Information Systems Risk

2 days ago


Nairobi, Nairobi Area, Kenya Absa Group Full time

Empowering Africa's tomorrow, together…one story at a time.
With over 100 years of rich history and strongly positioned as a local bank with regional and international expertise, a career with our family offers the opportunity to be part of this exciting growth journey, to reset our future and shape our destiny as a proudly African group.

My Career Development Portal:
Wherever you are in your career, we are here for you. Design your future. Discover leading-edge guidance, tools and support to unlock your potential. You are Absa. You are possibility.
Job Summary
The Information Systems Risk & Control Lead role exists to proactively manage and strengthen the bank's technology risk posture within the First Line of Defence (FLOD). The role ensures that information systems are secure, resilient, and compliant with internal policies and regulatory requirements. It supports the bank's strategic objectives by identifying and mitigating risks across digital platforms, enhancing cybersecurity oversight, and ensuring the integrity and availability of critical systems and data. This position plays a key role in enabling operational continuity, regulatory compliance, and stakeholder confidence in the bank's technology environment.

The role holder will be responsible for the following:

  • Leading and executing risk-based reviews of core banking systems, applications, and infrastructure to identify control gaps and recommend remediation measures.
  • Overseeing cybersecurity governance, including monitoring emerging threats, managing privileged access, and supporting the implementation of security frameworks and awareness programs.
  • Ensuring data integrity and system reliability by conducting control testing, reviewing system development standards, and assessing infrastructure and backup processes.
  • Supporting business continuity through evaluation and testing of disaster recovery plans and resilience strategies across critical systems.
  • Leveraging audit tools, data analytics, and artificial intelligence to enhance audit coverage, identify emerging risks, and perform targeted investigations.
  • Collaborating with Risk, Audit, Compliance, and IT teams to report findings, align on control expectations, and support remediation planning.
  • Acting as a key FLOD control partner, ensuring that technology risks are identified, assessed, and managed within business operations.

Job Description
Key Accountabilities
Information Systems Risk Reviews & Control Testing - 30%

  • Plan and perform risk-based reviews of information systems across the bank.
  • Conduct general and application control reviews for both simple and complex systems, including core banking platforms and supporting applications.
  • Test the adequacy and effectiveness of system control measures, ensuring alignment with internal standards and regulatory expectations.
  • Review system logs, recertification processes, and system maintenance activities to ensure compliance and detect anomalies.

Cybersecurity/Technology Oversight & Access Governance - 25%

  • Act as the cybersecurity/Technology champion, advising on emerging threats and vulnerabilities.
  • Ensuring access to electronically stored information is secure and risks are appropriately managed.
  • Review and monitor segregation of duties, privileged access management, and identity governance across systems.
  • Support the implementation of cybersecurity frameworks, policies, and awareness programs.

Data Integrity & System Assurance - 20%

  • Carry out data integrity checks within core banking systems and other critical applications to ensure accuracy and reliability of financial and operational data.
  • Review system development standards, operating procedures, programming controls, and network/infrastructure controls.
  • Assess backup and disaster recovery processes to ensure business continuity and resilience.

Analytics, Audit Tools & Investigations - 15%

  • Make maximum use of Computer-Assisted Audit Tools (CAATs) and Artificial Intelligence to enhance audit coverage and efficiency.
  • Use data mining and trend analysis to identify emerging risks and control weaknesses.
  • Perform special audits and investigations as requested, including forensic reviews and targeted assessments.

Reporting & Stakeholder Engagement -10%

  • Provide insights and findings to senior management, governance forums, and relevant committees.
  • Collaborate with Risk, Audit, Compliance, and IT teams to align on control expectations and remediation plans.
  • Support the development of dashboards and reporting tools to track control effectiveness and risk trends.

Education And Experience Required

  • Bachelor's degree in information technology, Computer Science, Information Systems, or related field.
  • Professional certifications such as CISA, CRISC, CISSP, CISM, GRCP or equivalent.
  • Postgraduate qualifications such as an MBA or master's in risk management, Information Security, Information Systems, or any related field are considered an added advantage

Experience Required

  • Minimum 7–12 years of experience in Technology, IT audit, cybersecurity, or technology risk management.
  • At least 3-5 years of experience specifically in a risk-based role, such as IT audit, risk & controls, or compliance is required.
  • Experience in managing and mentoring staff, leading global/virtual teams, or holding senior leadership roles
  • Proven experience in leading risk reviews across complex banking systems.
  • Hands-on experience with audit tools, data analytics, and cybersecurity frameworks.
  • Experience in regulatory compliance and working with financial sector regulators.

