Information Security Governance Job in Kenya


Cellulant is a mobile commerce company. It operates Africa’s number one mobile commerce network and aims to connect 100 million customers to its mobile commerce ecosystem. Cellulant was founded in 2003 and has currently operations in Kenya, Nigeria, Tanzania, Uganda, Rwanda, Ghana, Zimbabwe, Mozambique, Malawi, Zambia, Botswana and every year moving into new countries.
 
We are the mobile commerce partner of choice and our goal is to connect all of our corporate customers, including e.g. the top Pan African banks, various merchants, to the richest mobile commerce ecosystem in Africa, helping them provide better communication, and more services, and more value to their end consumers. 

We do that by providing services like mobile banking, mobile payments, music, information services and other mobile related services.
 
To be able to meet these aggressive growth expectations we need to grow our dynamic team.
 
We are recruiting a highly motivated Implementation Engineers keen to utilize their existing skills and develop new ones that will enable them to add to the success of the organization as well as their own
 
We invite you to be part of that growth. 

We seek to recruit pro-active and self - driven individuals to fill the position below;
 
Information Security Governance
 
The successful candidate is expected to Coordinate security related issues and ensure the Company systems are secure.

Key result areas
  • Implementation of ISO 27001 compliant information security policies, controls and processes
  • Conduct of data vulnerability assessment and penetration testing
  • Planning and conduct of internal audits for ISO 27001 compliance verification
  • Support to departments and projects for implementation of information security management system
  • Conduct information security training regularly as required in the Information Security Management System.
Required competencies
  • Degree in Computer Science or IT related field.
  • Understanding of advanced security protocols and standards
  • An in depth understanding of information security, security policies, account security policies and standards for logical and physical security implementations.
  • A basic knowledge of Regulatory Compliance as it affects the relevant industry.
  • A good understanding of the information security control measures as defined in ISO-27001.
  • A working knowledge of risk assessment as it is applied to information security.
  • The ability to perform, manage and run information security audits using various tools including Metasploit, Back Track, S.E.T, SQLMap, W3AF,
  • A sound understanding of security architecture, Linux firewall policy, IPS/IDS configuration, audit trails
Required skills
  • Strong communications skills, both written and oral
  • Organized, responsive and highly thorough problem solver
  • Ownership of issues through to resolution
  • Developing positive working relationships with a wide range of internal and external people
  • Absolutely trustworthy with high standards of personal integrity
Key Performance Indicators/Deliverables
  • Time taken to resolve issues: high severity within 10 minutes and low severity issues, 30 minutes
  • System uptime
  • Identify risks and provide solutions to avoid threat
  • Recommend necessary measures to ensure there are no intellectual property loss, revenue risk and sensitive information leakage.
  • Support day-to-day administration of various firewalls
Interested candidates are requested to submit their CVs and a convincing cover letter to pdc.recruitment@gmail.com indicating the job title applied for by 31st May 2013. 

Only shortlisted candidates will be contacted.