Submitting more applications increases your chances of landing a job.

Here’s how busy the average job seeker was last month:

Opportunities viewed

Applications submitted

Keep exploring and applying to maximize your chances!

Looking for employers with a proven track record of hiring women?

Click here to explore opportunities now!
We Value Your Feedback

You are invited to participate in a survey designed to help researchers understand how best to match workers to the types of jobs they are searching for

Would You Be Likely to Participate?

If selected, we will contact you via email with further instructions and details about your participation.

You will receive a $7 payout for answering the survey.


User unblocked successfully
David Ngunjiri, Cybersecurity Specialist: Privileged Access Management (IAM & PAM) and Security Testing Specialist

David Ngunjiri

Cybersecurity Specialist: Privileged Access Management (IAM & PAM) and Security Testing Specialist·National Bank of Kenya LTD.

Kenya

Bachelor's degree, Business And Information Technologies

Work experience

Total years of experience: 11 years, 1 months

Cybersecurity Specialist: Privileged Access Management (IAM & PAM) and Security Testing Specialist

January 2024 - Present

National Bank of Kenya LTD.

Nairobi, Kenya

January 2024 - Present

Temporary Secondment from parent company KCB. Same rank as KCB covering the following vacant roles in order of responsibility focus:
Privileged Access Management (PAM) Solution Administrator.
Application Security Testing Specialist, Core Banking Solution Deployment Security reviews and hardening.
Cybersecurity Monitoring Specialist: Solutions Architect and Deployment of temporary SIEM.
Data analysis and management reporting specialist: Power BI reporting and integrations.
Network Security Specialist, Cloudflare WAF and Forcepoint Proxy Administration.
Cloud Security Specialist - Azure.
Endpoint Security: Migration from Kaspersky to Microsoft Defender EDR.

Company industry:
Banking
Job role:
Information Technology

Cybersecurity Specialist: Vulnerability Management and Security Testing

July 2020 - Present

KCB Group Limited

Kenya

July 2020 - Present

Security Testing Specialist (Penetration Testing and DevSecOps)
I'm a security lead for internal Penetration Testing and security reviews contributor for our internal scrum teams that are part of our change and development process and traditional waterfall projects.
I’m a current lead designer and implementer for our DevSecOps solutions and automated integration. I co-authored the initial implemention of our automated CI/CD security reviews and integration in Azure Devops for all scrum teams.
Collaborate with compliance and risk management teams to remediate audit findings, and perform annual internal PCI DSS and SWIFT CSP assessments.
Vulnerability Management Program Manager:
I setup and maintain automated scans for the entire environment on a regular schedule to ensure maximum coverage and an up-to-date view of the bank's exposure. In addition to this I’m the co-domain lead for internal VAPTs.
I perform both basic VAs for low-risk changes and in-depth Penetration Tests, this also includes risk reviews and audit issues closure assistance due to my previous role as an IS Auditor.
This also included creating and running the cybersecurity social awareness program by creating annual custom eLearning for the entire organization covering emerging risks and quarterly phishing campaigns to test our employee’s knowledge and build resilience through real world scenarios.
Other significant roles not in my formal Job Description:
I'm the lead for Business Process Optimization and Automation for my unit. I assist in optimizing and automating reports and dashboards for my team relying on my self-taught Power BI and RPA skills.
Act as a backup L3 SOC Analyst for Incident Response, Network and Cloud Security Specialist.

Company industry:
Banking
Job role:
Information Technology

IT Risk Audit & Cybersecurity Business Analyst

May 2015 - June 2020

Ey - Kenya

Nairobi, Kenya

May 2015 - June 2020

Senior Cybersecurity Business Analyst - October 2018 - June 2020
Cybersecurity Business Analyst - December 2017 - October 2018
IT Risk Advisory Business Analyst - May 2015-December 2017
Responsibilities:
Provide IT Security services (mainly Red team) to EY clients as per the project deliverables.
Provide IT Advisory services to EY clients as per the project deliverables.
Provide IT Risk Advisory services to EY clients as per the project deliverables.
Provide IT Audit support to external and internal financial audits performed by EY’s Assurance Service Line.
Provide Subject Matter Expertise support to other EY Service Lines or EY Global offices.
Achievements:
Delivered comprehensive IT Security services, focusing on Red team activities, to clients in alignment with project deliverables.
Provided expert IT Advisory and Risk Advisory services to clients, ensuring adherence to project objectives and client expectations.
Supported external and internal financial audits, maintaining compliance with industry standards.
Provided Subject Matter Expertise (SME) support to other EY Service Lines or Global offices, facilitating knowledge sharing. I was the Information Security Subject Matter Expert for Treasury and Trade Finance operations and systems in EY Kenya IT Advisory.
I contributed in the global overhaul and modernization of the automated EY audit scripts and report generators notably Windows, Unix and Linux scripts.

Company industry:
Financial Auditing
Job role:
Accounting and Auditing

Education

Strathmore University

July 2014

July 2014

Bachelor's degree, Business And Information Technologies

Kenya

GPA (point): 3.25 out of 4

GPA (point): 3.25 out of 4

Graduated with a second class honors majoring in Network Security
View attachment

Skills

Cyber Security
Expert
Cyber Security
Expert
Web Security
Expert
Web Security
Expert
IT Audit
Expert
IT Audit
Expert
Penetration Testing
Expert
Penetration Testing
Expert
Vulnerability Management
Expert
Vulnerability Management
Expert
Network Security
Expert
Network Security
Expert
Vulnerability Management
Expert
Vulnerability Management
Expert
DevSecOps
Expert
DevSecOps
Expert
Privileged Access Management
Expert
Privileged Access Management
Expert
Penetration Testing
Expert
Penetration Testing
Expert
Cybersecurity Audits
Expert
Cybersecurity Audits
Expert
Coding and Scripting
Expert
Coding and Scripting
Expert
Patch Management
Expert
Patch Management
Expert
Ansible Automation
Expert
Ansible Automation
Expert
Security Monitoring
Expert
Security Monitoring
Expert
IT Policy Development
Expert
IT Policy Development
Expert

Languages

English
Native Speaker
Swahili
Native Speaker

Training and Certifications

Certifications
Microsoft Certified: Security, Compliance, and Identity Fundamentals
Microsoft Certified: Azure Fundamentals
Zero Trust Certified Associate (ZTCA)
Jan 2024 - Jan 2027
Show credentials
CISA
Mar 2019 - Jan 2026
Show credentials
CISSP
Jun 2024 - Jun 2026
Show credentials