Cybersecurity Specialist ,Security Testing

Kenya

Apply now Apply later

KEY RESPONSIBILITIES:

  1. Conduct regular penetration tests and vulnerability assessments on networks, web applications, and other critical infrastructure.
  2. Develop, implement, and manage penetration testing schedules to identify, classify, report, and prioritize remediation of security vulnerabilities across the Group resulting in timely and effective security assessments.
  3. Use a variety of tools and techniques to simulate attacks on systems and uncover vulnerabilities.
  4. Develop and deliver reports on the status and effectiveness of the security testing program to internal leadership and all relevant stakeholders.
  5. Perform in-depth analysis of penetration testing results and create reports that describe findings, exploitation procedures, risks, and recommendations.
  6. Provide technical VAPT related support to projects in a bid to ensure compliance to technical security policies and standards. Execute penetration testing projects using the established methodology, tools, and rules of engagements.
  7. Develop, research, and maintain proficiency in tools, techniques, countermeasures, and trends in computer and network vulnerabilities, data hiding, and encryption.
  8. Cross-Functional Collaboration with other teams and departments to enable effective defence-in-depth controls through Red Team, Purple Team and Blue Team exercises. 
  9. Emulate advanced threat actors by planning, executing, and analysing complex attack scenarios. Help develop and refine tactics, techniques, and procedures (TTPs) used by adversaries.

MINIMUM POSITION QUALIFICATION REQUIREMENTS

  1. Academic & Professional
Particulars Detail Specific Field or Qualification Need Type[4] Education  Bachelor’s Degree B.Sc. Information Technology / Computer Science / Cybersecurity / Engineering (Electrical, Electronic) or related field RQ Professional Qualifications

Cybersecurity certification in either CISA/ CISM/ CISSP/ Security+ /

Cybersecurity certification in either CEH/CPT/CRT/GPEN/OSCP/ OSWA/OSWE/ LPT/ PenTest+/ ECSA/ CHFI/ or a relevant equivalent certification/Certified Red Team Expert (CRTE)/Certified Red Team Operator (CRTO)/ Bug Bounty Researcher (ICBBR)/ Certified Information Systems Security Tester (CISST)/PECB ISO/IEC 27001 Lead Auditor/

AT least one RQ or equivalent   Penetration Testing / Cybersecurity Assurance Certification   /Cisco Cyberops Associate & Professional or any relevant equivalent certification AA     Master’s Degree MBA / MSc  AA  

     2. Experience

Total Minimum No of Years of Experience Required                                                   5 Detail Minimum No of Years Need Type[5] Experience in Cybersecurity 3 ES Experience in Penetration Testing and Ethical hacking 3 ES Experience in Offensive Security and Red Teaming 2 ES Experience in System/ Network/ Database/ Containerization and Cloud Platform Administration 2 DE Experience with penetration testing frameworks and tools, such as Kali Linux, The Penetration Testers Framework, Metasploit, Canvas, Cobalt Strike, Burp Suite Pro, Nexpose, Nessus, Wireshark, Nmap 2 DE Experience in code review 2 ES

KCB Group is registered as a non-operating holding company which started operations as a licensed banking institution with effect from January 1, 2016. The holding company oversees KCB Kenya – incorporated with effect from January 1, 2016 – and all KCB’s regional units in Uganda, Tanzania, Rwanda, Burundi, Ethiopia and South Sudan. It also owns KCB Insurance Agency, KCB Capital, KCB Foundation, National Bank of Kenya, and all associated companies. The holding company was set up to among other things to enhance the Group’s capacity to access unrestricted capital and also enable investment in new ventures outside banking regulations, achieve operational and strategic autonomy for the Group’s operating entities and enhance corporate governance across the Group and oversight in the management of subsidiaries. Related documentation:  Group Name Change,   Name Change Certificate,  KCB Advise on Non-Operating Holding Company,  KCB Group Structure,  Kenya Gazette Notice.
Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  6  3  0

Tags: Banking Blue team Burp Suite CEH CHFI CISA CISM CISSP Cloud Cobalt Strike Compliance Computer Science ECSA Encryption Ethical hacking Governance GPEN Kali Linux Metasploit Nessus Nmap Offensive security OSCP OSWE Pentesting Red team Security assessment TTPs Vulnerabilities

Region: Africa
Country: Kenya

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.