326 Senior Information Security Auditor jobs in Kenya
Information Security Auditor
Posted 14 days ago
Job Viewed
Job Description
Key Responsibilities:
- Plan and execute information security audits across various IT systems and business processes.
- Evaluate the effectiveness of existing security controls, including physical, technical, and administrative safeguards.
- Review and assess compliance with relevant regulations and standards (e.g., GDPR, SOX, PCI DSS, ISO 27001).
- Identify security risks, vulnerabilities, and non-compliance issues, and document findings clearly.
- Develop detailed audit reports with prioritized recommendations for remediation.
- Collaborate with IT and business departments to discuss audit findings and remediation plans.
- Follow up on audit recommendations to ensure timely and effective implementation.
- Stay current with emerging threats, security trends, and audit best practices.
- Assist in the development and maintenance of audit programs and methodologies.
- Contribute to the continuous improvement of the information security management system.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 4 years of experience in information security, IT audit, or risk management.
- Strong understanding of cybersecurity principles, frameworks, and best practices.
- Experience with various IT systems, networks, and application security concepts.
- Knowledge of common IT audit frameworks and methodologies.
- Excellent analytical and problem-solving skills with a keen eye for detail.
- Strong written and verbal communication skills, with the ability to present complex information clearly.
- Proficiency in data analysis and reporting tools.
- Ability to work effectively both independently and as part of a team.
- Relevant certifications such as CISA, CISSP, or CRISC are highly desirable.
This hybrid role offers a significant opportunity to impact the security of a growing organization. If you possess a strong audit background and a passion for cybersecurity, we encourage you to apply.
Senior Information Security Auditor
Posted 19 days ago
Job Viewed
Job Description
Information Security Auditor (Remote)
Posted 12 days ago
Job Viewed
Job Description
Lead Information Security Auditor (Remote)
Posted 3 days ago
Job Viewed
Job Description
Key Responsibilities:
- Plan, execute, and report on information security audits across various technology domains.
- Assess the effectiveness of security controls, policies, and procedures to ensure compliance with relevant regulations and standards.
- Identify security vulnerabilities, assess associated risks, and develop actionable recommendations for remediation.
- Lead and mentor junior auditors, providing technical guidance and oversight for audit engagements.
- Develop and maintain audit programs and methodologies tailored to the organization's risk profile.
- Review system configurations, network architectures, and application security practices for potential weaknesses.
- Conduct security awareness training and phishing simulations to improve employee understanding of security threats.
- Stay up-to-date with the latest security threats, vulnerabilities, and regulatory changes impacting the industry.
- Collaborate with IT, compliance, and legal teams to address audit findings and implement corrective actions.
- Prepare comprehensive audit reports detailing findings, risks, and recommendations for senior management.
- Develop and implement metrics to track the progress of security remediation efforts.
- Advise on the implementation of new security technologies and controls.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 8 years of experience in information security, with at least 5 years in security auditing or risk management.
- Proven experience leading and managing audit teams.
- In-depth knowledge of security frameworks (ISO 27001, NIST, COBIT) and regulations (e.g., GDPR, CCPA).
- Strong understanding of network security, cryptography, vulnerability management, and secure coding practices.
- Experience with cloud security assessments (AWS, Azure, GCP).
- Proficiency in security assessment tools and techniques.
- Excellent analytical, problem-solving, and critical thinking skills.
- Exceptional written and verbal communication skills, with the ability to present complex information clearly and concisely.
- Relevant certifications such as CISA, CISSP, CISM, or CRISC are highly desirable.
- Demonstrated ability to work independently and manage multiple priorities effectively in a remote setting.
Information Security Compliance Manager
Posted 18 days ago
Job Viewed
Job Description
Key Responsibilities:
- Develop, implement, and manage information security policies, procedures, and controls to ensure compliance with relevant regulations (e.g., GDPR, CCPA, HIPAA, PCI DSS).
- Conduct regular internal and external security audits to assess compliance levels and identify areas for improvement.
- Manage the process of external audits and certifications, acting as the primary point of contact for auditors and assessors.
- Oversee the development and execution of risk management frameworks, including regular risk assessments and mitigation planning.
- Stay informed about evolving legal and regulatory requirements related to data privacy and cybersecurity, and update compliance programs accordingly.
- Develop and deliver security awareness training programs to employees across the organization.
- Investigate and manage any compliance breaches or incidents, ensuring appropriate remediation steps are taken and documented.
- Collaborate with legal, IT, and business units to ensure alignment on compliance strategies and initiatives.
- Prepare regular reports for senior management on the status of information security compliance and identified risks.
- Maintain documentation related to compliance policies, procedures, assessments, and training records.
