Kenya Power

Systems Security Analyst I at Kenya Power

Nairobi, Kenya
April 3, 2024
Application deadline closed.
Deadline date:
Application deadline closed.

Job Description

Systems Security Analyst I at Kenya Power

Our client, The Kenya Power and Lighting Company Plc is a well-established and recognized leader in electricity distribution and retail in the region. KPLC is established as a limited liability Company under the Companies Act, Cap 486, Laws of Kenya. The Company’s key mandate is to purchase bulk electricity supply, transmit, distribute and retail electricity to end-user customers throughout Kenya. The Company is seeking to recruit qualified, results driven and agile persons to fill the following vacant position;

Applicants MUST upload the following documents during application:

  • A Signed application letter;
  • A detailed Curriculum Vitae indicating their current and previous employers, positions held,
  • current and expected salary, level of education, and names of at least three professional
  • referees, two of which must be working in the current organization; and Copies of transcripts, academic, and professional certificates.

Youth, female candidates, Persons with Disability (PWD), and marginalized community

candidates are strongly encouraged to apply.

Canvassing is discouraged and will lead to disqualification.

Applications are to be received not later than 5.00 P.M. on 22nd April 2024.

Job Description

Reporting to the Principal System Analyst, the successful candidates will be responsible for implementing, reviewing and aligning ICT Systems, Databases and Business applications acquisition and development policies, procedures and practice to ensure that they comply with IT industry standards to fully secure the Company’s data and information. The specific tasks will entail:-

Assist in planning for short and long-term resources requirements for the section.

  • Work with database administrators, systems developers and application owners to review and implement security controls to mitigate system security threats/risks throughout the system/program life cycle.
  • Review procedures and processes to identify security control gaps in systems development, acquisition and maintenance to ensure that threats are properly identified, analyzed and mitigated.
  • Participate in investigations on computer security compromises, incidents, or problems and recommend corrective actions.
  • Review application, system and database logs and audit trails to identify violation to procedures and processes.
  • Research on emerging threats and vulnerabilities in information security to gain awareness of the latest information security technologies and developments.
  • Review version, patch management procedures and practices in all systems, and where necessary develop and implement measures to improve the same.
  • Implement procedures to automate and enhance monitoring of business applications, databases and systems, including user and process activities.
  • Identify and develop security and productivity-enhancing improvements and innovation.
  • Coordinate security measures for information systems to regulate access to system data and information to prevent unauthorized modification, destruction, or disclosure of information.
  • Train users and promote security awareness to ensure system security and to improve server and network efficiency.
  • Consult with users on data and information access and processing needs, to mitigate against security violations, and programming changes.
  • Recommend modification or update audit monitoring systems and solutions to incorporate new applications, databases and systems, or change individual access status
  • Coordinate execution of implementation plan of system changes/upgrade between IT, user departments and outside vendors to alleviate security violations
  • Perform risk assessments to identify violation or vulnerabilities to procedures and execute tests on applications to ensure that data availability, confidentiality and integrity is maintained and as well guarantee compliance to standards and process activities and advise/recommend corrective action.
  • Maintain access management reports and processes to identify access events, exceptions, or trends which require investigation, remediation, or mitigation
  • Contribute to the information security planning, assessments, risk analysis, risk management, certification and awareness activities for system operations.

Interested applicants must possess the following;-

Job Specifications

  • Bachelor of Science Degree in Computer Science, Information Technology, Electrical & Electronics Engineering or related field from a recognized Institution.
  • Possession of an advanced level Information Security Certification from  a recognized Institution
  • Certification  in Information Security Management (CISM) or equivalent will be an added advantage
  • Good knowledge in Network, Operating Systems and Database Security.
  • Five (5) years relevant working experience in Information Security

Technical Capabilities & Key Competencies

  • Experience in System vulnerability checks and threats analysis including penetration testing.
  • Proficiency in computer applications as in Serve Systems administration, Database Servers, Programming and Systems analysis.
  • Understanding best practices in systems security and controls.
  • Good project management skills.
  • Excellent planning, presentation, evaluation skills
  • Creativity and innovation
  • Drive for results and achievement
  • Insightful, proactive and future focused
  • Demonstrates high level of integrity

Systems Security Analyst I at Kenya Power