2,394 Data Protection jobs in Kenya
Data Protection Officer
Posted today
Job Viewed
Job Description
Job Description
Reporting to the Cluster General Manager, responsibilities and essential job functions include but are not limited to the following:
- Ensure compliance with Kenya's Data Protection Act (2019), GDPR (where applicable), and Accor Group Data Protection policies.
- Serve as the main point of contact between the hotel cluster and the Office of the Data Protection Commissioner (ODPC) and other relevant regulatory authorities.
- Monitor changes in data protection legislation and update policies accordingly.
- Develop, implement, and maintain internal data protection policies and procedures.
- Conduct regular audits and assessments of data processing activities across departments (Front Office, Reservations, IT, Finance, Sales & Marketing, etc.).
- Ensure all departments adhere to approved data handling and processing protocols.
- Develop and deliver ongoing training programs for employees on data privacy, confidentiality, and best practices.
- Promote a culture of data privacy and security across both properties.
- Evaluate and advise on the data protection impact assessments (DPIAs) for new projects or technologies involving personal data.
- Respond to and manage data breaches in accordance with internal protocols and regulatory requirements.
- Maintain a data breach register and report incidents to management within statutory timelines.
- Work closely with Front Office, Reservations, HR, IT, Marketing, and third-party vendors to ensure data processing activities comply with privacy regulations.
- Maintain a data processing inventory and ensure accurate recordkeeping of guest and employee data practices.
- Facilitate and manage all requests relating to the rights of data subjects (access, correction, erasure, restriction, etc.).
- Maintain records of all such requests and ensure timely and compliant responses.
- Liaise with Accor regional DPOs and Regional teams to ensure alignment with global policies.
- Prepare regular compliance reports for the Cluster General Manager.
- Collaborate with IT and Security teams to ensure technical safeguards are adequate and up to date.
Qualifications
- Bachelor's degree in Law or relevant degree in Information Security or Technology, Data Governance, or a related field.
- Certified Data Protection Officer (CDPO), CIPP/E, CIPM, or other relevant certification is an asset.
- Minimum 3 years of experience in IT Department /Data protection, compliance, legal, or risk management—preferably in hospitality or multinational settings.
- Strong knowledge of Kenyan Data Protection Act 2019, GDPR, and international data privacy frameworks.
- Experience conducting data audits, managing privacy impact assessments, and handling data breaches.
Additional Information
Physical Aspects of Position (include but are not limited to):
- Constant standing and walking throughout shift
- Frequent standing and walking throughout shift
- Occasional lifting and carrying up to 30 lbs
- Occasional kneeling, pushing, pulling, lifting
- Occasional ascending or descending ladders, stairs and ramps
Data Protection Sales Person
Posted today
Job Viewed
Job Description
Role: We are seeking a motivated Data Protection Sales Person to drive adoption of our compliance, training, and audit services. The ideal candidate is passionate about technology, understands data privacy trends, and thrives on meeting targets.
Benefits:
· Competitive base salary plus an attractive commission structure with uncapped earnings.
· Training in Data Protection and Cybersecurity.
· Opportunity to grow into senior roles as Posh IT scales.
· A mission-driven, supportive, and collaborative work environment.
Responsibilities
· Identify and close sales opportunities for Data Protection Audits, DPO-as-a-Service, Training, and Advisory.
· Build and maintain strong client relationships across SMEs, corporates, and NGOs.
· Develop sales strategies aligned with Posh IT's business goals.
· Represent Posh IT at industry forums, client meetings, and networking events.
· Provide client feedback to the technical team to shape solutions.
Qualifications
· Minimum 2 years' experience in B2B sales (ICT, compliance, or consulting sector preferred).
· Understanding of Data Protection Act 2019 (or willingness to learn fast).
· Strong presentation, negotiation, and proposal-writing skills.
· Self-driven with proven ability to meet and exceed sales targets.
· Diploma/Degree in Business, ICT, or related field.
· A collaborative team player with strong ethical values.
