Back to Jobs
Cyber Security Specialist
Absa · Kenya · Full-time
IT & Cybersecurity Easy Apply
Apply Now
Posted 2 weeks ago · Job #57
About the Role

Role Purpose

The Cyber Security Specialist will be responsible for strengthening the bank’s IT risk posture by ensuring that all systems, processes, and controls operate securely and in line with regulatory requirements. This role focuses on proactive risk management, compliance with enterprise-wide frameworks, and safeguarding critical information assets against evolving cyber threats.

Key Responsibilities

Risk & Compliance Oversight (60%)

Cyber risk assessment: Evaluate exposures related to cybersecurity and align them with the bank’s defined risk appetite.

Regulatory monitoring: Track emerging risks, laws, and regulations to recommend timely actions.

Stakeholder collaboration: Work with teams across the bank to design and configure effective security controls.

Risk register management: Maintain and update registers of key risks, ensuring forward-looking identification and incident handling.

Policy implementation: Drive adoption of cyber and information risk management strategies, policies, and standards.

Information security: Safeguard the confidentiality, integrity, and availability of technology platforms.

Reporting: Prepare posture reports for submission to risk committees.

Vulnerability management: Identify, prioritize, and remediate vulnerabilities within agreed timelines.

Project security reviews: Ensure new initiatives undergo security assessments aligned with policies.

Testing coordination: Manage penetration tests, red team engagements, and audits with internal and external assessors.

Incident response: Collaborate with the incident response and forensics teams to contain and remediate threats.

Regulatory reporting: Report incidents to regulators in line with prudential guidelines.

Risk Measurement & Reporting (20%)

Establish parameters to measure cyber risk exposure.

Monitor adherence to policies and standards, driving remediation where needed.

Provide consistent, comprehensive risk reporting to senior leadership and stakeholders.

Awareness & Training (10%)

Lead cybersecurity awareness programs across the bank.

Develop customer-facing awareness circulars.

Deliver tailored awareness sessions for board members.

Threat Intelligence & Research (10%)

Research emerging cybercrime trends and share actionable intelligence.

Coordinate red team exercises and penetration testing for applications and infrastructure.

Risk & Control Objective

All activities must comply with regulatory requirements, enterprise-wide risk frameworks, and internal policies. The role requires proactive management of risks and incidents relevant to cybersecurity operations.

Requirements

Skills & Competencies

Strong knowledge of Linux and Windows operating systems.

Expertise in network monitoring and traffic analysis.

Hands-on experience with vulnerability assessment and penetration testing.

Proficiency in risk assessment and incident response.

About Absa
Absa
Banking & Finance · 10,001+ employees

Absa Group Limited is one of Africa's largest diversified financial services groups, headquartered in Johannesburg, South Africa. Present in 12 African countries, Absa provides retail, business, corporate, and investment banking alongside insurance and wealth management services to over 12 million customers, combining deep local knowledge with the capabilities of a pan-African institution.

🧭
Application Guide for This Role
Tailored tips to help you stand out and prepare confidently
🔒 What IT & Cybersecurity Hiring Managers Look For

Security and IT roles demand precision, documentation discipline, and a risk-first mindset. Hiring managers look for candidates who can communicate threats in business terms, not just technical ones — and who stay ahead of threat vectors without needing to be told.

How to Stand Out
  • List certifications prominently (CompTIA Security+, CISSP, CEH, AWS Security Specialty) — they're taken seriously in this field.
  • Describe a real incident you responded to: what was the threat vector, your containment steps, and the post-incident review?
  • Show experience with the tools in the job description: SIEM platforms, EDR solutions, penetration testing tools, or cloud IAM.
  • Demonstrate compliance awareness (SOC 2, ISO 27001, GDPR, HIPAA) if the company operates in a regulated industry.
Likely Interview Questions
  1. Walk me through how you'd respond to a suspected phishing breach affecting 200 employees.
  2. How do you stay current with emerging CVEs and threat intelligence?
  3. Describe how you'd perform a risk assessment for a new SaaS tool the company wants to adopt.
  4. What's the most creative social engineering attack you've seen or simulated?
Pro tip: Set up a home lab using VirtualBox or TryHackMe rooms in the specific domain (cloud, network, web app) this role covers — it gives you concrete, recent examples to discuss.
📄 About Full-Time Employment Roles

Full-time roles typically include benefits (health insurance, pension contributions, paid leave). During salary negotiation, always consider the total compensation package — benefits can be worth 20–30% on top of base salary. Ask specifically about probation period, performance review cadence, and remote/hybrid flexibility before signing.

✅ Before You Hit Submit
📝
Tailor your CV
Remove irrelevant roles. Match your language to the job description — ATS systems score keyword alignment.
💌
Write a real cover note
One paragraph that explains why this specific company, this specific role, right now. Generic notes go unread.
🔍
Research the company
Know their product, recent news, funding stage, and competitors. Bring one insight to your interview.
🔗
Clean up your LinkedIn
Make sure your profile matches your CV and your headline reflects the role you want, not the one you are leaving.
Job Overview
Salary Competitive
Type Full-time
Location Kenya
Category IT & Cybersecurity
Posted May 7, 2026
Apply Now
Free Daily Digest
Stay ahead of the job market

New jobs, scholarships and career tips — delivered to your inbox daily. Unsubscribe any time.