Jobs Career Advice Signup
X

Send this job to a friend

X

Did you notice an error or suspect this job is scam? Tell us.

  • Posted: Mar 30, 2023
    Deadline: Apr 7, 2023
    • @gmail.com
    • @yahoo.com
    • @outlook.com
  • Never pay for any CBT, test or assessment as part of any recruitment process. When in doubt, contact us

    Kenya Commercial Bank Limited is registered as a non-operating holding company which started operations as a licensed banking institution with effect from January 1, 2016. The holding company oversees KCB Kenya - incorporated with effect from January 1, 2016 - and all KCB's regional units in Uganda, Tanzania, Rwanda, Burundi, Ethiopia and South Sudan. It als...
    Read more about this company

     

    Cybersecurity Specialist, Application Security

    The Application Security Specialist is responsible for undertaking security assurance of applications before release to production, periodic security reviews, and is the contact person in Cyber Security for all system change reviews. The specialist ensures that security requirements are well captured and embedded in the secure SDLC for all system developments and deployments, secure coding practices are adhered to, and secure software and application configurations are maintained in the system’s lifetime.

    Key Responsibilities

    • Define, document, and implement software security policy, secure coding practices and guidelines for the bank in line with industry best practices and technologies commensurate with risk and regulatory requirements.
    • Develop, implement, and maintain a software security assurance framework which that shall guide information security team in security and risk assessments of applications, as well as provide security requirements for developers and third parties to adhere to.
    • Lead Information Security involvement in all software and application implementation projects and scrum teams to ensure all applications and changes meet set information security requirements before introduction to production environments.
    • Collaborate with Enterprise Architecture and Business Application Development teams to identify application/software security improvements and plug-in identified security controls in DevOps tools.
    • Perform and coordinate regular trainings on secure coding, software security and application security practices for the development and other KCB technology teams at regular intervals.
    • Collaborate in the continuous monitoring and defence of the Bank’s critical applications, such as core banking, and digital channels, for cybersecurity threat indicators; report on violations and security measures taken to address threats.
    • Identify, integrate, and maintain security tools, such as SAST and DAST tools (Static/Dynamic Application Security Testing), standards, and processes into the software development or product life cycle (SDLC / PLC), and CI/CD pipelines.
    • Participate in performing risk assessments for business solutions for inherent security risks and provide recommendations for addressing such risks.
    • Define, create, and deliver software/application security compliance reports and relevant metrics to the Bank’s Senior Management.
    • Protects the bank’s applications and systems by defining access privileges and other security control structures.

    The Person

    For the above position, the successful applicant should have the following:

    • University degree from a recognized institution preferably in Information Technology/Computer Science/ Cyber Security/ Engineering (Electrical & Electronics) or related field.
    • A professional certification in either of the following: CDP: Certified DevSecOps Professional • CSSLP: Certified Secure Software Lifecycle Professional • CISM: Certified Information Security Manager • CISA: Certified Information Systems Auditor • CISSP: Certified Information Systems Security Professional.
    • At least 5 years' experience in Technology.
    • At least 2 years' experience in Information Security.
    • At least 1 year experience in Banking Operations with Strong Application Security knowledge, experience within Secure SDLC and DevSecOps.

    Method of Application

    Interested and qualified? Go to KCB Bank Kenya on ke.kcbgroup.com to apply

    Build your CV for free. Download in different templates.

  • Send your application

    View All Vacancies at KCB Bank Kenya Back To Home

Subscribe to Job Alert

 

Join our happy subscribers

 
 
Send your application through

GmailGmail YahoomailYahoomail