Information Security Officer Job Opportunities – National Social Security Fund (NSSF)

Job Title:  Information Security Officer

Organisation: National Social Security Fund (NSSF)

Duty Station:  Kampala, Uganda

Reports to: Information Security Manager

 

About US:

National Social Security Fund (NSSF) is positioning itself as the Social Security Provider of Choice in Uganda. With our shared purpose of being the Social Security Provider of choice, providing exceptional customer service and better operations with a well-motivated and skilled workforce, we are looking to recruit persons with high integrity and dedication to work with us.

 

Job Summary:  The Information Security Officer will be responsible for monitoring and assessing the Fund’s information assets to identify potential threats and risks, and recommend appropriate measures to ensure confidentiality, integrity and availability of data/information therein, to authorized users.

 

Key Duties and Responsibilities:

  • Implement information security and privacy policies, standard and procedures to protect the Fund from internal and external threats
  • Review and assess information security risks within new and existing systems, processes, policies and procedures and recommend relevant controls.
  • Conduct continuous vulnerability assessments and regular penetration tests on the Funds systems
  • Create a culture of security awareness by undertaking sensitization/training of staff on information security and privacy risks and control.
  • Work with all key process and system owners to ensure security and data privacy controls are considered at the outset of new projects, products and initiatives.
  • Administer information security monitoring systems for incident detection, response, risk mitigation, and threat management.
  • Implement identity management and access control strategies, policies, procedures, standards, and guidelines.
  • Create, revoke and manage identities/access for personnel, service accounts, applications, devices etc.
  • Control and monitor access to the Funds information assets to identify unauthorized access and potential malicious activities
  • Conduct regular user access reviews in collaboration with system, process and data owners.
  • Conduct regular audit log reviews and report any unusual or suspicious activities.
  • Work with system and process owners to develop, implement and maintain access control lists and matrices
  • Configure, implement, and manage identity management and access control technologies and tools
  • Establish, administer, and monitor privileged user accounts in accordance with a role-based access scheme
  • Support the Data Protection Officer in conducting data privacy impact assessments
  • Ensure that the IT infrastructure and systems are configured with appropriate technical controls to safeguard them against malicious attacks
  • Monitor compliance with information security policies, guidelines and standards and applicable laws and regulations





Qualifications, Skills and Experience:

  • The ideal applicant for the National Social Security Fund (NSSF) Information Security Officer job placement must hold a University Degree in Information Technology or Information Systems or Computer Science or Software Engineering is a must.
  • Professional qualifications such as CEH, CISA or equivalent is a must
  • Three years of experience in conducting IT risk or information security responsibilities in a substantial organization
  • Experience in administering information security tools, identity management and access control systems is an added advantage.
  • Strong understanding of information security risk, controls and principles
  • Sound knowledge of information security technologies e.g., WAF, NAC, SIEM, DLP, IAM, EDR
  • Understanding of Cloud technologies and the associated risks
  • Knowledge of networking protocols
  • Strong analytical, decision-making and problem-solving skills
  • Ability to explain complex security issues to non-technical stakeholders
  • Positive attitude towards learning and development
  • Ability to work with critical deadlines and prioritize workload effectively.
  • Knowledge of the Data Protection and Privacy Act and applicable regulations, National Information Security Framework, ISO 27001, NIST standards etc.

 

How to Apply:

All interested candidates should send application letters, detailed CVs and copies of academic credentials to the Head of Human Resources & Administration at [email protected] for registration and onward transmission.

 

NB: Please note that canvassing or lobbying will lead to automatic disqualification of the candidate

 

Deadline: 23rd February 2022

 

For more of the latest jobs, please visit https://www.theugandanjobline.com or find us on our facebook page https://www.facebook.com/UgandanJobline

Here are similar jobs : , ,

Job categories

Most popular job filters

ABSA Bank Accountant Administrative Assistant Aldelia and HR Beyond Limits Limited ALIGHT Arua Baylor College of Medicine Children’s Foundation -Uganda (Baylor-Uganda) Coca-Cola Beverages Africa CPA Danish Refugee Council (DRC) DFCU Bank Driver Entebbe Finance Officer Gulu Infectious Diseases Institute (IDI) International Rescue Committee (IRC) Jinja Kampala KCB Bank Uganda M-KOPA Mbarara Mota-Engil Africa MTN Uganda Mukono National Environment Management Authority (NEMA) NFT Consult Ltd Nile Breweries Limited Pride Microfinance Limited (MDI) (Pride) Procurement Officer Sales Executive Save the Children International Stanbic Bank TotalEnergies True North Consult Ltd Uganda Airlines Uncategorized United Nations United Nations High Commissioner for Refugees (UNHCR) United Nations World Food Programme (WFP) United Nations  Regional Service Centre in Entebbe (RSCE) United States US Embassy USAID USAID Project World Vision International

More posts

New jobs today: