Systems Security Analyst I - Nairobi, Kenya - Kenya Power

    Kenya Power
    Default job background
    Full time
    Description

    ABOUT THE COMPANY

    Kenya Power owns and operates most of the electricity transmission and distribution system in the country and sells electricity to over 2.6 million customers (as at April The Company's key mandate is to plan for sufficient electricity generation and transmission capacity to meet demand; building and maintaining the power distribution and transmission network and retailing of electricity to its customers.

    JOB SUMMARY

    Job SpecificationsBachelor of Science Degree in Computer Science, Information Technology, Electrical & Electronics Engineering or related field from a recognized Institution.Possession of Information Security Certification from a recognized InstitutionCertification in Information Security Management (CISM() will be an added advantageKnowledge in Network, Operating Systems and Database Security.Five(5) years relevant working experience from a reputable organization

    RESPONSIBILITIES

    Assist in planning for short and long-term resources requirements for the section.Work with database administrators, systems developers and application owners to review and implement security controls to mitigate system security threats/risks throughout the system/program life cycle.Review procedures and processes to identify security control gaps in systems development, acquisition and maintenance to ensure that threats are properly identified, analyzed and mitigated.Participate in investigations on computer security compromises, incidents, or problems and recommend corrective actions.Review application, system and database logs and audit trails to identify violation to procedures and processes.Research on emerging threats and vulnerabilities in information security to gain awareness of the latest information security trends and developments.Review version, patch management procedures and practices in all systems, and where necessary develop and implement measures to improve the same.Implement procedures to automate and enhance monitoring of business applications, databases and systems, including user and process activities. Identify and develop security and productivity-enhancing improvements and innovation.Coordinate security measures for information systems to regulate access to system data and information to prevent unauthorized modification, destruction, or disclosure of information.Train users and promote security awareness to ensure system security and to improve server and network efficiency.Consult with users on data and information access and processing needs, to mitigate against security violations, and programming changes.Recommend modification or update audit monitoring systems and solutions to incorporate new applications, databases and systems, or change individual access statusCoordinate execution of implementation plan of system changes/upgrade between IT, user departments and outside vendors to alleviate security violationsPerform risk assessments to identify violation or vulnerabilities to procedures and execute tests on applications to ensure that data availability, confidentiality and integrity is maintained and as well guarantee compliance to standards and process activities and advise/recommend corrective action.Maintain access management reports and processes to identify access events, exceptions, or trends which require investigation, remediation, or mitigationContribute to the information security planning, assessments, risk analysis, risk management, certification and awareness activities for system operations.

    REQUIRED SKILLS

    Risk management, Information security, System and network security, System architecture, Security operations, System administration, Database administration, IT support, Troubleshooting

    REQUIRED EDUCATION

    Bachelor's degree