The Cybersecurity Identity and Access Management (IAM) Architect Specialist serves as the Subject Matter Expert (SME) for identity and privileged access architecture across KCB Group. This role is responsible for designing secure, scalable IAM and privileged access management (PAM) solutions, and overseeing their implementation, testing, and ongoing maintenance to support the bank’s cybersecurity objectives. The specialist plays a critical role in the development and evolution of IAM standards, frameworks, toolsets, and strategic roadmaps, ensuring alignment with regulatory requirements and business needs.
Key Responsibilities; –
- Lead the Bank’s development of IAM strategy, architecture and Zero Trust Principles for Identity and access for all users (internal, external and customers)
- Architect and oversee implementation of MFA, SSO, federation, and password less authentication across the Group.
- Design and support implementation of solutions for the Bank’s privileged access management program in line with the Bank’s privileged access management policies and ensure the principle of least privilege.
- Collaborate with business, compliance, and audit stakeholders to align IAM practices with regulatory and operational requirements. Design and enforce RBAC/ABAC models, ensuring segregation of duties, least-privilege enforcement and secure privilege access management.in projects from inception through to successful implementation in a bid to ensure compliance to set identity/privileged access management standards
- Assess the sufficiency of policies, standards and procedures relative to identity and privileged access management best practices.
- Define and maintain identity lifecycle management processes covering joiner, mover, and leaver scenarios, with automated provisioning and de-provisioning. Provide input into technology security risk control self-assessments by leveraging specialized knowledge in identity/privileged access management.
- Conduct research and development on new areas in identity/privileged access management and perform knowledge sharing with Technology team across the group.
- Lead training and awareness programs to improve identity hygiene across staff and vendors.
The Person
For the above position, the successful applicant should have the following:
- Bachelor’s degree in IT/Computer science or related.
- Professional qualification/Certification in CISA or CISM or CISSP
- Master’s degree in any computer or business related, project management is an added advantage.
- Experience in the following: –
- 3 years’ experience in Experience in Information Security
- 2 years’ experience in Identity and Access Management.
- 3-years’ Experience in large busy technology environment
The above position is a demanding role for which the Bank will provide a competitive remuneration package to the successful candidate. If you believe you can clearly demonstrate your abilities to meet the criteria given above, please log in to our Recruitment portal and submit your application with a detailed CV.
To be considered your application must be received by Friday 07th November 2025
Qualified candidates with disability are encouraged to apply.
Only short-listed candidates will be contacted.
