Back to jobs
Job in Kenya

Cyber Security Administrator (Operations)

Kenya Airways Nairobi Type not specified Posted 2026-09-21
CountyNairobiCityNairobiContractType not specifiedPosted2026-09-21Close date2026-10-03Experience3 yearsSourceJob in Kenya
cyber securitypenetration testingred teamincident responseSIEMSOARNairobiKenya Airwaysmid careerinformation securitysecurityinternship
Use AI for this job

AI summary

Kenya Airways is hiring a Cyber Security Administrator (Operations) in Nairobi to safeguard its information systems and digital assets through offensive security operations, including penetration testing, red team simulations, vulnerability assessments, and incident response. The role requires a hands-on, attacker-minded professional who can translate complex technical findings into actionable remediation guidance. This is a mid-career position with a deadline of October 3, 2026.

  • Offensive security focus: penetration testing, red team simulations, and adversary emulation
  • Mid-career role requiring 3 to 5 years of experience
  • Incident response leadership and SIEM/SOAR implementation
  • Collaboration with SOC analysts, engineers, and developers across the organization
  • Deadline: October 3, 2026

AI job guide

Use this guide to check salary signals, requirements, documents, application steps and safety before you apply.

AI salary guide

Not enough public data

Not enough public salary data is available for this exact role. Before applying, prepare to ask about gross pay, benefits, contract length, probation period, transport and any allowances.

Can you qualify for this role?

  • Required3+ years of relevant experienceThe job post includes a minimum experience signal.
  • RequiredEducation or certification mentioned in the postThe captured text mentions education, a diploma, certificate, or licence.
  • PreferredPractical evidence in security, internship, segurancaThe tags and summary point to skills connected with this role.
  • RequiredAvailability to work in NairobiThe vacancy is associated with this location.

Documents to prepare

  • Likely requiredUpdated CV
  • Role specificCover letter or short employer message
  • OptionalProfessional references
  • Role specificAcademic or professional certificates
  • VerifyID or passport only after verifying the employer

Application tips for this job

  • Place your strongest Cyber Security Administrator (Operations) evidence in the first half of your CV.
  • In your cover letter or employer message, connect your experience to Kenya Airways and the role in Nairobi.
  • Add concrete examples related to security, internship, seguranca, ideally with measurable outcomes or clear responsibilities.
  • Follow the instructions from Job in Kenya; avoid sending documents to unofficial contacts or copied links.
  • Confirm the deadline, interview location and employer contact before sharing personal documents.
  • Plan to submit before the listed deadline: 2026-10-03.

Source and safety check

  • Job in Kenya
  • Original source link available
  • Application method is clear
  • Deadline is available: 2026-10-03
  • No major risk signal was detected in the captured text.

Never pay for interviews, shortlisting, medical checks, uniforms, or job placement. Confirm every application at the original source before sharing personal documents. Report suspicious listing.

Interview preparation

  • What experience makes you a strong fit for this Cyber Security Administrator (Operations) role in security, internship?
  • How have you handled responsibilities similar to those in this job post?
  • Are you available to work in Nairobi under the listed contract or schedule?
  • Prepare examples with clear responsibilities, tools used and measurable outcomes.
  • Review the source and research Kenya Airways before the interview.

Ask what the first priorities will be in the role and how success will be measured.

Use AI to apply better

After confirming the original source, use Career Assistant to check role fit, tailor your CV and prepare a cover letter or employer message.

Original source description

Cyber Security Administrator (Operations)

Purpose

The Cyber Security Administrator is responsible for safeguarding Kenya Airways' information systems, digital assets, and supporting infrastructure through offensive security operations primarily conducting penetration testing, red team simulations, adversary emulation, and vulnerability assessments to proactively identify and exploit weaknesses before malicious actors do. The role demands a hands-on, attacker-minded professional who can think creatively, adapt to evolving threat landscapes, and translate complex technical findings into clear, actionable remediation guidance that strengthens the organization's overall security posture.

Responsibilities

  • Identify, assess, and manage cybersecurity risks through defensive analysis and offensive testing. This includes evaluating both internal and external threats and vulnerabilities.
  • Develop risk mitigation strategies informed by threat monitoring and incident analysis, prioritizing security investments to protect critical assets against evolving threats.
  • Develop and implement the system-wide Information Security function of the information security program to ensure information security risks are identified and monitored.
  • Continuously identify, assess, and monitor information security risks across the organization and escalating emerging threats to inform defensive priorities.
  • Collaborate with developers, Systems engineers, database engineers, security engineers, project managers, cybersecurity administrators and SOC analysts.
  • Implement and fine tune security monitoring solutions, including SIEM (Security Information and Event Management) systems, to detect and respond to security incidents.
  • Collaborate with internal teams to investigate and mitigate security breaches.
  • Triage, investigate, contain, eradicate, and recover from security incidents while coordinating with internal teams and external partners as required.
  • Lead incident investigations using data-driven analysis, coordinate response efforts, and implement corrective actions to prevent recurrence
  • Maintain and continuously improve incident response plans and playbooks for common attack scenarios.
  • Consume and operationalize threat intelligence feeds and adversary TTPs to proactively update detection rules, block emerging IOCs, and inform defensive priorities.
  • Deploy and maintain SOAR workflows to automate alert triage, enrichment, and routine response tasks reducing response times and analyst fatigue.
  • Oversee the deployment, configuration, and maintenance of security technologies, including EDR/XDR and encryption solutions among others.
  • Ensure all defensive systems are patched, updated, and operating at optimal performance with high availability.
  • Assist in executing vulnerability assessments, penetration tests, and adversary emulation exercises mapped to the MITRE ATT&CK framework to validate and stress-test defensive controls.
  • Collaborate with SOC analysts in purple team exercises and translate offensive findings into actionable defensive improvements.
  • Work with Internal Audit and External Audit consultants as appropriate on required security assessments and audits
  • Ensure all projects and systems are subjected to security checks to avert possible security threats pre and post go-live
  • Respond promptly to all system and network security breaches, ensuring containment, eradication, and recovery in line with documented procedures.
  • Implement automation (SOAR) within the organization to enable efficient alert triage, incident response workflows, and routine security operations.
  • Evaluate the organization's security needs and establish defensive best practices, hardening baselines, and configuration standards accordingly.
  • Ensure the organization's data and infrastructure are protected through layered, defense-in-depth security controls across network, endpoint, application, and data layers.
  • Assess the organization's security posture through continuous monitoring, vulnerability scanning, and control validation.
  • Investigate breaches and incidents, conduct root cause analysis, and implement improvements to create ever more robust defensive protocols.
  • Skills
  • Excellent communication, interpersonal & problem-solving skills with the ability to work confidently on high-priority problems.
  • Strong analytical and critical-thinking skills with an attacker's mindset.
  • Ability to handle pressure and difficult situations with resilience, calmly and effectively.
  • Must be a person of unquestionable integrity.
  • Self-motivated with a passion for continuous learning in cybersecurity.
  • Strong ethical standards and commitment to responsible disclosure practices.
  • Qualifications
  • Bachelor’s degree in information technology or another related field
  • 3+ years of advanced IT skills with high level of information security

Experience

  • and expertise (hands-on
  • in defensive cybersecurity operations).
  • Proven hands-on
  • in security monitoring, incident detection and response, and vulnerability management.
  • Proficiency with SIEM platforms and
  • with vulnerability scanning and management tools
  • in penetration testing, ethical hacking, and vulnerability assessments
  • Familiarity with security auditing processes
  • Well versed with Linux commands, scripting as well as windows security controls adoption
  • Ability to set up systems to identify intrusions, configuring these to suit the needs of the organization
  • Strong knowledge of networking protocols and common attack vectors.
  • performing information security audits or risk assessments
  • Industry certifications highly
  • responding to, analyzing, and communicating information security incidents and performing forensic
  • Excellent interpersonal, communication, and presentation skills, including formal report writing
  • Understanding of common security standards and regulations relating to a higher

Preferred Qualifications

  • CEH, CDSA CISSP, SSCP or equivalent defensive and offensive security certifications.
  • Knowledge of securing network technologies, applications, and operating systems.

Education

  • environment (e.g., PCI DSS, NIST, ISO27001, GDPR, IOSA etc.)
  • Capable of enforcing security best practices in line with the National Institute of Standards and Technology.
  • Method of application
  • If you are interested and qualified, kindly submit your application via the link provided below,
  • https://careers.kenya-airways.com/anonymous/listing/cd2ee08f-2659-4ea5-aa71-af62edf63409/details?division=6fef853f-d078-4aa9-8642-79d61dc68585&utm_source=Jobinkenya
  • Deadline Oct 3, 2026 06:24pm
Source and provenanceSource: Job in Kenya. Last checked: 2026-09-23.Kazi Connect is a job discovery service, not the employer. Always confirm the vacancy at the original source.Summaries may be AI-assisted. Report inaccurate content.
Never pay to apply. Always confirm the original source and watch for payment requests, sensitive document requests, or unrealistic promises.