CYBER RISK ANALYST (VA/PT) (BUSINESS ANALYST 1)
Closing Date: Wednesday, 12 Nov 2025 at 5.00 p.m.
Job Purpose
The role holder will be responsible for carrying out and coordinating Cyber Threat hunting for pro-active detection and prevention of Cyber Breaches in the Banking Sector.
Key Duties and Responsibilities
Technical and Operational Responsibilities
1. Perform targeted Vulnerability Assessment and Penetration Testing (VA/PT) to identify flaws on systems and applications of regulated entities.
2. Write reports detailing the findings of VA/PT exercises explaining the attack vectors of Cyberattacks.
3. Reviewing results of VA/PT exercises before dispatch.
4. Providing recommendations on fixing the issues identified during VA/PT exercises.
5. Carrying out Open-Source Intelligence (OSINT) collection on Cyber Threat Actors.
6. Supporting, liaising and coordinating with other incident response teams in identifying cyber-attack vectors by analyzing raw data and identifying suspicious patterns.
7. Incidence Response engagements on regulated entities to ensure recovery and efficiency in incident response management.
8. Adhere to VA/PT and incident management policies, best practices and SOP manuals.
9. Prepare Cyber Security training/awareness material for the financial sector.
10. Maintain records of all Cyber incidents recorded and their status.
11. Maintain catalogue of all VA/PT tools and equipment.
Other Responsibilities
12. Conduct research on Cyber Threat Actors Tactics, Techniques and Procedures (TTPs)
13. Any other duties assigned.
Qualifications
1. A Bachelor’s Degree in Information Technology, Computer Engineering, Telecommunications and Information Engineering & Computer Science and/or any related qualification.
2. Professional certification(s) in VA/PT (CEH) and Cybersecurity & Information Security (GSEC) and/or Networking (CCNA) or any other related field.
3. Practical hands-on experience with enterprise VA/PT tools and software, e.g Nessus, Burp suite, OpenVAS, Nikto and exploit frameworks.
4. Active membership in at least one (1) professional body.
Work Experience
Three (3) years’ experience with at least two (2) years’ experience in a cybersecurity and VA/PT analysis environment.
Competencies
Technical Competencies
1. Good understanding of Vulnerability Assessment and Penetration Testing (VA&PT) process.
2. Data Analytical Skills.
3. Knowledge in Open-Source Intelligence applications.
4. Have agility in learning new security analysis tools and technologies.
5. Good report writing and presentation skills.
Behavioral/General Competencies
1. Honesty and integrity.
2. Leadership Skills.
3. Excellent problem solving skills.
4. Analytical skills.
5. Good communications Skills.
6. Organization skills.
7. Confidentiality.
8. Flexibility.
9. Good Interpersonal relations.
10. Team player.
11. Attention to detail.
Candidates are requested to note that:
- INCOMPLETE applications will not be considered.
- Only shortlisted candidates will be contacted.