Role Overview
This role sits at the intersection of technology, cybersecurity, and risk assurance, helping the bank keep its digital environment safe and resilient. Day to day, you will monitor the effectiveness of key technology controls, run continuous testing cycles, and use data analytics to spot emerging risks before they become real problems. Your work directly supports the First Line of defence, giving business teams the insights they need to act quickly and keep the bank’s operations secure and compliant.
Key Responsibilities
- Design and run continuous controls testing across technology and cybersecurity environments, ensuring that critical controls are operating as intended and flagging any weaknesses immediately.
- Build and maintain automated monitoring solutions that extract data from SQL databases and other sources, turning raw data into clear, actionable risk insights.
- Develop dashboards and visualisations in tools like Power BI or Tableau so that risk trends, control failures, and remediation progress are visible and easy for stakeholders to interpret.
- Lead a team of risk and analytics professionals, setting priorities, reviewing their output, and helping them grow their technical and risk management skills.
- Collaborate with First Line teams to investigate emerging cyber and technology risks, identify root causes, and ensure remediation plans are practical and completed on time.
- Leverage programming and scripting skills in Python, SQL, or R to automate recurring audit procedures, reduce manual effort, and improve the overall efficiency of control testing.
- Align monitoring practices with recognised frameworks such as ISO, COBIT, and regulatory requirements, and provide clear documentation of findings and recommendations for senior management.
- Act as a bridge between technical risk issues and non-technical stakeholders, translating complex control gaps and risk scenarios into concise, business-relevant language.
Requirements & Qualifications
- A first degree in computer science, information technology, data science, risk management, finance, business commerce, or a closely related field.
- 8 to 10 years of relevant experience in technology risk management, cybersecurity, or internal controls, specifically within a banking or financial services environment.
- Strong hands-on experience with data analytics and automation, including scripting in Python, SQL, or R, and using visualisation tools such as Power BI or Tableau.
- A proven track record of building and running continuous auditing and data analytics programs, including automating analyses, creating recurring audit checks, and extracting data from data warehouses and SQL databases.
- Demonstrated experience leading and managing a team of professionals, with the ability to set direction, allocate work, and mentor junior staff.
- In-depth knowledge of technology and cybersecurity frameworks and standards, including ISO and COBIT, as well as solid familiarity with IT governance, project management, and relevant banking regulations.
- Deep understanding of IT general controls, technology risks, and the practical evaluation of internal controls in a complex technology environment.
- Strong analytical and problem-solving skills to assess complex risk scenarios and recommend effective, proportionate solutions.
- Excellent written and verbal communication skills, with the ability to present technical findings to non-technical audiences in a clear and compelling way.
- Professional certifications such as CISM, CRISC, CISA, or CISSP are highly desirable and will be viewed favourably.
646 open positions on Semasocial right now
· 9425 open positions in Nairobi County, Kenya
· 47 posted in the last 7 days
Contact Information