Consolidated Bank Hiring IT Risk Officer

by Adonai

Join Our Team: IT Risk Officer

Consolidated Bank of Kenya Ltd, the SME bank of choice, is committed to providing flexible financial solutions to help our customers achieve success. With a presence in the majority of the country’s business hubs, we are strategically positioned to deliver exceptional and convenient services.

We are seeking high-caliber, results-oriented, and self-driven professionals to join our team in the position of IT Risk Officer.

Position: IT Risk Officer
Job Type: Three (3)-Year Contract

Job Purpose
The IT Risk Officer, reporting to the Head of Risk & Compliance, will provide continuous, independent risk management oversight of the Bank’s technology investments and information security framework. The role will focus on maintaining confidentiality, integrity, and availability of the IT infrastructure, processing systems, and related resources in line with the Bank’s Information Security and Risk Management policy.

Key Responsibilities

  • Cybersecurity Risk Assessment: Assess risks and exposures related to cybersecurity and ensure alignment with the institution’s risk appetite.
  • Risk Monitoring: Track current and emerging risks, including changes to laws and regulations.
  • Collaboration for Safeguarding Information: Work closely with system administrators and other teams to ensure effective control designs for safeguarding information assets.
  • Risk Register Maintenance: Develop and maintain a comprehensive cyber risk register.
  • Risk Management Implementation: Drive the execution of the Bank’s cyber and information risk management strategy.
  • Information Protection: Safeguard the confidentiality, integrity, and availability of information.
  • IT Asset Inventory: Establish and maintain a comprehensive inventory of IT assets.
  • Impact Quantification: Assess residual cyber risks and determine risks to address through insurance as part of risk transfer.
  • Enterprise Risk Reporting: Report all enterprise risks comprehensively to the Board, ensuring accurate prioritization and effective decision-making.
  • Red Team Exercises: Conduct simulated cyber-crime attacks to assess and improve the Bank’s resilience.
  • Ethical Hacking: Perform ethical hacking to identify and address vulnerabilities.

Qualifications and Competencies

  • Bachelor’s degree in Computer Science, Information Technology, or a related field from a recognized university.
  • Professional qualifications such as CISM, CISA, Security+, CASP, CCNA Security, or CISSP.
  • Membership in a relevant professional body.
  • Minimum of five years of relevant work experience, including two years in IT Risk or Information Security.
  • Experience and knowledge of best practice IT controls and regulatory requirements.
  • Expertise in ethical hacking, control design, operation, and effectiveness testing.
  • Thorough understanding of security practices, secure system design, and security technology operations.

How to Apply

You may also like

Adblock Detected

Please support us by disabling your AdBlocker extension from your browsers for our website.