Senior Information Security Analyst

--Powermax General Electrical Merchants Ltd--

Job Description

The Senior Information Security Analyst is responsible for guiding Security Operations Center (SOC) activities, including enhancement of threat detection, incident analysis, and security investigations.

The role is responsible for operating, tuning, and optimizing SIEM and security monitoring tools to enhance threat visibility and reduce false positives. Oversees third-party application security monitoring, and works closely with vendors to remediate security issues and strengthen the Bank’s overall security posture.

Job Industry

Information And Communication Technology Services

Job Salary Currency

RWF

Job Salary Fixed

No

Key Deliverables

  • Coordinating and operating Security Operation Center (SOC) infrastruture and tools optimization
  • Assessing and managing security risks associated with third-party and internally developed applications by conducting application security reviews, vendor risk assessments, and control validations 
  • Perform and oversee the threat analysis, alert triage, and root cause investigation
  • Oversee and ensure preparedness protection of bank’s infrastructure against cyber threats, breaches, crimes and ensure emergency response preparedness
  • Review and enforce the implementation of operational procedure for the SOC facilities
  • Drive the application security reviews for new applications to be developed and services.
  • Providing DevOps security solution integration with various security test tools 
  • Conduct effective vulnerability management through VAPTs for all bank’s applications whether newly acquired and existing to ensure vulnerabilities are timely detected and managed.
  • Perform source-code reviews and threat modelling the SDLC of the applications 
  • Participate in the architecture of mobile and web applications including interface and database design, process and API flows. 
  • Simulating an attack on the system and IT infrastructure to find exploitable weaknesses 
  • Perform detailed analysis of incidents and implement recommended mitigation

Professional Qualifications

Industry Qualification
Information And Communication Technology Services Bachelor’s degree in computer science, computer engineering, information systems or any other relevant degree. Relevant master’s degree from a recognized institution is an added value At least 4 years of experience in information security Good understanding banking information security infrastructure Information security certifications is an added advantage like ISO Lead Implementer, Lead Auditor, CEH or any other related professional recognized certifications Strong knowledge of secure design practices Extensive experience leading application security across the full SDLC within Agile and CI/CD environments, embedding security controls from design through deployment and operations in cloud-based platforms. Experience in implementing and operating Security Operation Center (SOC) tools including use-case development, tuning, and log source onboarding Experience in integration and data sharing with other Security Operation Center (SOC) is added value Experience working with Web Applications, Mobile Applications and Service Oriented Architectures Experience with multiple programming languages (such as, Java, C++, Ruby, Python, Perl, etc.)

Application Process

Close Date

27/05/2026