Candidates Testimonials – How C.S.S Got Me Hired
Advice From Our Recruitment Team – By Carolyne N. – Head Of Recruitment
Personalized Support for Your Success
Upcoming Trainings & Events – Leadership & Career Growth Events
Cybersecurity Assurance Specialist Job NCBA
Cybersecurity Assurance Specialist Job. IT Jobs In Kenya
Job Purpose Statement
The Cybersecurity Assurance Specialist is responsible for conducting General IT Controls (GITC) assessments within production systems. This proactive role aims to audit production environments before compliance teams flag potential issues, ensuring vulnerabilities, gaps, and misconfigurations are identified and remediated. The primary focus will be on auditing critical IT controls and configurations to maintain and enhance the organization’s security posture. For issues that cannot be immediately addressed, the role will ensure they are properly documented in the Risk Control Self-Assessment (RCSA) for further remediation and mitigation
Read More>>>>How Angela Landed a Job Through CSS LinkedIn
Key Accountabilities (Duties and Responsibilities)
Proactive GITC Auditing and Vulnerability Identification (30%):
- Conduct regular audits of production systems to assess GITC and identify gaps in configurations, security controls, and vulnerabilities.
- Perform thorough reviews of access controls, system configurations, data integrity, and compliance with internal policies and industry standards.
- Identify security risks and proactively recommend appropriate remediation actions to mitigate threats.
Risk Control Self-Assessment (RCSA) Documentation (30%):
- Work closely with Governance and Compliance teams to document key findings in the RCSA.
- Ensure that any gaps or issues that cannot be immediately resolved are properly recorded and tracked in the RCSA, with clear action plans for resolution.
- Continuously review and update the RCSA to reflect the current security and compliance posture of production systems.
Collaboration and Reporting (20%):
- Provide regular reports and recommendations to management and stakeholders on the status of audits, security risks, and remediation efforts.
- Collaborate with internal teams such as IT, security, and operations to ensure that gaps are effectively closed and issues are remediated in a timely manner.
- Support ongoing compliance initiatives by providing insights into security vulnerabilities and assisting with external audits.
Support and Continuous Improvement (20%):
- Assist in the preparation and execution of internal penetration tests and security assessments.
- Continuously assess and improve current auditing and testing processes for efficiency and effectiveness.
- Provide recommendations on tools, processes, and methodologies to enhance the security posture of production system
Job Specifications
- Minimum of 4 years of experience in IT auditing, specifically in GITC, vulnerability assessments, and security controls within production systems.
- Strong knowledge of security frameworks, regulatory standards (ISO 27001, NIST, SOC 2, GDPR), and security testing tools.
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field; certifications such as CISA, CISSP, or CISM are preferred.
- Experience as an IT Auditor in GITC, with expertise in auditing production systems, access controls, and the general audit lifecycle.
- Strong attention to detail, communication skills, and ability to identify and resolve risks proactively.
- Excellent analytical and problem-solving skills, with the ability to manage multiple audit tasks and collaborate with cross-functional teams
Read More>>>4 Reasons Why a Professional CV Is Key to Landing A Dream Job
How to Apply
Click Here to Apply
🚨 Before You Apply for This Job. Need Help With Your CV?
This job will attract 1000+ applicants.
Many qualified professionals miss out on getting shortlisted and interviews — not because they lack experience, but because their CV doesn’t clearly show how they fit this specific job.
🎯 Want to get an interview fast? Customize your CV specifically for this job.
Using the same CV for every application will not get you interviews.
Email your CV today to our Client Service Manager, Rose, using cvwriting@corporatestaffing.co.ke
Subject: CV Review & Upgrade.
Rose and our recruiters will review your CV and show you exactly how to improve it for the job you are targeting.
Using an A.I-generated CV but not getting interviews? Get it reviewed here by our recruiters today.

