Cyber Security Officer (1 Post) - Job Reference: CU/ADM/HR/04/2026 at Chuka University
Chuka University
Job Grade: 8
Terms of Service: One (1) Year Contract
Reports to: Head of Department, Information and Communication Technology (ICT)
Job Purpose: To safeguard the University's information systems, networks, and digital assets against cyber threats by implementing security controls, monitoring risks, responding to incidents, and ensuring compliance with applicable cybersecurity and data protection requirements.
Duties and Responsibilities
Monitoring, detecting, investigating, and responding to cybersecurity incidents.
Implementing and maintaining security controls to safeguard the University's information systems, networks, and data.
Conducting regular vulnerability assessments and penetration testing.
Monitoring network traffic to detect suspicious activities and security breaches.
Installing, configuring, and maintaining firewalls, antivirus software, intrusion detection and prevention systems (IDS/IPS), and endpoint protection solutions.
Developing, implementing, and enforcing cybersecurity policies, procedures, and standards.
Conducting security audits and risk assessments and recommending appropriate mitigation measures.
Managing identity and access controls, including user accounts, authentication, and authorization systems.
Ensuring compliance with applicable cybersecurity laws, regulations, standards, and institutional policies.
Investigating cybersecurity incidents and preparing comprehensive incident reports.
Conducting cybersecurity awareness and training programmes for staff.
Supporting disaster recovery and business continuity initiatives from a cybersecurity perspective.
Keeping abreast of emerging cyber threats, vulnerabilities, and cybersecurity best practices.
Performing any other duties and responsibilities as may be assigned by the Head of Department, ICT.
Minimum Qualifications and Experience
Applicants must possess:
A Bachelor's degree in Cyber Security, Information Technology, Computer Science, Information Systems, or a related field from a recognized institution.
A minimum of two (2) years' relevant postqualification experience in cybersecurity, information security, or ICT security in a busy institution or organization.
Demonstrable knowledge of network security protocols, including TCP/IP, VPNs, DNS, and firewall technologies.
Experience in vulnerability assessment and penetration testing.
Knowledge of Windows, Linux, virtualization, and cloud security environments,
Experience with endpoint security, antivirus, encryption, and related cybersecurity technologies.
Sound understanding of Identity and Access Management (IAM) principles.
Strong analytical, problemsolving, incident response, and reportwriting skills.
Excellent communication, interpersonal, and teamwork skills.
Added Advantage
Possession of any of the following professional certifications will be an added advantage:
Certified Ethical Hacker (CEH);
Cisco Certified CyberOps Associate/Cybersecurity Analyst;
CompTIA Security+;
Certified Information Systems Security Professional (CISSP);
Proficiency in scripting languages such as Python, PowerShell, or Bash
Certified Information Security Manager (CISM); or
Any other internationally recognized cybersecurity certification.