Manager - IT Security Job Vacancy at Rafiki Microfinance Bank

💼 This is a job posting
Job Ref: 975

Nairobi

Apply with a strong cover letter

Number of positions:
1 (one)

Location:
Central Office

Purpose of the Job
To lead the development and execution of strategies that enhance the bank’s information security posture.

Reports to:
Head of IT

Key Responsibilities
• Develop and implement information security policies, standards, and a comprehensive security strategy.
• Conduct risk assessments, gap analysis, and business impact analysis to manage and mitigate security risks.
• Lead the information security incident management program, focusing on prevention, detection, and response to security breaches.
• Serve as an internal consultant, advising on appropriate security controls and staying current on new technologies and regulations.
• Create and coordinate a bank-wide information security awareness program.
• Establish and maintain security policies, foster collaboration with vendors and auditors, and deliver critical security performance insights to executive leadership.
• Support the BCP team in preparing and aligning the bank’s disaster recovery plan with industry best practices.
• Provide timely support and resolution for IT system user issues.

Knowledge: Skills and Experience required for this Role 
• Bachelor’s Degree in Computer Science, Information Technology, Management Information Systems or a related area
• 7 to 8 years working experience in an Information Security Role
• Professional information security certification
• Interpersonal skills
• Organization skills
• Confidentiality
• Integrity
• Analytical skills.
• Systems knowledge

Additional Attributes

Company Name Rafiki Microfinance Bank
Application Deadline 2025-08-29

How to Apply

Interested candidates are requested to send their cover letter and CV to hr@rafiki.co.ke quoting information Security Manager in the e-mail subject on or before 29th August 2025 at 5:00 p.m.

Note: “Only shortlisted candidates shall be contacted”

Job Safety Tips

  • Never pay for a job application, interview or training.
  • Verify the company's official website, email domain and physical address.
  • Do not share sensitive personal info (ID, bank PINs).
  • Use official channels for interviews.
  • Report suspicious recruiters or requests to our support team.