NCBA Tanzania

Manager, Cybersecurity & Business Continuity Management (BCM)

NCBA Tanzania
Dar es Salaam Full-time Negotiable Information Technology Apply before Aug 21, 2026

Job Description

Manager, Cybersecurity & Business Continuity Management (BCM) Job at NCBA Tanzania

NCBA Tanzania is seeking an experienced cybersecurity professional to manage cybersecurity operations and Business Continuity Management (BCM) in Dar es Salaam. The role is responsible for protecting the bank’s technology environment while ensuring that critical systems remain available and can recover effectively during cyber incidents, system failures, or other disruptions.

The position combines cybersecurity monitoring, incident response, vulnerability management, IT risk management, security governance, disaster recovery, and business continuity. The successful candidate will also coordinate security technologies and vendors, support audits, develop cybersecurity awareness programmes, and ensure that critical technology systems are regularly tested and prepared for recovery.

Responsibilities

  • Maintain technology assets across security management platforms, including vulnerability scanners, antivirus solutions, SIEM platforms, patch-management tools, Network Access Control (NAC), and asset-management systems.

  • Monitor and analyze security activities across networks, servers, endpoints, databases, applications, and websites.

  • Conduct regular vulnerability assessments and review security reports.

  • Analyze network and system architectures, including firewalls, routers, switches, and IDS/IPS solutions.

  • Recommend improvements to security controls and configurations.

  • Conduct vulnerability scanning and penetration testing.

  • Work with IT teams to ensure identified vulnerabilities are remediated on time.

  • Conduct security reviews for projects and system changes.

  • Support the remediation and closure of technology audit findings.

  • Manage and continuously improve the cybersecurity incident response plan.

  • Act as the primary point of contact for cybersecurity incidents.

  • Coordinate incident escalation, communication, containment, investigation, and recovery.

  • Implement effective malware detection and response practices.

  • Ensure endpoints and servers are adequately protected against malware.

  • Monitor and report malware threats, trends, and statistics.

  • Coordinate cybersecurity investigations and recovery activities.

  • Develop, review, and maintain information security policies, procedures, and standards.

  • Ensure compliance with cybersecurity service-level agreements (SLAs).

  • Monitor adherence to security processes and operational requirements.

  • Develop cybersecurity metrics, dashboards, and management reports.

  • Design and implement information security awareness programmes.

  • Promote cybersecurity best practices throughout the organization.

  • Coordinate cybersecurity activities with internal teams, employees, and outsourced service providers.

  • Track cybersecurity incidents and remediation actions.

  • Provide cybersecurity guidance, training, and awareness support.

  • Coordinate Business Continuity Management and disaster recovery testing.

  • Review BCM and disaster recovery test results and recommend improvements.

  • Ensure system runbooks are properly documented, updated, and tested.

  • Verify that critical systems have appropriate disaster recovery solutions.

  • Ensure systems are tested according to the annual BCM plan.

  • Monitor backup strategies and validate restoration tests.

  • Track and close technology audit findings within agreed timelines.

  • Maintain technology risk registers within the Governance, Risk, and Compliance (GRC) system.

  • Support technology risk-management initiatives.

  • Deliver assigned performance objectives and support personal and team development.

  • Complete at least 50 annual training hours for themselves and direct reports.

  • Stay updated on emerging cybersecurity threats, technologies, and industry best practices.

  • Train and mentor employees on cybersecurity awareness and technology risks.

Qualifications and Requirements

  • Bachelor’s degree in Information Security, Information Systems, Computer Science, Information Technology, or a related field.

  • Relevant cybersecurity certifications such as CEH, CISA, CISM, or CISSP are required or highly desirable.

  • Minimum 3–5 years of professional experience.

  • At least 3 years of experience working in an IT security environment.

  • Experience managing cybersecurity technologies and network security devices.

  • Practical knowledge of:

    • SIEM

    • IPS/IDS

    • Data Loss Prevention (DLP)

    • Active Directory

    • Identity and Access Management (IAM)

    • Endpoint Security

    • Firewalls

    • Web Content Filtering

    • Database Activity Monitoring (DAM)

  • Strong understanding of operating systems, networks, databases, middleware, and enterprise infrastructure security.

  • Knowledge of information security standards, policies, and best practices.

  • Experience with vulnerability assessment and penetration-testing tools.

  • Strong reporting, dashboard-development, and documentation skills.

  • Banking-sector cybersecurity experience is an added advantage.

  • Systems-audit experience is an added advantage.

Key Technical Competencies

The role requires strong knowledge of:

  • Cybersecurity Monitoring and Incident Response

  • Vulnerability Management

  • Security Operations Management

  • Business Continuity Management

  • Disaster Recovery Planning

  • IT Risk Management

  • Security Policy Development

  • Security Audit Support

  • SIEM Administration

  • Threat Intelligence

  • Network and Infrastructure Security

  • Security Reporting and Documentation

Behavioural Competencies

The successful candidate should demonstrate:

  • Strong analytical and problem-solving skills.

  • Excellent communication skills.

  • Ability to remain effective under pressure during cybersecurity incidents.

  • Strong collaboration and stakeholder-management abilities.

  • High attention to detail.

  • Continuous-learning mindset.

  • Strong decision-making skills.

  • Ability to influence and promote a strong cybersecurity culture.

Job Details

  • Job Title: Manager, Cybersecurity & Business Continuity Management (BCM)

  • Employer: NCBA Tanzania

  • Location: Dar es Salaam, Tanzania

  • Employment Type: Full-Time

  • Deadline: 21 August 2026

  • Experience: 3–5 years, including at least 3 years in IT security

  • Salary: Negotiable

How to Apply

Interested and qualified candidates should apply through the NCBA careers portal:

Candidates should ensure their CV clearly demonstrates hands-on experience in cybersecurity operations, incident response, vulnerability management, SIEM, network security, IT risk management, business continuity, disaster recovery, and security governance.

The application deadline is 21 August 2026.

NCBA Tanzania

NCBA Tanzania

Financial Services • Dar es Salam

Company Size 500+
Founded N/A

About the Company

NCBA Bank is a leading financial institution in East Africa, committed to providing innovative financial solutions that help our clients achieve their financial goals. With a rich history spanning over 60 years, we have built a reputation for excellence in service delivery, a strong brand, and a customer-centric approach. We offer a wide range of financial products and services to both retail and corporate clients, including personal banking, business banking, investment banking, and wealth management. Our team of experienced professionals is dedicated to providing personalized financial advice and solutions that are tailored to meet the unique needs of each of our clients. At NCBA Bank, we believe in the power of collaboration and have established strategic partnerships with leading companies in various industries to provide our clients with access to innovative products and services that complement our offerings. We are also committed to promoting financial inclusion and have implemented various initiatives to support individuals and businesses in underserved communities. Our mission is to empower our clients to achieve their financial aspirations through innovative solutions and exceptional service. We are proud of our track record of success, and we look forward to continuing to serve our clients and communities with integrity, professionalism, and excellence.

View profile