SENIOR IT SECURITY & GOVERNANCE OFFICER

JOB DESCRIPTION FOR SENIOR IT SECURITY & GOVERNANCE OFFICER

 

 

 

Main Purpose of the Job

Responsible for developing, implementing, and maintaining standards and systems that ensure secure ICT systems and data.

Responsibilities

1. Develop and maintain ICT governance frameworks and processes to manage risks effectively and ensure compliance with internal policies and regulatory requirements.

2. Develop and implement comprehensive cybersecurity strategies, policies, and procedures to protect the bank’s ICT infrastructure, systems, and data assets.

3. Develop and maintain incident response plans and procedures to ensure a swift and organized response to security incidents.

4. Carry out daily system monitoring, verifying the integrity and availability of all hardware, server resources, systems, and critical processes, reviewing system and application logs, and verifying completion of scheduled jobs such as backups.

5. Establish and enforce ICT security policies, procedures, and controls to protect the bank’s information assets and customer data.

6. Monitor compliance with regulatory requirements and industry standards related to ICT security and data privacy.

7. Create and manage information security and risk management awareness training programs for all employees, contractors, and approved system users.

8. Participate in security incident and event management to protect ICT assets, including intellectual property, regulated data, and the Bank’s reputation.

9. Monitor the external threat environment for emerging threats and advise relevant stakeholders on the appropriate courses of action.

10. Follow up the consistent application of policies and standards across all technology projects, systems, and services, including, but not limited to, privacy, risk management, compliance, and business continuity management.

11. Ensure that ICT security is considered in evaluating, selecting, installing, and configuring applications.

12. Recommend and coordinate the implementation of technical controls to support and enforce defined security policies.

13. Research, evaluate, design, test, recommend, or plan the implementation of new or updated information security hardware or software.

Position Senior IT Security & Governance Officer

Department IT Security and Governance Department

Reports to Manager, IT Security and Governance (CISO)

Supervises: IT Security & Governance Officer

Interacts/interfaces with: Internal: Heads of Departments, Business & Operational Delivery Teams External: NA

14. Ensure that substantive Disaster Recovery and Business Continuity plans are regularly tested and updated.

15. Manage security technologies such as firewalls, intrusion detection systems (IDS), antivirus software, and encryption tools to ensure effective protection against cyber threats

16. Comply with AML/CFT/CPF policies and procedures, non -compliance of which shall be addressed as per the bank disciplinary processes.

17. Any other duty as shall be assigned to you from time to time.

Person Specification (Education, training, skills and experience

Qualifications

• Bachelor’s Degree in Computer Science, Information Technology or any other related field.

• At least one of the following certifications, CISM, CISSP, CRISC, and CASP+ or other certifications.

 

Experience

5 years’ experience in ICT Operations 2 of which should be in ICT security and/or ICT governance.

 

Competencies & Knowledge

· Relevant experience in IT governance, risk management, and compliance within the banking or financial services industry.

· Strong understanding of regulatory requirements and industry standards related to ICT governance, risk management, and cybersecurity.

· Strong skills in business process analysis, and redesign.

· Strong skills in assessing complex governance and compliance issues and developing effective solutions.

· Strong understanding of banking operations, Fintech, and product development trends.

· Strong understanding of digital banking services.

· adaptable to technological advancements, regulatory changes, and shifting business priorities

· Strong communication and interpersonal skills

· ability to analyze complex issues

· Strategic Thinking

· Must be a person of integrity.

· Risk management skills

· Proficiency in English Language and any other local language, preferably Luganda.

NOTE: Tropical Bank Ltd is an equal opportunity employer. All applicants wil be considered for employment without attention to race, color, religion, sex, national origin or disability status Recruitment is strictly based on ment Offering, soliciting, or accepting any form of undue advantage during the recruitment process will result in automatic disqualification.

DEADLINE is  30th SEPTEMBER 2026

In accordance with the Uganda Data Protection and Privacy Act, 2019, Tropical Bank Ltd is committed to protecting the privacy and confidentiality of personal data collected during the recruitment process. By submitting your application, you consent to the collection, use, and processing of your personal information solely for recruitment and employment purposes, and in compliance with applicable date protection laws. Your information will not be shared with unauthorized third parties and will be retained only as long as necessary for the stated purposes.

Only shortlisted candidates will be contacted.

Job Application Form
A. POSITION DETAILS
B. PERSONAL INFORMATION
C. EDUCATIONAL BACKGROUND

(List qualifications starting with the most recent)

1. Most Recent Qualification

2. Additional Qualification (Optional)

3. Education (Uganda advanced Certificate of Education and Certificate of Education or their Equivalent)

D. PROFESSIONAL QUALIFICATIONS & CERTIFICATIONS (Optional)

(Include relevant certifications such as CPA, ACCA, CIB, IT certifications, etc.)

 

1. Certification:

2. Certification:

E. EMPLOYMENT HISTORY

(Start with most recent employment)

 

1. Current/Most Recent Employer (Optional

2. Previous Employer (Optional)

F. KEY COMPETENCIES & SKILLS
G. REFEREES

(Provide at least two professional referees)

1. Referee One

2. Referee Two

H. SALARY EXPECTATION
I. COMPLIANCE & DECLARATIONS
J. REQUIRED SUPPORTING DOCUMENTS (UPLOAD IN PDF FORMAT)

(One document upload) (Maximum file size: 5MB per document)