Internal Audit Assistant Manager
NCBA TanzaniaJob Description
NCBA Tanzania is seeking an experienced Internal Audit Assistant Manager - ICT to provide independent and reliable assurance over the bank’s ICT governance, risk management, and control environment in Dar es Salaam. The role focuses on identifying technology risks, evaluating IT controls, conducting ICT audits, and providing practical recommendations to strengthen the bank’s technology environment.
The position is suited to ICT audit and risk professionals with at least four years of managerial experience in ICT auditing or ICT risk and control assurance, preferably within financial services or a reputable audit firm. The successful candidate will work closely with management, internal auditors, external auditors, regulators, and other stakeholders while supporting continuous improvement of the bank’s ICT risk and control framework.
About the Role
The Internal Audit Assistant Manager - ICT will lead and coordinate ICT audit activities covering systems, applications, infrastructure, information security, technology processes, and IT governance. The role also involves assessing emerging technology risks and determining how these risks may affect the bank’s overall risk profile.
In addition, the successful candidate will support continuous auditing, data analytics, audit issue tracking, regulatory reviews, and advisory assignments. The position requires strong technical knowledge, analytical ability, professional judgment, and the capacity to communicate audit findings effectively to senior management and Board-level committees.
Responsibilities
-
Manage Internal Audit costs in line with the approved budget.
-
Conduct audit reviews aimed at optimizing the bank’s costs.
-
Perform annual ICT audit planning and scoping in line with the bank’s ICT strategy.
-
Provide guidance to Business and ICT Management on ICT risk management.
-
Advise on application and infrastructure security risks.
-
Conduct audits and reviews of systems, applications, and IT processes.
-
Prepare audit reports and results for Executive Management, Group, and Board Audit Committees.
-
Conduct pre- and post-implementation reviews of system implementations and enhancements.
-
Perform IT security audits covering networks, operating systems, data centres, and related environments.
-
Evaluate whether security vulnerabilities are properly identified and mitigated.
-
Coordinate audit reviews with business units and external security experts where necessary.
-
Evaluate information general computing controls.
-
Test compliance with established ICT controls.
-
Review change management processes.
-
Review business continuity and disaster recovery controls.
-
Review information security policies and procedures.
-
Develop and implement data-analysis tools to improve audit efficiency and effectiveness.
-
Support analytics that can be used for business insights and continuous auditing.
-
Track audit issues and validate management’s closure of ICT findings.
-
Conduct continuous monitoring of the bank’s ICT environment.
-
Identify significant ICT issues and recommend practical solutions.
-
Independently assess ICT risks and recommend areas requiring additional investment or audit attention.
-
Evaluate the effect of ICT risks on the bank’s overall risk profile and audit universe.
-
Coordinate external auditors, regulatory examiners, and assessors during reviews.
-
Monitor the whistleblowing process in accordance with the bank’s policy.
-
Assist in reviewing Internal Audit policies, procedures, and methodologies.
-
Conduct special investigations and assignments as directed by the Head of Internal Audit.
-
Conduct customer-centric audits focused on improving process efficiency.
-
Perform advisory and consulting reviews aimed at adding value to customers and the bank.
-
Build strong relationships with internal and external stakeholders.
-
Discuss and agree on the factual accuracy of audit observations with audit clients.
-
Produce audit reports on time and follow up on remediation of audit findings.
-
Participate in continuous learning and professional development.
-
Support change initiatives and implement constructive feedback.
-
Complete the required 40 hours of learning and development annually.
-
Promote continuous improvement and leave processes and controls stronger than they were previously.
Qualifications and Requirements
Applicants should have:
-
Bachelor’s degree, preferably in Computer Science, Accountancy, or Finance.
-
Master’s degree in Finance, Accounting, Computer Science, ICT Risk Management/Governance, or Business Administration is an added advantage.
-
Professional qualification such as CISA, CPA, CIA, CISSP, or equivalent.
-
At least 4 years of managerial experience in ICT auditing or ICT risk/control assurance activities.
-
Experience in the financial services industry or a reputable audit firm is preferred.
-
Knowledge of new and emerging banking products and services.
-
Understanding of multiple technology domains, including:
-
Software development
-
Windows environments
-
Database management
-
Networking
-
SAP
-
T24 systems
-
-
Understanding of information security standards and best practices for securing computer systems.
-
Knowledge of applicable laws and regulations.
-
Practical understanding of the regulatory environment.
-
Proven record of good conduct and high performance in previous roles.
-
Strong analytical and problem-solving abilities.
-
Strong communication and stakeholder-management skills.
-
Ability to identify technology risks and recommend practical solutions.
How to Apply
Interested and qualified candidates should submit their applications online through the NCBA Tanzania careers platform.
Apply Online – NCBA Tanzania Internal Audit Assistant Manager - ICT
Applicants should ensure that their CV highlights relevant ICT audit, IT risk, information security, IT controls, financial-sector, and professional certification experience.
Application Deadline
The application deadline is 28 August 2026.
Qualified candidates are encouraged to submit their applications before the deadline.
Final Thought
This position offers an opportunity for an experienced ICT audit professional to play a senior role in strengthening technology governance, risk management, information security, and internal controls within a banking environment. Candidates with relevant managerial ICT audit experience and qualifications such as CISA, CPA, CIA, or CISSP should consider applying.
NCBA Tanzania
Financial Services • Dar es Salam
About the Company
NCBA Bank is a leading financial institution in East Africa, committed to providing innovative financial solutions that help our clients achieve their financial goals. With a rich history spanning over 60 years, we have built a reputation for excellence in service delivery, a strong brand, and a customer-centric approach. We offer a wide range of financial products and services to both retail and corporate clients, including personal banking, business banking, investment banking, and wealth management. Our team of experienced professionals is dedicated to providing personalized financial advice and solutions that are tailored to meet the unique needs of each of our clients. At NCBA Bank, we believe in the power of collaboration and have established strategic partnerships with leading companies in various industries to provide our clients with access to innovative products and services that complement our offerings. We are also committed to promoting financial inclusion and have implemented various initiatives to support individuals and businesses in underserved communities. Our mission is to empower our clients to achieve their financial aspirations through innovative solutions and exceptional service. We are proud of our track record of success, and we look forward to continuing to serve our clients and communities with integrity, professionalism, and excellence.
View profile