Information Security Analyst at Geminia Insurance Company
- DEPARTMENT: ICT
- REPORTS
TO: IT Manager
- Branch: Head
Office – Westlands
PRIMARY PURPOSE:
- Develop
and implement the information security strategy for Geminia Insurance
Company.
- Oversee
the security of both cloud and on-premises environments, ensuring robust
cybersecurity measures, data privacy compliance, and effective risk
management frameworks are in place.
- as the
focal point for all cybersecurity-related engagements and initiatives.
SPECIFIC RESPONSIBILITIES:
- Develop
and oversee the organization’s information security strategy, ensuring
alignment with business objectives and regulatory requirements.
- Develop,
enhance, and implement information security policies, procedures,
standards, and controls across the organization.
- Lead
the cybersecurity function and ensure adherence to security policies and
standards across all business units.
- Collaborate
with IT, legal, and compliance teams to maintain a strong organizational
security posture.
- Ensure
compliance with applicable data protection and privacy regulations,
including GDPR and relevant local insurance regulatory frameworks.
- Establish
and maintain cybersecurity risk management programs to assess, mitigate,
and monitor risks across cloud and on-premises environments.
- Monitor
security risks and ensure proper documentation, reporting, and remediation
plans are in place.
- Lead
security audits, assessments, and regulatory reporting for internal
stakeholders and oversight bodies.
- Design,
implement, and maintain enterprise security architecture and
infrastructure security controls.
- Implement
and enforce best practices for identity and access management, network
security, encryption, endpoint protection, and cloud security.
- Develop,
maintain, and test the cybersecurity incident response framework to ensure
rapid detection, containment, and resolution of security incidents.
- Establish
a proactive threat intelligence capability to detect, respond to, and
mitigate emerging cyber threats.
- Conduct
vulnerability assessments, penetration testing, and security reviews to
continuously improve the organization’s security posture.
- Provide
cybersecurity oversight for third-party vendors and partners, including
security due diligence and risk assessments.
- Lead
staff security awareness and training programs to promote strong cyber
hygiene and compliance with security best practices.
- Evaluate
and implement advanced security technologies and frameworks to strengthen
the organization’s cybersecurity capabilities.
- Advise
management on cyber risk trends, vulnerabilities, and mitigation
priorities.
PERSON SPECIFICATIONS
Academic Qualifications
- Bachelor’s
degree in Cybersecurity, Information Technology, Computer Science, or a
related field.
Professional Qualification
- Relevant
certifications such as CISSP, CISM, CISA, CRISC, CCSP, CEH or equivalent
are highly desirable.
Experience
- At
least 3 years of experience in information security roles, preferably in
the financial or insurance sector.
- Proven
experience managing IT security.
- Strong
knowledge of regulatory compliance.
- Experience
handling security operations, incident response, and risk management in a
complex IT landscape.
- Hands-on
knowledge of firewall management, endpoint security, SIEM, and IAM.
Database and IT Security Analyst at Geminia Insurance Company
DEPARTMENT: ICT
REPORTS TO: IT Manager
Branch: Head Office – Westland
PRIMARY PURPOSE:
- To
drive operational efficiency through the unified management and
optimization of the organization’s data and security infrastructure.
- To
strengthen system reliability, resilience, and disaster recovery
capabilities while maintaining a robust cybersecurity posture.
- To
ensure full compliance with the Insurance Regulatory Authority (IRA)
guidelines, industry best practices, and internal governance standards.
- To
minimize system downtime, data loss, and vulnerability to security threats
through proactive monitoring, risk mitigation, and continuous improvement
initiatives.
SPECIFIC RESPONSIBILITIES:
Cybersecurity Leadership
- Drive
execution of the institution’s cybersecurity strategy and ensure effective
implementation across departments.
- Design,
implement, and maintain enterprise security architecture and control
mechanisms.
- Develop
and test the cybersecurity incident response framework.
- Advise
management and the board on cyber risk trends, vulnerabilities, and
mitigation priorities.
