78 Security Consultant jobs in Nairobi
Biometric Project Manager
Posted today
Job Viewed
Job Description
Company Description
CompuLynx Ltd. is a Global Systems Integrator with over 28 years of experience, headquartered in Kenya and operating in Uganda, and Tanzania. We specialize in Retail and Digital Identity software solutions, aimed at enhancing security, facilitating informed decision-making, and reducing business risks. We have successfully deployed business solutions for more than 508 customers across 37 countries, managed by a dynamic team of over 160 professionals. Our commitment to innovation and customer collaboration sets us apart in the industries we serve.
Role Description
This is a full-time on-site role for a Biometric Project Manager, based in Naioribi. The Biometric Project Manager will oversee the planning, execution, and completion of biometric projects. Daily tasks include expediting project timelines, managing logistics and inspections, ensuring project milestones are met, and coordinating with various stakeholders to ensure smooth project operations.
Qualifications
- Experience in Expediting and Expeditor roles
- Strong Project Management skills
- Expertise in Inspection processes
- Proficiency in Logistics Management
- Excellent organizational and communication skills
- Ability to manage multiple projects and deadlines
- Bachelor's degree in Project Management, Business Administration, or related field
- Experience in the technology or biometric industry is a plus
Senior Information Security Analyst - Cloud Security
Posted 20 days ago
Job Viewed
Job Description
Key Responsibilities:
- Develop, implement, and maintain security policies, procedures, and controls for cloud environments (AWS, Azure, GCP).
- Conduct regular security risk assessments and vulnerability scans of cloud infrastructure and applications.
- Design and implement security solutions, including identity and access management (IAM), encryption, and network security.
- Monitor security alerts and logs for suspicious activity, and lead incident response efforts for cloud-based security breaches.
- Perform security audits and ensure compliance with relevant regulations (e.g., GDPR, SOC 2).
- Collaborate with IT and development teams to integrate security into the cloud application lifecycle (DevSecOps).
- Develop and deliver security awareness training to employees.
- Stay current with emerging cloud security threats, technologies, and best practices.
- Evaluate and recommend new security tools and technologies to enhance the organization's security posture.
- Document security procedures, incident reports, and compliance findings.
- Participate in the development and testing of disaster recovery and business continuity plans.
- Provide expert guidance on cloud security best practices to internal teams.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 5 years of experience in information security, with at least 3 years focused on cloud security.
- In-depth knowledge of major cloud platforms (AWS, Azure, GCP) and their native security services.
- Hands-on experience with security tools such as SIEM, IDS/IPS, WAF, and endpoint detection and response (EDR).
- Strong understanding of security frameworks (e.g., NIST, ISO 27001) and compliance requirements.
- Experience with scripting languages (e.g., Python, Bash) for automation is a plus.
- Relevant security certifications such as CISSP, CCSP, AWS Certified Security – Specialty, or Azure Security Engineer Associate are highly desirable.
- Excellent analytical, problem-solving, and incident response skills.
- Strong communication and interpersonal abilities, with the capacity to explain technical concepts to non-technical audiences.
- Ability to work independently and collaboratively in a fully remote environment.
Senior Information Security Analyst - Cloud Security (Remote)
Posted 10 days ago
Job Viewed
Job Description
Responsibilities:
- Design, implement, and manage security controls and configurations for cloud environments (AWS, Azure, GCP).
- Conduct security assessments, vulnerability scans, and penetration tests of cloud infrastructure and applications.
- Develop and implement cloud security policies, standards, and best practices.
- Monitor cloud environments for security threats, anomalies, and compliance deviations.
- Lead incident response activities for cloud security incidents.
- Collaborate with cloud engineering and DevOps teams to ensure secure deployment and operations.
- Manage identity and access management (IAM) policies and controls in the cloud.
- Stay current with emerging cloud security threats, technologies, and industry trends.
- Develop and deliver security awareness training for cloud teams.
- Document security procedures, incident reports, and compliance requirements.
- Bachelor's degree in Computer Science, Information Security, or a related field.
- 5+ years of experience in information security, with a strong specialization in cloud security.
- Proven experience with security configuration and management of major cloud platforms (AWS, Azure, GCP).
- In-depth knowledge of cloud security principles, concepts, and best practices.
- Experience with security tools such as SIEM, vulnerability scanners, and intrusion detection systems.
- Familiarity with container security (e.g., Docker, Kubernetes) and DevSecOps principles.
- Excellent analytical, problem-solving, and incident response skills.
- Strong communication and interpersonal skills.
- Relevant cloud security certifications (e.g., AWS Certified Security - Specialty, Azure Security Engineer Associate).
- Demonstrated ability to work independently and manage projects effectively in a remote setting.
Remote Senior Information Security Analyst - Cloud Security
Posted 20 days ago
Job Viewed
Job Description
Responsibilities:
- Design, implement, and manage security solutions for cloud environments (AWS, Azure, GCP).
- Monitor security alerts and events using SIEM and other security tools to detect and respond to threats.
- Conduct regular vulnerability assessments and penetration tests to identify and remediate security weaknesses.
- Develop, review, and update security policies, procedures, and standards.
- Lead incident response efforts, including investigation, containment, eradication, and recovery.
- Perform risk assessments and develop mitigation strategies for identified security risks.
- Implement and manage security controls for networks, endpoints, and applications.
- Provide security awareness training to employees and promote a security-conscious culture.
- Stay current with emerging threats, vulnerabilities, and security technologies.
- Collaborate with IT and development teams to ensure security is integrated into system design and deployment.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 5 years of experience in information security, with a focus on cloud security.
- Strong knowledge of cloud security best practices and experience with AWS, Azure, or GCP security services.
- Proficiency in security monitoring tools, SIEM systems, and incident response methodologies.
- Experience with network security, endpoint security, and vulnerability management.
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong written and verbal communication skills, with the ability to explain complex security concepts.
- Relevant security certifications such as CISSP, CCSP, or cloud-specific security certifications are a plus.
- Ability to work independently and manage time effectively in a remote, global team environment.
Lead Information Security Analyst
Posted 20 days ago
Job Viewed
Job Description
Principal Information Security Analyst
Posted 20 days ago
Job Viewed
Job Description
Information Security Analyst - SOC
Posted 20 days ago
Job Viewed
Job Description
Be The First To Know
About the latest Security consultant Jobs in Nairobi !
Information Security Analyst - Threat Intelligence
Posted 10 days ago
Job Viewed
Job Description
Job Description
Job Purpose
The role holder is responsible for ensuring information systems developed and deployed meet the Bank's set cybersecurity policies, standards, and requirements as well as complying to applicable cybersecurity regulations and industry standards.
The role holder will ensure that security requirements are well captured and embedded in the SDLC process for all technology initiatives, secure coding practices are adhered to, and secure software and application configurations are maintained.
The specialist will carry out security testing across all technology stacks (mobile, web applications, APIs/ Microservices, code, web servers, containers, servers, databases, virtualization environments, network devices and connectivity) within assigned scrums and projects.
Responsibilities
· Work with scrums and project teams to ensure that security requirements are adequately captured during requirements analysis phase.
· Provide input into the secure design of information systems architecture during the project lifecycle.
· Ensure that access to the Bank's systems during the project lifecycle by staff, contractors and vendors is secure and based on least privilege principle.
· Enforce the implementation and adoption of the Bank's minimum security baseline standards across all technologies in use.
· Facilitate the identification of security vulnerabilities through performing or coordinating security assessments or vulnerability assessment and penetration testing (VAPT).
· Ensure security tools and checks are running as expected within all pipelines, review security reports from them.
· Report any scrums & projects security gaps identified and follow up for closure as per the Bank's standards and procedures.
· Identify any security violations and incidents during the project lifecycle and coordinate the response process.
· Ensure effective integration of the Bank's security tools to protect, detect, and respond to any attempted intrusions prior to and during project go live.
· Work together with scrums & projects units to ensure that user access matrices are well defined and in line with defined roles and responsibilities.
· Participate in deployment sessions and perform post implementation review (PIR) to ensure that security configurations are done and gaps noted in testing do not permeate into production.
· Embed the bank's cybersecurity awareness program during the project lifecycle, targeting secure coding training.
· Provide scheduled security reports to the cybersecurity project lead, project team and steering committee on progress of security workstream activities.
Skills and Experience
· Bachelor's degree in computer science, IT, or other STEM related Degree.
· Master's degree in information security, Cyber Security or Related Fields will be an added advantage.
· Information security certification in either of the following CISA/ CISM/ CISSP/CRISC/Security+; as well as testing certifications such as CSSLP/CEH/OSCP/ CPT/ GPEN/ GWAPT/eWPT/eJPT.
· years' experience in technology.
· years' experience in information security.
· years' experience in Application Security, within Secure SDLC and DevSecOps environments.
· Comprehensive technical expertise in a variety of DevSecOps toolkits, including Ansible, Jenkins, Gitlab, Azure DevOps, Trivy, SonarQube, Terraform, Git/Version Control Software, or comparable technologies.
· Familiarity with information security frameworks and standards such as PCI-DSS, ISO 27001, SABSA etc.
· Familiarity with API Security, Container Security, Cloud Security
· Experience in Project Implementation and user training.
· Ability to multi-task, respond well to pressure and deadlines, influence others, work well individually and in a team environment.
· Strong verbal and written communication skills.
· Strong analytical and problem-solving skills, and the ability to work collaboratively with cross-functional teams.
Location: Nairobi
Terms
: Full Time, On site; Contract duration: 1 Year with possibility of extension
Please share your cv to:
Emai
l:
Subject
: Prefix the subject matter as –
Cyber Security Analyst (DevSecOps)
Format:
PDF ONLY (Any other format will be automatically disqualified)
Resume:
If sending via email, ensure your resume is clearly saved with your full names correctly indicated e.g. John Smith Cv not "Latest Cv" as this will lead to automatic disqualification
Deadline:
21
st
/ October /2025
N/B:
For this position, kindly
only
apply if your profile matches the above criteria and note the job is contract based
Senior Information Security Analyst
Posted 20 days ago
Job Viewed