Job Openings at KCB Bank Kenya

About KCB Bank Kenya
Kenya Commercial Bank Limited is a non-banking holding company that was established on January 1, 2016. It oversees KCB Kenya, which was incorporated on the same day, along with its regional subsidiaries in Uganda, Tanzania, Rwanda, Burundi, Ethiopia, and South Sudan. The group also manages KCB Insurance Agency, KCB Capital, KCB Foundation, and other related entities. The structure of the holding company supports greater access to capital, facilitates investments in non-banking sectors, grants operational autonomy to its subsidiaries, and strengthens corporate governance and oversight.

Information Risk Analyst
Job Type: Remote
Qualifications: BA/BSc/HND, Diploma
Experience: Minimum 5 years
Location: Kisumu, Kenya
Field: ICT / Computer

Key Responsibilities

  • Conduct regular assessments of IT risks, identifying and addressing potential issues, ensuring that management stays informed and that proper risk mitigation strategies are in place.
  • Provide expert guidance on information risk management during the development of systems, applications, and digital products, ensuring that security best practices are integrated.
  • Evaluate security risks within operating systems, web applications, and databases, offering comprehensive reports and recommendations for management.
  • Review and assess both logical and physical access controls to ensure system security is maintained.
  • Participate in penetration testing to identify vulnerabilities within the bank’s IT network.
  • Review and approve new systems before they are launched in a live environment.
  • Lead self-assessments, gap analyses, risk acceptance, and other control measures in collaboration with business units, compliance teams, and control functions.
  • Work alongside Risk Heads in subsidiaries to ensure adherence to the Group’s security standards.
  • Proactively evaluate potential cyber threats and vulnerabilities, working with the IT department to implement necessary security measures across subsidiaries.

Candidate Requirements

  • A Bachelor’s degree in Computer Science or a related field.
  • Relevant professional certifications such as CISSP, CISA, CISM, or CRISC.
  • A Master’s degree is advantageous.
  • Minimum of 4 years’ experience in IT-related roles, including:
    • 4 years in Information Technology across any domain.
    • 2 years in Information Risk Management.
    • 2 years in Systems Auditing.
    • 1 year of experience in Digital Forensics (preferred).
    • 2 years in Information Security.
    • 2 years in Change and Project Management.

Employment Type: Contract
Compensation: Approximately KES 380,000 per month, with payment based on tasks and deliverables, meaning actual earnings may fluctuate based on performance and role expectations.
Language Requirement: English