IT Job At Zamara Kenya
Recruit Finds
Nairobi, Kenya
Job summary
Network & Security Engineer (1 Year Contract) at Zamara Kenya
About this role
Join Our Whatsapp Channel - CLICK HERE
Network & Security Engineer
Key Responsibilities
Zamara’s strategic goals require a strong and capable team to support the organization’s continued growth and success. The Network & Security Engineer will be responsible for establishing, implementing, and continually strengthening core security controls across Zamara’s technology environment.
The role will ensure that systems, applications, and infrastructure are secure by design, meet regulatory requirements, and follow recognized industry security practices.
Security Baseline Implementation
Establish and apply standard security requirements across infrastructure, applications, and endpoints.
Implement security controls based on frameworks such as ISO 27001, NIST, and CIS benchmarks.
Ensure servers, networks, cloud platforms, and user devices are securely configured.
Access Control & Identity Management
Apply the principle of least privilege across systems and technology environments.
Implement, manage, and monitor identity and access management (IAM) controls.
Improve authentication security through measures such as multi-factor authentication (MFA) and conditional access policies.
Monitoring & Threat Detection
Deploy and manage security monitoring solutions, including SIEM, endpoint detection, logging, and monitoring tools.
Identify and respond to unusual activity, unauthorized access, and potential security threats.
Set up alerts and reporting mechanisms for security incidents and breaches of established controls.
Data Protection & Resilience
Put measures in place to protect sensitive information from unauthorized access, loss, or compromise.
Support backup, disaster recovery, and ransomware protection initiatives.
Maintain safeguards against data corruption, accidental or unauthorized deletion, and data exfiltration.
Vulnerability & Risk Management
Carry out vulnerability assessments and coordinate the remediation of identified weaknesses.
Support penetration testing activities and monitor the resolution of identified security gaps.
Maintain the organization’s security risk register and follow up on risk mitigation activities.
Security Governance & Compliance
Support Data Protection Impact Assessments (DPIAs), security audits, and regulatory compliance activities.
Develop, maintain, and update security policies, standards, and operating procedures.
Ensure access provided to third parties and vendors is properly controlled and meets security and compliance requirements.
Security Awareness & Continuous Improvement
Promote security awareness among IT teams and business users.
Regularly evaluate the organization’s security position and identify opportunities to strengthen existing controls.
Integrate security practices into DevOps activities and system development processes.
Qualifications & Experience
Bachelor’s degree in Information Security, Computer Science, or a related field.
At least 5 years of experience in cybersecurity or IT security operations.
Demonstrated experience implementing security controls within enterprise environments.
Knowledge of security frameworks including ISO 27001, NIST, and CIS Controls.
Experience with Identity and Access Management (IAM), Active Directory, and Azure AD.
Knowledge of endpoint security, SIEM platforms, logging, and monitoring solutions.
Experience with vulnerability management tools and coordinating penetration testing.
Understanding of cloud security, preferably within Azure environments, as well as network security fundamentals.
Knowledge of backup, disaster recovery, and data protection technologies.
Core Competencies
Strong analytical and risk assessment capabilities.
Excellent attention to detail and a proactive approach to security.
Ability to align security requirements with business needs.
Strong communication and stakeholder engagement skills.
High level of integrity, accountability, and ownership.
