24 Nov 2025

Cybersecurity Analyst (DevSecOps) at KCB Bank Kenya

Recruit candidates with Ease. 100% recruitment control with Employer Dashboard.
We have the largest Job seeker visits by alexa rankings. Post a Job

Resubmit your Resume Today. Click Here to Start

We have started building our professional LinkedIn page. Follow


Job Description

Kenya Commercial Bank Limited is registered as a non-operating holding company which started operations as a licensed banking institution with effect from January 1, 2016. The holding company oversees KCB Kenya – incorporated with effect from January 1, 2016 – and all KCB’s regional units in Uganda, Tanzania, Rwanda, Burundi, Ethiopia and South Sudan. It als…

Cybersecurity Analyst (DevSecOps)

KEY RESPONSIBILITIES:

  • Represent Group Cyber Security in assigned implementation projects and teams to ensure all applications and changes meet set information security requirements before introduction to production environments.
  • Contribute to the definition, documentation, and implementation of software security policies, secure coding practices and guidelines for the bank in line with industry best practices and technologies commensurate with risk and regulatory requirements.
  • Consistently provide security requirements to developers and third parties to adhere to and comprehensively implement the Bank’s software security assurance framework by carrying out security and risk assessments of application and software changes.
  • Collaborate with Enterprise Architecture and Business Services & Solutions teams to identify application/software security improvements and plug-in identified security controls in security tools.
  • Contribute to formulation and conducting of regular trainings on secure coding, software security and application security practices for the development and other KCB technology teams at regular intervals.
  • Contribute to the identification, integration, and maintenance of application security testing tools.
  • Perform security and risk assessments for business solutions to identify inherent security risks and provide recommendations for addressing such risks.
  • Create and deliver software/application security compliance and testing reports and relevant metrics to the Bank’s Senior Management.
  • Collaborate in the continuous monitoring and defence of the Bank’s critical applications, such as core banking, and digital channels, for cybersecurity threat indicators; report on violations and security measures taken to address threats.
  • Protect the bank’s applications and systems by defining and reviewing access privileges and other security control structures.

MINIMUM POSITION QUALIFICATION REQUIREMENTS

Academic & Professional

  • Education     Bachelor’s Degree    B.Sc. Information Technology /Computer Science / Cybersecurity / Engineering (Electrical, Electronic) or related field    RQ
  • Professional Qualifications    Information Security certification such as CISA/ CISM/ CISSP/ CRISC/ Security+ or any other related    RQ
  • Information Security Testing and certification such as CSSLP (Certified Secure Software Lifecycle Professional)/CEH/OSCP/ CPT/ GPEN/GWAPT/ eWPT/ eJPT or any other related    RQ
  • MASTERS    MBA/MSC    AA

 Experience

  • Total Minimum No of Years’ Experience Required    3years

Detail    Minimum No of Years    Need Type[2]

  • Experience in Information Security    1    ES
  • Strong Application Security knowledge, experience within a project setup    1    ES
  • Experience in testing or implementing web, API, mobile application security best practices (such as OWASP, NIST)    1    ES
  • Experience in working with application security tools (Burp suite, OWASP Zap)    1    DE
  • Experience in financial and capital markets    1    DE


Method of Application

Submit your CV and Application on Company Website : Click Here

Closing Date : December 13, 2025





Subscribe


Apply for this Job