Information TechnologyFull-TimeEntry-level(0-1 yr)
Job Description
Role Overview
Based in Nairobi and reporting to the Chief Information Security Officer, the Local Information Systems Officer (LISO) is responsible for ensuring appropriate controls are in place for the security of information systems. The role involves safeguarding information by identifying, assessing, and accurately reporting security risks across the East and Southern region.
Key Responsibilities
Policy Management: Apply and distribute the Central Information System Security Policy (ISSP) and adapt it to the specific regional perimeter.
Strategic Implementation: Implement central information security strategies (both short-term and long-range) in alignment with AGL Group standards.
Audits and Reviews: Thoroughly conduct and complete annual reviews and audits by engaging with internal business partners and external parties.
Team Leadership: Manage the LISO security team to oversee ongoing cyber security activities within the region.
Risk Assessment: Execute proactive risk assessment programs for all new and existing systems, maintaining familiarity with business goals to implement effective controls in high-risk areas.
Management Reporting: Communicate identified risks and mitigation recommendations to senior management to facilitate informed decision-making.
Policy Oversight: Oversee the development, implementation, and maintenance of information security policies and procedures, ensuring they protect data at rest and in motion and comply with group standards.
Incident Response: Evaluate security incidents and determine what response, if any, is needed and coordinate with technical incident response teams during data breaches.
Qualifications and Requirements
Education: Bachelor's Degree in IT or a related equivalent field.
Certifications (Mandatory): Must hold certifications in ISO27001, ISO27002, and ISO27005.
IT Service Management: ITIL Foundations Certified.
Preferred Certifications: Professional credentials such as CISSP, CISM, CISA, or other information security certifications are highly advantageous.