To apply, send your CV and cover letter to with the subject line "Data Protection Sales Person Application".
Deadline: 10th September 2025
Lead Data Protection Officer - Remote Compliance
Posted 7 days ago
Job Viewed
Job Description
Information Security Analyst
Posted today
Job Viewed
Job Description
Responsibilities:
- Monitor security alerts and events from various security tools (e.g., SIEM, IDS/IPS, firewalls).
- Investigate potential security incidents, determine their scope, and implement containment and eradication strategies.
- Conduct vulnerability assessments and penetration testing to identify and remediate security weaknesses.
- Develop and maintain security policies, procedures, and guidelines.
- Implement and manage security technologies, including antivirus, endpoint detection and response (EDR), and data loss prevention (DLP) solutions.
- Perform regular security audits and compliance checks (e.g., ISO 27001, GDPR).
- Educate employees on security awareness best practices through training and awareness campaigns.
- Stay up-to-date with the latest cybersecurity threats, vulnerabilities, and trends.
- Assist in the development and execution of incident response plans and disaster recovery procedures.
- Manage security access controls and user privileges.
- Collaborate with IT teams to ensure secure system configurations and network architecture.
- Document security incidents, investigations, and remediation actions.
- Provide technical guidance and support to other IT staff on security matters.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. Relevant certifications such as CompTIA Security+, CISSP, or CEH are highly desirable.
- Proven experience in information security operations, incident response, or vulnerability management.
- Strong understanding of networking concepts, TCP/IP, firewalls, VPNs, and intrusion detection/prevention systems.
- Proficiency with security tools and technologies, including SIEM platforms.
- Knowledge of security best practices, risk management frameworks, and regulatory compliance.
- Excellent analytical, problem-solving, and investigative skills.
- Strong communication and reporting skills, with the ability to articulate complex security issues clearly.
- Ability to work independently, manage time effectively, and prioritize tasks in a demanding remote environment.
- Experience with scripting languages (e.g., Python, PowerShell) for automation is a plus.
- Certifications such as Security+, CySA+, CEH, or CISSP are strongly preferred.
Information Security Analyst
Posted today
Job Viewed
Job Description
Information Security Analyst
Posted today
Job Viewed
Job Description
Key Responsibilities:
- Monitor security infrastructure for potential threats and vulnerabilities.
- Analyze security alerts and incidents, conducting thorough investigations.
- Implement and manage security controls and technologies (e.g., firewalls, IDS/IPS, VPNs).
- Conduct regular vulnerability assessments and penetration tests.
- Develop, update, and enforce security policies and procedures.
- Respond to security incidents, including containment, eradication, and recovery.
- Ensure compliance with relevant security standards and regulations (e.g., ISO 27001, GDPR).
- Provide security awareness training to employees.
- Collaborate with IT teams to ensure secure system configurations.
- Stay current with the latest security threats, vulnerabilities, and mitigation techniques.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- 3+ years of experience in information security or a related IT security role.
- Strong knowledge of network security principles, operating systems, and common attack vectors.
- Experience with security tools such as SIEM, vulnerability scanners, and endpoint protection.
- Familiarity with security frameworks and compliance requirements.
- Excellent analytical, problem-solving, and critical-thinking skills.
- Strong communication and interpersonal skills, with the ability to explain complex security concepts clearly.
- Relevant certifications such as CompTIA Security+, CEH, or CISSP are a plus.
- Ability to work independently and manage tasks effectively in a remote environment.
Information Security Auditor
Posted 2 days ago
Job Viewed
Job Description
Key Responsibilities:
- Plan and execute information security audits across various IT systems and business processes.
- Evaluate the effectiveness of existing security controls, including physical, technical, and administrative safeguards.
- Review and assess compliance with relevant regulations and standards (e.g., GDPR, SOX, PCI DSS, ISO 27001).
- Identify security risks, vulnerabilities, and non-compliance issues, and document findings clearly.
- Develop detailed audit reports with prioritized recommendations for remediation.