Knowledge & Skills

  • Deep understanding of banking systems, IT controls, and cybersecurity principles.
  • Knowledge of regulatory requirements (e.g., CBK guidelines, GDPR, NIST, ISO
  • Proficiency in data analytics tools, relevant risk management software/tools and audit software.
  • Strong analytical, investigative, and problem-solving skills.
  • Excellent reporting and presentation skills.
  • Application Deadline – 5 January 2026***

Absa Bank Kenya is an equal opportunity, affirmative action employer. Preference will be given to suitable candidates from designated groups whose appointments will contribute towards achievement of equitable demographic representation of our workforce profile and add to the diversity of the Bank.
Education
Bachelor's Degree: Computer and Information Science



  • Nairobi, Nairobi Area, Kenya I&M Bank Limited Full time $50,000 - $120,000 per year

    Job Purpose:The role holder is responsible for providing independent assurance on the governance, risk management, and control (GRC) processes related to information technology, including general and application controls, data integrity, confidentiality, availability, and system security.Key Responsibilities:Participate and contribute to assessment of risk...


  • Nairobi, Nairobi Area, Kenya I&M Bank Limited Full time

    Job Purpose:The role holder will provide independent assurance on Governance, risk management and control (GRC) processes and ensure subsidiary audit activities align with group audit framework by engaging through the planning phase and review and finalization of the audit reports before issuance, with focus on information technology audits undertaken by...

  • Risk Manager

    7 days ago


    Nairobi, Nairobi Area, Kenya Old Mutual South Africa Full time

    Lets Write Africa's Story TogetherOld Mutual is a firm believer in the African opportunity and our diverse talent reflects this.Job DescriptionJOB SUMMARYTo provide support to the Head of Risk in the development, implementation and maintenance of an effective and integrated enterprise risk management framework.Key Tasks And ResponsibilitiesKEY MEASURABLE...

  • Head of Risk

    2 weeks ago


    Nairobi, Nairobi Area, Kenya Rose Avenue Consulting Group (RACG) Full time 1,500,000 - 2,500,000 per year

    Our client, DIB Bank Kenya Limited a subsidiary of Dubai Islamic Bank PJSC, seek to hire Head of Risk toprovide the overall oversight role both technical and leadership on Risk management, Credit Administration, Recovery and Special Assets; and develop and implement effective strategy, policies and procedures and frameworks related to these areas.Key...


  • Nairobi, Nairobi Area, Kenya Urban Resilience Hub by UN-Habitat's CRGP Full time

    Org. Setting and ReportingThe United Nations Office at Nairobi (UNON) is the UN headquarters in Africa and the Director-General of UNON is the representative of the Secretary-General in Kenya. UNON supports programme implementation of the United Nations Environment Programme (UNEP), the United Nations Human Settlements Programme (UNHabitat), and the Resident...


  • Nairobi, Nairobi Area, Kenya Plan International Full time

    THE ORGANISATIONWorking in 54 developing countries across Africa, Asia and the Americas, with a total annual budget of approximately Euros1 billion, Plan International's stated Global Strategic Goal is to reach 200 million girls, particularly those living in fragile contexts, fighting injustice or facing crisis, with high-quality programs that deliver...


  • Nairobi, Nairobi Area, Kenya NTT Ltd. Full time

    Make an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive. Your day at NTT DATAThe Associate...


  • Nairobi, Nairobi Area, Kenya Plan International Full time $60,000 - $150,000 per year

    ABOUT USWorking in 54 developing countries across Africa, Asia and the Americas, with a total annual budget of approximately Euros1 billion, Plan International's stated Global Strategic Goal is to reach 200 million girls, particularly those living in fragile contexts, fighting injustice or facing crisis, with high-quality programs that deliver long-lasting...


  • Nairobi, Nairobi Area, Kenya ReliefWeb Full time

    OrganizationDT GlobalPosted 27 Oct 2025 Closing date 11 Nov 2025The Role12 months, with the option to extend.Competitive remuneration and benefits packageRemote, with short term travel to KiribatiThe Partnerships Platform is collaborating with the Social Protection Unit of the Ministry of Women, Youth, Sport and Social Affairs (MWYSSA) to support the...


  • Nairobi, Nairobi Area, Kenya LOLC KENYA Microfinance Bank PLC Full time

    We are hiring in Kenya:IT OFFICER. The Role Manage and support Windows and Linux systems, including servers, clients, and virtual environments.  Administer and maintain LAN/WAN networks, routers, switches, and firewalls across branches.  Ensure security, stability, and availability of the Core Banking System and ICT services.  Perform system...