security Analyst will be primarily responsible for the design, implementation, management, and operations of security controls and systems to...

  • Cyber Security Job

    1 month ago


    Nairobi, Nairobi Area, Kenya Staffrite Full time

    IT Jobs In Kenya.Position OverviewThe role holder will help protect the operating systems that keep a business functioning. The person has the training needed to evaluate security solutions, set security policies, and help the business respond to phishing, malware, breaches, and other security incidents. He/She is a key player in establishing cybersecurity...


  • Nairobi, Nairobi Area, Kenya SBM Bank Full time

    SBM Bank Kenya is a leading and trusted financial institution with an international footprint, headquartered in Mauritius and positioned to offer an unprecedented banking experience in Kenya to niche Retail, SME and corporate clientsJOB SUMMARY:Senior Officer, Information Security (Endpoint Security) is responsible for safeguarding the organization's...

  • Security Officer

    1 month ago


    Nairobi, Nairobi Area, Kenya Kenya Pipeline Company (KPC) Limited Full time

    The Kenya Pipeline Company Limited is a State Corporation established on 6th September, 1973 under the Companies Act (CAP 486) of the Laws of Kenya and started commercial operations in 1978. The Company is 100% owned by the Government and complies with the provisions of the State Corporations Act (Cap 446) of 1986.Responsibilities Carry out patrols and...


  • Nairobi, Nairobi Area, Kenya Equity Bank Kenya Full time

    ABOUT THE COMPANYEquity Bank Kenya Limited, is a financial services provider headquartered in Nairobi, Kenya. It is licensed as a commercial bank, by the Central Bank of Kenya, the central bank and national banking regulator.JOB SUMMARYQualifications Knowledge and Experience:A Degree or its equivalent in Information Technology, Network Security, Enterprise...


  • Nairobi, Nairobi Area, Kenya Equity Bank Kenya Full time

    Equity Bank Limited (The "Bank") is incorporated, registered under the Kenyan Companies Act Cap 486 and domiciled in Kenya. The address of the Bank's registered office is 9th Floor, Equity Centre, P.O. Box Nairobi.Job Purpose:The Lead, Security technology specialist provides a demonstrated holistic mastery and in-depth understanding of existing and emerging...


  • Nairobi, Nairobi Area, Kenya United Nations Office at Nairobi UNON Full time

    ResponsibilitiesProvides substantive inputs in the designing of the physical security environment and the UN's security and operational responses. Using analytical techniques and collaborative team research, supports planning and ensure awareness of the current trends to enhance or adjust security programmes. Maintains continuing lines of communication with...


  • Nairobi, Nairobi Area, Kenya CIC Insurance Full time

    PURPOSE:Responsible for ensuring CIC Network LAN & WAN connectivity to all our Branches and Regional Offices and protecting the computer systems, networks, and data against security breaches, unauthorized access, and cyber threats.PRIMARY RESPONSIBILITIES:Design, implement, and manage network security infrastructure, including firewalls, VPNs Virtual Private...


  • Nairobi, Nairobi Area, Kenya Corporate Staffing Services Full time

    Engineering jobs. Purpose:Responsible for ensuring CIC Network (LAN & WAN) connectivity to all our Branches and Regional Offices and protecting the computer systems, networks, and data against security breaches, unauthorized access, and cyber threats.Primary Responsibilities:Design, implement, and manage network security infrastructure, including firewalls,...


  • Nairobi, Nairobi Area, Kenya Kenya Power Full time

    Kenya Power owns and operates most of the electricity transmission and distribution system in the country and sells electricity to over 4.8 million customers (as at June 29, The Company's key mandate is to plan for sufficient electricity generation and transmission capacity to meet demand; building and maintaining the power distribution and transmission...


  • Nairobi, Nairobi Area, Kenya NCBA Full time

    ABOUT THE COMPANYThe new NCBA has harnessed the power of both NIC and CBA to create a bank that brings together the best of both worlds — from cutting edge mobile banking to good old-fashioned relationship management; from scalable business banking to financial services that grow as your business does; from best-in-class choice of products to investment...

  • IT Support Manager

    4 weeks ago


    Nairobi, Nairobi Area, Kenya West Indian Ocean Cable Company ( WIOCC) Full time

    JOB SUMMARYMinimum Qualifications:computer science / engineering or equivalent from a recognized universityCloud Technical certifications in Microsoft 365, Mimecast or OthersProfessional certifications in IT Security (CISSP, CCSP, CISA, CISM) is essential.Experience & Skills:Requires minimum of 5 year's technical experience in telecom industry at least 3...


  • Nairobi, Nairobi Area, Kenya Refugee Consortium of Kenya Full time

    JOB PURPOSE:The Administration and security Officer shall coordinate security and provide coordination of logistics including travel and administration. The role will also support/assist in ensuring the smooth functioning of day-to-day operations across various functions, with a focus on HR, Finance, Admin, Safety and Culture. The Administration and Security...


  • Nairobi, Nairobi Area, Kenya International Organization for Migration Full time

    ABOUT THE COMPANYEstablished in 1951, IOM is the leading inter-governmental organization in the field of migration and works closely with governmental, intergovernmental and non-governmental partners.With 162 member states, a further 9 states holding observer status and offices in over 100 countries, IOM is dedicated to promoting humane and orderly migration...

  • Senior Manager

    1 month ago


    Nairobi, Nairobi Area, Kenya KCB Bank Kenya Full time

    Kenya Commercial Bank Limited is registered as a non-operating holding company which started operations as a licensed banking institution with effect from January 1, 2016. The holding company oversees KCB Kenya - incorporated with effect from January 1, and all KCB's regional units in Uganda, Tanzania, Rwanda, Burundi, Ethiopia and South SudanKEY...


  • Nairobi, Nairobi Area, Kenya Kenya Pipeline Company (KPC) Limited Full time

    The Kenya Pipeline Company Limited is a State Corporation established on 6th September, 1973 under the Companies Act (CAP 486) of the Laws of Kenya and started commercial operations in 1978. The Company is 100% owned by the Government and complies with the provisions of the State Corporations Act (Cap 446) of 1986.Responsibilities Develop, implement, and...


  • Nairobi, Nairobi Area, Kenya Safaricom Kenya Full time

    Safaricom is the leading provider of converged communication solutions in Kenya. In addition to providing a broad range of first-class products and services for Telephony, Broadband Internet and Financial services, Safaricom seeks to uplift the welfare of Kenyans through value-added services and support for community projects.SUMMARYWe are pleased to...


  • Nairobi, Nairobi Area, Kenya Inkomoko Full time

    Inkomoko's vision is an Africa with thriving communities where young people and refugees are engaged, communities have access to relevant innovations for self-determination, and where African solutions are unleashed to solve African problemsAbout the OpportunityThe Senior Information Security Officer (SISO) will be responsible for ensuring the security and...


  • Nairobi, Nairobi Area, Kenya KCB Bank Kenya Full time

    Kenya Commercial Bank Limited is registered as a non-operating holding company which started operations as a licensed banking institution with effect from January 1, 2016. The holding company oversees KCB Kenya - incorporated with effect from January 1, and all KCB's regional units in Uganda, Tanzania, Rwanda, Burundi, Ethiopia and South Sudan.Key...


  • Nairobi, Nairobi Area, Kenya Aminika Manpower Limited Full time

    Aminika Manpower Limited is a competency-based strategic HR-consultancy. Aminika Manpower Limited (AML) is a knowledge-driven organization committed to achieving excellence in Human Capital & Business Coaching in both virtual and real circumstances.Role Summary :To oversee and manage the security operations within the hospital premises, ensuring the safety...