Assistant General Manager, Group Information Systems Audit at I&M Bank

10 Years
or Register to apply for this job
Company Details
Name: I&M Bank
Industry: Banking
Description: I&M Bank is a wholly owned subsidiary of I&M Holdings Limited, a publicly quoted company at the Nairobi Securities Exchange (NSE). The bank possesses a rich heritage in banking. Started in 1974, it evolved from a community financial institution to a publicly listed major regional commercial bank offering a full range of corporate and retail banking services, 35 branches in Kenya and international operations in 3 other countries. I&M Bank is a dominant player in the Kenyan market that has been consistently growing, and is innovative in terms of the type and range of products and services it offers. CDC Group plc, a development finance institution wholly owned by the government of the United Kingdom owns approximately 10.68% of I&M Holdings, the holding company of I&M Bank Ltd. In addition, I&M Bank has a technical support agreement with International Finance Corporation for staff training, product development and risk management. I&M Bank also enjoys medium term foreign currency credit facilities from European Development Financial Institutions - Proparco, DEG and FMO. I&M Bankโ€™s international correspondent banks include major multinational banks such as Bank One Ltd, Citibank NA, CommerzBank AG, Deutsche Bank AG, ICICI Limited Mumbai, Mashreq Bank PLC, Standard Bank of South Africa and Standard Chartered Bank NY. I&M Bankโ€™s international network includes Bank One Limited (Mauritius), I&M Bank Tanzania Limited and I&M Bank Rwanda Specialties Banking Services, Commercial Banking, Asset Finance, Mobile Banking, Internet Banking, Investment Management Services, Diaspora Banking, Credit / Debit / Prepaid cards, Wealth Management
Job Description

Job Purpose:

  • The role holder will provide independent assurance on Governance, risk management and control (GRC) processes and ensure subsidiary audit activities align with group audit framework by engaging through the planning phase and review and finalization of the audit reports before issuance, with focus on information technology audits undertaken by subsidiary audit teams. This includes execution of thematic/ integrated audits across the group.

Key Responsibilities:

  • Support group audit strategy execution.
  • Integrate technology audit frameworks, standards and best practices in the group internal audit framework.
  • Monitor progress of IS related components/ audits and support country CAEs to deliver the audit plans (Banking and Non-banking).
  • Undertake quality reviews of audit working papers and ensure consistency across the group in audit tests conducted and methodologies applied and conformance with approved internal audit framework.
  • Undertake special audit assignments as and when requested by the Group Chief Audit Executive (GCAE).
  • Undertake quality review of the draft/ final reports before issuance by the CAEs.
  • Participate in debriefs with various audit stakeholders and execute any actions assigned from these to bridge the expectations gap
  • Attend Group BARMC/ Country BAC Meetings/ Management meetings to present/ clarify any IS audit reports and queries.
  • Undertake training to develop/ sharpen skills of the wider audit team members and bridge any performance.

Academic Qualifications:

  • Bachelor’s degree in computer science/ information technology management/ accounting.

Professional Qualifications / Membership to professional bodies/ Publication:

Mandatory:

  • Certified Information Systems Auditor (CISA).
  • Certified Public Accountant/ ACCA.

Recommended:

  • Certified Internal Auditor (CIA).
  • Certified Internal Audit Quality Assessor (CIAQA).
  • Certified Ethical Hacker (CEH).
  • Certified Information System Security Professional (CISSP).

Work Experience Required:

  • Over ten (10) years’ relevant experience with over five (5) years in a senior management role in a similar sized organization with regional presence, preferably the Banking industry.
  • Demonstrable work experience in information systems auditing or a related information systems field.

Competencies:

Internal Auditing Competencies:

  • Full knowledge of Global Internal Audit Standards and Topical requirements released by IIA and ISACA.
  • Ethics and professionalism: Maintaining high standards of integrity and ethical resilience.
  • Full awareness of IIA’s Quality Assurance and Improvement Program. 
  • Audit methodologies with specific focus on Information Systems Audits.
  • Professional Communications - Excellent verbal and written skills for reporting findings and communicating with stakeholders.
  • Knowledge of Integrated and Coordinated Assurance.

Professional Competencies:

  • Leadership - Planning & Organizational skills; Lead and guide a team to deliver results with efficiency and effectiveness.
  • Change Management – Capacity to adapt to new technologies and challenges.
  • Project Management – End to end project discipline; Time management: Ability to manage multiple deadlines and tasks effectively.
  • Negotiation and Conflict Management: Ability to collaborate effectively with different teams and individuals.
  • Data analysis and data mining: Proficiency in using data analytics and visualization tools to support outcomes and results/ conclusions.
  • Analytical and critical thinking: Ability to think logically and solve problems/ recommend solutions. 

Governance and Risk Management Competencies:

  • IT governance and frameworks: Familiarity with frameworks such as COBIT, ITIL. NIST and ISO/IEC 27001. Industry, Applicable Global and Local technology regulations.
  • Strategy Strong commercial awareness and an ability to connect the ICT strategy to the overall strategy. 
  • Fraud - Pay close attention to detail; Excellent judgment and analytical abilities; Probing skills and impeccable integrity.
  • Organizational Resilience and sustainability.

Technical and domain knowledge:

  • IT systems and infrastructure: Understanding of hardware, software, networks, databases, and various operating systems (Windows, Linux, UNIX).
  • IT security and cybersecurity: Knowledge of security principles, practices, and leading practices.
  • Risk and controls evaluation: Ability to assess the effectiveness of IT controls, risks, and security procedures.
  • Emerging technologies: Awareness of current and emerging trends and associated risks.
  •  
  • Appreciation of Banking Operations (Automated and Manual). 
Salary: Discuss During Interview
Education: Diploma
Employment Type: Full Time

Key Skills

finance  AccountingAuditing 
Beware of Fraudsters!
Never pay anyone for job applications, interview tests, or job interviews. A genuine employer will never ask you for payment under any circumstances.
Disclaimer & TOS: We do not guarantee the authenticity of every single job posting and are not responsible for any fraudulent activity or misrepresentation by third parties. We are not involved in any stage of the interview or recruitment process and do not charge any fees from job seekers. For further details, please read the rest of the Terms of Service.

Recent Jobs