Chief Information Security Officer
2026-07-23T11:30:01+00:00
Absa Bank
https://cdn.greatugandajobs.com/jsjobsdata/data/employer/comp_3160/logo/Absa%20Bank.png
https://www.absa.co.ug/personal/
FULL_TIME
Kampala
Kampala
00256
Uganda
Banking
Management, Computer & IT, Business Operations
2026-07-30T17:00:00+00:00
8
Job Summary
To lead the Bank’s cybersecurity function by driving the protection, detection, response, and recovery of information assets, while ensuring compliance with industry, regulatory, and internal standards to safeguard data and maintain acceptable cyber risk levels.
Job Description
Cybersecurity Strategy & Governance (40%)
- Oversee and implement the Bank’s cybersecurity programme and enforce cyber/technology policies.
- Ensure alignment of ICT strategy, systems development, and security controls with business objectives, risk appetite, and regulatory requirements.
- Design and maintain enterprise-wide cybersecurity controls for internal and external users.
- Review and approve exceptions to cybersecurity policies, ensuring risks remain within acceptable thresholds.
- Define and communicate clear roles and responsibilities for cyber risk management.
Risk Management, Monitoring & Reporting (35%)
- Conduct comprehensive cyber risk assessments at least annually.
- Ensure continuous monitoring of IT systems to detect and respond to cyber threats and incidents in a timely manner.
- Perform scenario analysis to identify vulnerabilities and control gaps.
- Report quarterly (or as required) to Executive Director on security posture, incidents, policy exceptions, and programme effectiveness.
- Safeguard confidentiality, integrity, and availability (CIA) of information assets.
Resilience, Capability Building & Continuity (20%)
- Maintain and regularly update incident response and Business Continuity Plans (BCP) based on threat intelligence.
- Oversee disaster recovery testing and ensure operational resilience during cyber incidents.
- Ensure robust data backup processes for critical systems.
Drive the people agenda (5%)
- Determine the people management strategy for the business unit aligned to the overall business strategy
- Take steps to build, develop and lead a cohesive and high performing leadership team within the business unit
- Drive the overall people agenda within the business unit to ensure that the human aspects to performance are considered and embedded in the business
- Take steps to establish and drive a high performance culture across the business unit by for example mentoring leaders and using the performance development framework informal coaching and formal learning as tolls
- Enable and drive transformation agenda in the business unit by implementing strategies
- Inspire and motivate people to achieve their potential by driving the values
Preferred Education
- A Bachelor’s degree in Cybersecurity, Information Technology, Computer Science or a related field from an accredited University
- Certified Information Systems Security Professional (CISSP) Certificate, Certified Information Security Manager or any relevant Cybersecurity certifications
- Master’s degree in a related field is an added advantage
Preferred Experience
- Minimum 10 year working experience in IT and Cyber Security Management with at least 5 years at Senior management in the banking sector.
Knowledge and Skills
Knowledge
- Knowledge of General IT Controls
- Knowledge and experience with COBIT, ITIL, ISO 2700/NIST
- Experience in network and IT infrastructure management
- Knowledge of Risk Management principles and practices (Solid)
- Comprehensive understanding of critical IT domains including system administration, software development and networking and database administration
- Understand the IT service delivery within a corporate environment
Skills:
- Ability to influence decisions with ability to lead strategy on future initiatives.
- Strong Computer skills and other Analytical tools
- Very strong communication skills, both verbal and written
- Excellent planning & organization skills
- Strong ability to view issues from a risk & control perspective
- Ability to work well under pressure, working accurately with attention to detail, and meeting deadline
- Oversee and implement the Bank’s cybersecurity programme and enforce cyber/technology policies.
- Ensure alignment of ICT strategy, systems development, and security controls with business objectives, risk appetite, and regulatory requirements.
- Design and maintain enterprise-wide cybersecurity controls for internal and external users.
- Review and approve exceptions to cybersecurity policies, ensuring risks remain within acceptable thresholds.
- Define and communicate clear roles and responsibilities for cyber risk management.
- Conduct comprehensive cyber risk assessments at least annually.
- Ensure continuous monitoring of IT systems to detect and respond to cyber threats and incidents in a timely manner.
- Perform scenario analysis to identify vulnerabilities and control gaps.
- Report quarterly (or as required) to Executive Director on security posture, incidents, policy exceptions, and programme effectiveness.
- Safeguard confidentiality, integrity, and availability (CIA) of information assets.
- Maintain and regularly update incident response and Business Continuity Plans (BCP) based on threat intelligence.
- Oversee disaster recovery testing and ensure operational resilience during cyber incidents.
- Ensure robust data backup processes for critical systems.
- Determine the people management strategy for the business unit aligned to the overall business strategy
- Take steps to build, develop and lead a cohesive and high performing leadership team within the business unit
- Drive the overall people agenda within the business unit to ensure that the human aspects to performance are considered and embedded in the business
- Take steps to establish and drive a high performance culture across the business unit by for example mentoring leaders and using the performance development framework informal coaching and formal learning as tolls
- Enable and drive transformation agenda in the business unit by implementing strategies
- Inspire and motivate people to achieve their potential by driving the values
- Ability to influence decisions with ability to lead strategy on future initiatives.