- Conduct
vulnerability assessments and coordinate responses to incidents.
- Oversee
vendor cybersecurity compliance and manage third-party risk assessments.
- Lead
staff awareness and training initiatives to strengthen cyber hygiene.
Database Administration
- Install,
configure, and maintain database management systems.
- Monitor
database performance, optimize queries, and ensure high availability.
- Perform
regular backups, restores, and disaster recovery drills.
- Implement
database security policies and access controls.
- Design
and maintain schemas, indexes, and stored procedures.
- Manage
data replication, archiving, and purging strategies.
- Provide
technical support to developers and business units.
- Maintain
documentation of database configurations, processes, and performance
metrics.
Compliance
- Ensure
compliance with IRA and relevant ICT security standards.
- Develop
and maintain ICT security and data management policies.
- Support
internal and external audits by providing evidence of control
effectiveness.
PERSON SPECIFICATIONS
Academic Qualifications
- Bachelor’s
degree in computer science or related area.
Professional Qualification
- Certification
in IT security professional qualifications i.e., CISSP, CISA/CISM/CEH,
CompTIA Security+, or other relevant security certifications.
- Oracle
Database Administration certification—Oracle Certified Professional (OCP)
Experience
- At
least 5 years’ experience in Security and Database administration with
strong technical knowledge of database, network and operating systems
security.
Required Skills and Attributes
- Strong
understanding of diverse security frameworks, methodologies, and
processes, with hands-on experience in implementing technical security
solutions such as firewalls, intrusion detection and prevention systems
(IDS/IPS), and endpoint protection tools.
- In-depth
knowledge of TCP/IP protocols, network architecture, and network/security
applications, with the ability to analyze, monitor, and troubleshoot
network traffic for performance and security optimization.
- Practical
experience in conducting penetration testing, vulnerability assessments,
and security audits, including interpreting findings and implementing
effective remediation measures.
- Comprehensive
awareness of emerging cybersecurity threats, attack vectors, and threat
intelligence sources, ensuring proactive defense and timely incident
response.
- High
level of integrity and confidentiality.
- Excellent
interpersonal and communication skills.
- Good
analytical skills and attention to details.
General Manager
The General Manager is responsible for driving and
overseeing the Company’s strategic, commercial, and operational direction to
ensure sustained performance, growth and innovation. This role involves driving
business growth, expanding market presence, and ensuring operational
efficiency, while aligning with the Company’s long-term vision and
transformation goals. The role demands a dynamic leader who can navigate
complexity, lead high-performing teams, and foster innovation in a
fast-evolving market.
The General Manager will be responsible for leading
revenue-generating functions, building strategic partnerships, and ensuring
compliance with regulatory frameworks. Success in this role requires a blend of
commercial acumen, industry expertise, and the ability to lead change and
deliver measurable impact.
Qualifications & Experience:
- Bachelor’s
degree in business administration, Finance, or a related field. Master’s
degree is an added advantage.
- Professional
qualifications in insurance (e.g., ACII) are preferred.
- Minimum
of 10 years of experience in business development within the insurance
sector, with at least 5 years in a senior leadership role.
- Strong
understanding of insurance products, distribution channels, and regulatory
environment.
- Proven
track record of driving business growth and achieving sales targets.
- Experience
in managing sales teams and multiple distribution channels.
- Demonstrated
experience in business development, transformation, and stakeholder
engagement.
- Exposure
to ESG integration, digital innovation, and regulatory frameworks is
highly desirable.
Key Competencies & Skills:
- Strong
leadership, team management, and strategic thinking skills.
- Excellent
negotiation and relationship management abilities.
- Strong
financial acumen and business analysis capabilities.
- Ability
to drive digital transformation and innovation in insurance sales.
- Excellent
communication and presentation skills.
- High
level of integrity, professionalism, and customer focus.
- Strategic
execution and commercial acumen
- Stakeholder
engagement and partnership building
- Financial
discipline and operational rigor
- Results-oriented
with a collaborative leadership style