- Collaborate with IT and business departments to discuss audit findings and remediation plans.
- Follow up on audit recommendations to ensure timely and effective implementation.
- Stay current with emerging threats, security trends, and audit best practices.
- Assist in the development and maintenance of audit programs and methodologies.
- Contribute to the continuous improvement of the information security management system.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 4 years of experience in information security, IT audit, or risk management.
- Strong understanding of cybersecurity principles, frameworks, and best practices.
- Experience with various IT systems, networks, and application security concepts.
- Knowledge of common IT audit frameworks and methodologies.
- Excellent analytical and problem-solving skills with a keen eye for detail.
- Strong written and verbal communication skills, with the ability to present complex information clearly.
- Proficiency in data analysis and reporting tools.
- Ability to work effectively both independently and as part of a team.
- Relevant certifications such as CISA, CISSP, or CRISC are highly desirable.
This hybrid role offers a significant opportunity to impact the security of a growing organization. If you possess a strong audit background and a passion for cybersecurity, we encourage you to apply.
Be The First To Know
About the latest Data protection Jobs in Kenya !
Information Security Analyst
Posted 3 days ago
Job Viewed
Job Description
Responsibilities:
- Monitor security infrastructure for potential threats and breaches.
- Investigate security incidents and recommend corrective actions.
- Conduct vulnerability assessments and penetration testing.
- Implement and manage security controls, including firewalls, IDS/IPS, and endpoint protection.
- Develop and enforce information security policies and procedures.
- Perform security audits and compliance checks.
- Stay up-to-date with the latest cybersecurity threats and vulnerabilities.
- Provide security awareness training to employees.
- Collaborate with IT teams to ensure secure system configurations.
- Respond to security alerts and manage incident response activities.
- Maintain documentation of security systems and processes.
- Assist in the development and testing of disaster recovery plans.
- Evaluate and recommend new security technologies.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 4 years of experience in information security or cybersecurity roles.
- Strong understanding of cybersecurity principles, network security, and risk management.
- Proficiency with security tools and technologies (SIEM, IDS/IPS, firewalls, vulnerability scanners).
- Experience in incident response and forensic analysis is a plus.
- Relevant certifications such as CISSP, CompTIA Security+, CEH are highly desirable.
- Excellent analytical and problem-solving skills.
- Strong communication and interpersonal skills.
- Ability to work effectively in a team environment.
Information Security Analyst
Posted 4 days ago
Job Viewed
Job Description
Information Security Auditor
Posted 4 days ago
Job Viewed
Job Description
Key Responsibilities:
- Plan and execute information security audits and assessments across various systems and applications.
- Evaluate the design and operating effectiveness of IT controls, including access controls, change management, and data protection.
- Identify compliance gaps against internal policies, industry standards (e.g., ISO 27001, NIST), and regulatory requirements.
- Document audit findings, observations, and recommendations in clear and comprehensive reports.
- Collaborate with IT and security teams to develop remediation plans for identified issues.
- Track the progress of remediation efforts and conduct follow-up audits.
- Stay up-to-date with the latest cybersecurity threats, vulnerabilities, and audit techniques.
- Assist in the development and maintenance of audit programs and checklists.
- Provide guidance and support to business units on security best practices and compliance matters.
- Participate in security risk assessments and provide input on control design.
- Bachelor's degree in Information Technology, Computer Science, Accounting, or a related field.
- Minimum of 4 years of experience in information security auditing, risk management, or compliance.
- In-depth knowledge of IT audit principles, methodologies, and frameworks (e.g., COBIT, ISO 27001, NIST).
- Experience with conducting internal or external IT audits.
- Familiarity with various IT systems, networks, and application security controls.
- Strong analytical, critical thinking, and problem-solving skills.
- Excellent written and verbal communication skills, with the ability to present technical information to diverse audiences.
- Relevant certifications such as CISA, CISSP, or CRISC are highly preferred.
- Ability to work independently and manage workload effectively in a remote environment.