- Strong Computer skills and other Analytical tools
- Very strong communication skills, both verbal and written
- Excellent planning & organization skills
- Strong ability to view issues from a risk & control perspective
- Ability to work well under pressure, working accurately with attention to detail, and meeting deadline
- A Bachelor’s degree in Cybersecurity, Information Technology, Computer Science or a related field from an accredited University
- Certified Information Systems Security Professional (CISSP) Certificate, Certified Information Security Manager or any relevant Cybersecurity certifications
- Master’s degree in a related field is an added advantage
- Knowledge of General IT Controls
- Knowledge and experience with COBIT, ITIL, ISO 2700/NIST
- Experience in network and IT infrastructure management
- Knowledge of Risk Management principles and practices (Solid)
- Comprehensive understanding of critical IT domains including system administration, software development and networking and database administration
- Understand the IT service delivery within a corporate environment
JOB-6a61fb3997901
Vacancy title:
Chief Information Security Officer
[Type: FULL_TIME, Industry: Banking, Category: Management, Computer & IT, Business Operations]
Jobs at:
Absa Bank
Deadline of this Job:
Thursday, July 30 2026
Duty Station:
Kampala | Kampala
Summary
Date Posted: Thursday, July 23 2026, Base Salary: Not Disclosed
Similar Jobs in Uganda
Learn more about Absa Bank
Absa Bank jobs in Uganda
JOB DETAILS:
Job Summary
To lead the Bank’s cybersecurity function by driving the protection, detection, response, and recovery of information assets, while ensuring compliance with industry, regulatory, and internal standards to safeguard data and maintain acceptable cyber risk levels.
Job Description
Cybersecurity Strategy & Governance (40%)
- Oversee and implement the Bank’s cybersecurity programme and enforce cyber/technology policies.
- Ensure alignment of ICT strategy, systems development, and security controls with business objectives, risk appetite, and regulatory requirements.
- Design and maintain enterprise-wide cybersecurity controls for internal and external users.
- Review and approve exceptions to cybersecurity policies, ensuring risks remain within acceptable thresholds.
- Define and communicate clear roles and responsibilities for cyber risk management.
Risk Management, Monitoring & Reporting (35%)
- Conduct comprehensive cyber risk assessments at least annually.
- Ensure continuous monitoring of IT systems to detect and respond to cyber threats and incidents in a timely manner.
- Perform scenario analysis to identify vulnerabilities and control gaps.
- Report quarterly (or as required) to Executive Director on security posture, incidents, policy exceptions, and programme effectiveness.
- Safeguard confidentiality, integrity, and availability (CIA) of information assets.
Resilience, Capability Building & Continuity (20%)
- Maintain and regularly update incident response and Business Continuity Plans (BCP) based on threat intelligence.
- Oversee disaster recovery testing and ensure operational resilience during cyber incidents.
- Ensure robust data backup processes for critical systems.
Drive the people agenda (5%)
- Determine the people management strategy for the business unit aligned to the overall business strategy
- Take steps to build, develop and lead a cohesive and high performing leadership team within the business unit
- Drive the overall people agenda within the business unit to ensure that the human aspects to performance are considered and embedded in the business
- Take steps to establish and drive a high performance culture across the business unit by for example mentoring leaders and using the performance development framework informal coaching and formal learning as tolls
- Enable and drive transformation agenda in the business unit by implementing strategies
- Inspire and motivate people to achieve their potential by driving the values
Preferred Education
- A Bachelor’s degree in Cybersecurity, Information Technology, Computer Science or a related field from an accredited University
- Certified Information Systems Security Professional (CISSP) Certificate, Certified Information Security Manager or any relevant Cybersecurity certifications
- Master’s degree in a related field is an added advantage
Preferred Experience
- Minimum 10 year working experience in IT and Cyber Security Management with at least 5 years at Senior management in the banking sector.
Knowledge and Skills
Knowledge
- Knowledge of General IT Controls
- Knowledge and experience with COBIT, ITIL, ISO 2700/NIST
- Experience in network and IT infrastructure management
- Knowledge of Risk Management principles and practices (Solid)
- Comprehensive understanding of critical IT domains including system administration, software development and networking and database administration
- Understand the IT service delivery within a corporate environment
Skills:
- Ability to influence decisions with ability to lead strategy on future initiatives.
- Strong Computer skills and other Analytical tools
- Very strong communication skills, both verbal and written
- Excellent planning & organization skills
- Strong ability to view issues from a risk & control perspective
- Ability to work well under pressure, working accurately with attention to detail, and meeting deadline
Work Hours: 8
Experience in Months: 120
Level of Education: bachelor degree
Job application procedure
Apply now
All Jobs | QUICK ALERT SUBSCRIPTION