About Company
Equity Bank is a leading financial services group in East and Central Africa, committed to transforming livelihoods, driving economic growth, and offering inclusive financial solutions. With a robust presence across the region, including a significant network in Kenya, Equity Bank prides itself on innovation, customer-centricity, and sustainable impact. As a technology-driven institution, safeguarding our digital assets and customer data is paramount to our continued success and the trust our millions of customers place in us. We foster a culture of integrity, excellence, and continuous improvement, empowering our employees to make a tangible difference in the communities we serve.
Job Description
As Chief Information Security Officer (CISO) at Equity Bank, Embu County, you will be the principal architect and guardian of our information security strategy and operations. This is a critical leadership role responsible for defining, implementing, and managing the overall information security program to protect the bank’s digital assets, customer data, and technological infrastructure from evolving cyber threats. You will lead a dedicated team, champion a security-first culture, and ensure compliance with both local and international regulatory frameworks such as the Central Bank of Kenya (CBK) guidelines, PCI DSS, GDPR, and other relevant data protection acts. The CISO will report directly to senior leadership, providing strategic guidance on risk management, incident response, security architecture, and threat intelligence. Your expertise will be vital in balancing security imperatives with business objectives, fostering innovation securely, and building a resilient information security posture that supports Equity Bank’s growth and reputation. This role demands a visionary leader with a deep understanding of financial services security challenges, capable of translating complex security concepts into actionable strategies for diverse stakeholders. You will be instrumental in safeguarding our operational continuity and customer trust in an increasingly complex digital landscape.
Key Responsibilities
- Develop, implement, and maintain a comprehensive information security program aligned with business objectives, regulatory requirements, and international best practices.
- Establish and enforce robust security policies, standards, and procedures across all bank operations and technology platforms.
- Lead and manage the information security team, including hiring, training, performance management, and career development.
- Oversee regular risk assessments, vulnerability management, and penetration testing activities to proactively identify and mitigate security vulnerabilities.
- Develop, implement, and regularly test an effective incident response plan, leading forensic investigations and post-incident analysis.
- Stay abreast of emerging cyber threats, security technologies, and regulatory changes, advising senior management on potential impacts and mitigation strategies.
- Collaborate with IT, legal, compliance, internal audit, and various business units to integrate security best practices into all projects, systems, and processes.
- Manage and enhance security awareness training programs for all employees to foster a strong, organization-wide security culture.
- Ensure continuous compliance with local and international data protection laws, including CBK guidelines, PCI DSS, GDPR, and other relevant industry standards.
- Report on the status of information security to the Board of Directors and senior leadership, providing insightful analysis, recommendations, and strategic direction.
- Manage security budgets, technology procurements, and relationships with third-party security vendors.
Required Skills
- Minimum of 10 years of progressive experience in information security, with at least 5 years in a senior leadership or CISO role within the financial services sector.
- Demonstrated experience in developing and implementing comprehensive information security strategies and programs for large enterprises.
- Deep understanding of security frameworks (e.g., ISO 27001, NIST, COBIT) and regulatory requirements (e.g., CBK Prudential Guidelines, PCI DSS, GDPR).
- Strong technical background in network security, application security, cloud security, data protection, identity and access management, and incident response.
- Proven leadership skills with the ability to build, mentor, and motivate high-performing security teams.
- Excellent communication, presentation, and interpersonal skills, capable of influencing stakeholders at all levels of the organization.
- Strategic thinking with the ability to balance security risks with business enablement and innovation.
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related technical field.
Preferred Qualifications
- Master’s degree in Cybersecurity, Information Systems, or Business Administration.
- Industry certifications such as CISSP, CISM, CISA, CRISC, CEH, or equivalent.
- Experience with advanced security technologies like AI/ML-driven threat detection, Security Orchestration, Automation, and Response (SOAR), and zero-trust architectures.
- Proven experience in managing complex security budgets and large-scale vendor relationships.
- Prior experience working with regulatory bodies in the financial sector.
Perks & Benefits
- Highly competitive salary and performance-based incentives.
- Comprehensive medical, dental, and life insurance coverage.
- Robust retirement savings plan and provident fund.
- Generous professional development opportunities, including training allowances for certifications and executive programs.
- Exclusive employee banking benefits and preferential rates.
- Significant paid time off, including annual leave and public holidays.
- A collaborative, innovative, and impactful work environment at a leading financial institution.
- Opportunities for career growth and exposure to regional security challenges.
How to Apply
Interested candidates are invited to apply by clicking on the link below. Please submit your detailed resume and a compelling cover letter outlining your qualifications, relevant experience, and vision for information security leadership at Equity Bank. Ensure your application clearly demonstrates how your skills and experience align with the requirements of this pivotal role.