Qualifications:
- Bachelor's degree in Information Technology, Computer Science, Law, or a related field; Master's degree preferred.
- Minimum of 6 years of experience in information security, with at least 3 years specifically focused on compliance and risk management.
- In-depth knowledge of major data privacy and security regulations (GDPR, CCPA, HIPAA, PCI DSS, ISO 27001).
- Proven experience in conducting security audits, risk assessments, and developing remediation plans.
- Strong understanding of IT infrastructure, cybersecurity principles, and common security threats.
- Excellent analytical, problem-solving, and strategic thinking skills.
- Exceptional communication, presentation, and interpersonal skills, with the ability to effectively engage stakeholders at all levels in a remote environment.
- Relevant certifications such as CISM, CISSP, CISA, or CIPP are highly desirable.
- Ability to work independently, manage multiple projects, and meet deadlines in a remote setting.
- Demonstrated leadership capabilities and experience in managing compliance programs.
Remote Senior Information Security Auditor
Posted 12 days ago
Job Viewed
Job Description
- Planning, scoping, and executing information security audits across various IT environments, including cloud platforms, networks, applications, and databases.
- Assessing the design and operating effectiveness of internal controls related to information security, data privacy, and IT governance.
- Identifying control deficiencies, security risks, and non-compliance issues, and documenting findings in detailed audit reports.
- Developing practical and actionable recommendations for remediation of identified risks and control weaknesses.
- Following up on audit findings to ensure that management implements corrective actions effectively and in a timely manner.
- Staying current with evolving threats, vulnerabilities, industry best practices, and regulatory requirements impacting information security.
- Collaborating with internal stakeholders, including IT, security operations, and compliance teams, to gather information and discuss audit findings.
- Conducting risk assessments to inform audit planning and prioritize audit activities.
- Performing ad-hoc security reviews and investigations as needed.
- Contributing to the continuous improvement of the internal audit function and its methodologies.
Qualifications:
- Bachelor's degree in Computer Science, Information Systems, Accounting, or a related field. A Master's degree is a plus.
- Minimum of 6 years of experience in information security auditing, IT audit, or a related security control function.
- In-depth knowledge of information security principles, risk management frameworks (e.g., NIST, ISO 27001), and common security controls.
- Experience with relevant regulatory and compliance frameworks such as PCI DSS, GDPR, SOX, HIPAA, etc.
- Familiarity with audit methodologies, including risk-based auditing and control testing.
- Proficiency in using audit management software and tools.
- Strong analytical, critical thinking, and problem-solving skills.
- Excellent written and verbal communication skills, with the ability to produce clear, concise audit reports and present findings effectively remotely.
- Relevant certifications such as CISA, CISSP, CISM, or CRISC are highly desirable.
- Ability to work independently, manage multiple audit engagements, and meet deadlines in a remote environment.
Senior Information Security Analyst - Compliance
Posted 17 days ago
Job Viewed
Job Description
- Developing, implementing, and enforcing information security policies and procedures.
- Conducting regular risk assessments and vulnerability analyses to identify potential security threats.
- Managing and overseeing security audits, ensuring compliance with industry standards and regulations.
- Developing and executing incident response plans to effectively address security breaches.
- Monitoring security systems and logs for suspicious activities.
- Recommending and implementing security controls and technologies to mitigate risks.
- Providing security awareness training to employees.
- Staying current with emerging security threats, vulnerabilities, and best practices.
- Collaborating with IT and other departments to integrate security into all aspects of operations.
- Managing relationships with third-party security vendors.
Be The First To Know
About the latest Senior information security auditor Jobs in Kenya !
Senior Information Security Architect - Cloud Security & Compliance
Posted 15 days ago
Job Viewed
Job Description
Senior Information Security Analyst (Information Security)
Posted 11 days ago
Job Viewed
Job Description
Information Security Analyst
Posted 19 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor security infrastructure for suspicious activities and potential threats.
- Investigate and respond to security incidents in a timely and effective manner.
- Conduct vulnerability assessments and penetration testing.
- Implement and manage security controls and technologies.
- Develop and update security policies and procedures.
- Perform regular security audits and compliance checks.
- Stay abreast of emerging cybersecurity threats and trends.
- Provide security awareness training to employees.
- Collaborate with IT teams to ensure secure system configurations.
- Contribute to the development of the organization's overall security strategy.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 3 years of experience in information security or cybersecurity.
- Strong knowledge of network security, firewalls, intrusion detection/prevention systems.
- Familiarity with security frameworks (e.g., NIST, ISO 27001).
- Experience with security monitoring tools and SIEM solutions.
- Certifications such as CISSP, Security+, CEH are a plus.
- Excellent analytical, problem-solving, and communication skills.
- Ability to work independently and effectively in a remote environment.