Product Security Architect-GIS at Equity Bank Kenya

Full Time
Employment Info

Work Reason:

The Item Security Engineer will be answerable for planning and improvement of safety control for the Business, Fintech, and computerized drives. He/she will work intimately with the different business group to figure out the item and administrations and further suggest security controls for consideration. The controls ought to be less business problematic, uphold digital control, diminish extortion and is frictionless with business objective.

The Item Security Modeler guarantees existing and new business administrations and items have satisfactory security controls and adjust to Value Strategies, techniques and principles.

Work Liabilities/Accountabilities:

Engineering:

Figure out security explicit prerequisites for business administrations for Business, Fintech, and computerized drives
Work intimately with all the business groups to plan and integrate security as a feature of item improvement
Work intimately with the other innovation planners to guarantee that security is appropriately implanted in their innovation areas designs
Work freely with engineers, framework/network chairmen, item proprietors, and different associates to guarantee secure plan, advancement, and execution of utilizations and organizations
Perform security configuration audits of uses, frameworks, and organizations
Give remediation direction and suggestions to engineers and overseers
Characterize security best practices and guidelines, translator same to business and item proprietors
Knowledge of normal weaknesses and assault vectors
Prompt item and entrepreneurs on encryption advancements (PGP, SSH, SSL, and so on) and normal validation conventions (OpenID Interface, OAUTH, SAML, Sweep, LDAP, KERBEROS, and so on.)
Driving and adding to the security stance of Value’s organizations and frameworks, server farm foundations, cloud structures and arrangements
Creating as well as doing the essential bearing of safety tasks to empower execution of the data security procedure.

Technique:

Astounding comprehension of client exchange stream of business and Fintech administrations
Indepth comprehension of social designing shortcomings and countermeasures
Comprehend B2C, B2B and C2C plan of action corresponding to security controls
Capacity to improve on investigation and present outcomes plainly at all levels of the business – including at senior supervisory group level.

Capabilities

Information and Experience

A Degree or its comparable in Data Innovation, Organization Security, Endeavor Organization The executives, Data Security, The board Data Framework Registering, Designing or comparable area of study
Applicable industry confirmations in data security program and administration as well as PMP will be an additional benefit
Least of 2 years working in data security administration
Least of 1 year functioning as a business examiner in specialized security and IT
Great comprehension of plans of action and administrations in monetary, telecom and FinTech area
Great comprehend of client, dealer combination model
An incredible colleague who is scientific, coherent and ready to work with other Item group which are committed to making Value items and advancements as secure as could really be expected
Experience with making specialized documentation: item documentation, innovation, programming and frameworks engineering, and specialized whitepapers
Working involvement in the accompanying ideas: SSL Crypto Arrangements, Information Assurance and Security, Programming Improvement Philosophies (For example Dexterous), Programming interface Entryways, Information Examination
Solid cross-area and cross-utilitarian information that will empower plan of the most ideal security innovation arrangements
Has great comprehension of the SSDLC cycle and follows the interaction to create and plan arrangements successfully
Capacity to work as a singular supporter and coach/pioneer segregated from the professional workplace
Great comprehension of Open Application Programming Point of interaction plan of action
Great figuring out ISO27001 and PCI-DSS confirmation
Experience of distinguishing and overseeing innovation security risk
Modern information on future IP and organization security advances, gear and their advantages
Far reaching information on various IP and organization security merchants and arrangements, and made due.

Key Basic Capabilities

Capacity to know when to carry out arrangements with thought to the more extensive effects for example risk, cost, client influence, timescales, and so forth.
Incredible exchange, and composed and verbal show abilities
Capacity to deal with high strain circumstances with key partners
Great Insightful abilities, Critical thinking and Relational abilities
Profound information on big business application advancement security controls
Some information on Telco assembly, FinTech network traffic utilization

Equity Bank Kenya