Hiring Kenya

Blogger

Related Jobs

Manager, Security Operations Center(SOC)

Nairobi, Kenya
Company Details
Name:NCBA Group
Industry: Banking
Description: On 6th December 2018, it was announced that NIC Bank, an institution with a rich history of retail banking; and CBA Bank, a forerunner of innovation in the banking space, would be merging to form a new bank with unmatched strength, expertise and regional reach. ,,,, ,,,The new NCBA has harnessed the power of both NIC and CBA to create a bank that brings together the best of both worlds — from cutting edge mobile banking to good old-fashioned relationship management; from scalable business banking to financial services that grow as your business does; from best-in-class choice of products to investment solutions tailored to your specific needs. ,,,, ,,,Our extensive branch network and friendly service mean that you are part of the most universal yet personal bank in East Africa.
Job Description

Job Purpose Statement

The Manager, SOC is responsible for continuous monitoring of technology assets for security incidents impacting the confidentiality, integrity, and availability of systems across the Bank. This role drives the overall security monitoring and incident response program, including implementing policies and procedures, and ensuring effective response, containment, and recovery from security incidents or breaches.

Key Accountabilities (Duties and Responsibilities)

Security Monitoring (40%)

  • Lead and manage the SOC team, ensuring correct identification, analysis, defense, investigation, and reporting of security incidents.
  • Monitor and analyze activity on networks, servers, endpoints, databases, applications, websites, and other systems for anomalous activity.
  • Perform threat management and threat modeling, identify threat vectors, and develop use cases for security monitoring.
  • Ensure continuous integration of logs from technology assets into the SIEM to meet security use cases.

Cyber Incident Response (30%)

  • Manage the cyber incident response plan and respond to incidents in accordance with the plan.
  • Communicate and escalate effectively during incident response.
  • Serve as the focal point of contact for cyber incidents and continuously improve the response plan.

Information Security Policies & Procedures (20%)

  • Develop and maintain Information Security policies, procedures, and SOPs related to the SOC and incident response.
  • Develop regular metrics, dashboards, and reports for SOC operations for various stakeholders.
  • Develop SOC performance management tools and ensure compliance with SLAs and process adherence.

People Leadership (10%)

  • Provide leadership, mentorship, and performance management for direct reports.
  • Maintain positive working relationships with internal teams and outsourced partners for incident remediation.
  • Direct and supervise the work of personnel and/or contractors assigned to the department.

Job Specifications

Ideal Job Specifications:

Academic:

  • Bachelor's Degree in Information Systems, Computer Science, Information Security, or related field.

Professional:

  • Relevant certifications in Information Security knowledge areas, such as security monitoring, threat intelligence, and Information Security Management. Experience in security device management, SIEM, IPS/IDS, DLP, Active Directory, and other security technologies. In-depth familiarity with security policies based on industry standards and best practices. Strong knowledge of technical infrastructure including operating systems, networks, databases, middleware, etc. Good knowledge of End Point Security, Internet Policy Enforcement, Firewalls, Web Content Filtering, Database Activity Monitoring (DAM), Data Loss Prevention (DLP), Identity and Access Management (IAM). Proficient in reports, dashboards, and documentation preparation.

Job Dimensions

Reporting Relationships:

  • Direct Reports: Cyber SOC Analysts (3)
  • Indirect Reports: None

Stakeholder Management:

  • Internal: IT Department, Enterprise & Compliance Risk Department, Internal Audit
  • External: Managed Services partners, External Auditors, Regulators

Decision Making Authority:

  • Operational: Continuous Monitoring & Incident Response
  • Managerial: Vendor management

Work Cycle and Impact:

  • Planning horizon: 6-12 months
Education: Degree, Diploma
Employment Type: Full Time

⚠️Report job

⚠️Safety Tips: Never pay anyone for job application, test or interview. A genuine employer will never ask you for the payment in anycase.

Disclaimer & TOS: Semasocial is an exclusive platform that ought to help jobseekers. We restrict any endorsement that demand for money and strictly advice against sharing personal or bank related information. If you notice deception or fraudulent, send us an email at [email protected]. For further details, please contact us »