Website NCBA Bank
NCBA Bank
Career Opportunity: Internal Audit Assistant Manager – ICT
Employer: NCBA Bank
Requisition ID: 4422
Posted: 18 August 2026
Position: Internal Audit Assistant Manager – ICT
Job Purpose
The Internal Audit Assistant Manager – ICT will provide independent, reliable, timely, and value-adding assurance to the Board and Executive Management on the effectiveness of governance, risk management, and internal controls relating to current and emerging ICT risks.
Key Responsibilities
1. Financial Responsibilities – 5%
- Manage Internal Audit costs within the approved budget.
- Conduct audits aimed at optimizing the bank’s costs.
2. Internal Business Processes – 65%
- Develop annual ICT audit plans and scopes in alignment with the bank’s ICT strategy.
- Provide guidance to Business and ICT Management on ICT risk management, particularly application and infrastructure security.
- Conduct audits and reviews of systems, applications, and IT processes.
- Prepare audit reports and present results to Executive Management, Group Management, and Board Audit Committees.
- Conduct pre- and post-implementation reviews of systems and system enhancements.
- Perform IT security audits covering areas such as:
- Networks
- Operating systems
- Data centres
- Security vulnerabilities
- Evaluate Information Technology General Controls (ITGCs) and test compliance.
- Review controls relating to:
- Change management
- Business continuity
- Disaster recovery
- Information security
- Develop and implement data analytics tools to improve audit efficiency and support continuous auditing.
- Track audit findings and validate management’s closure of ICT issues.
- Conduct continuous monitoring of the ICT environment and identify significant risks.
- Independently assess ICT risks and recommend areas requiring additional investment or audit attention.
- Coordinate external auditors, regulators, and assessors during ICT-related reviews.
- Monitor the whistleblowing process in accordance with bank policy.
- Support the improvement of Internal Audit policies, procedures, and methodologies.
- Conduct special investigations and assignments as directed by the Head of Internal Audit.
3. Customer & Stakeholder Responsibilities – 10%
- Conduct customer-focused audits aimed at improving process efficiency.
- Provide advisory and consulting services that add value to the bank.
- Build effective relationships with internal and external stakeholders.
- Discuss audit observations with clients and agree on factual accuracy.
- Produce timely audit reports and follow up on remediation of audit findings.
4. Learning & Development – 10%
- Pursue continuous professional development.
- Act as a change agent and embrace organizational change.
- Receive and implement feedback.
- Complete the required 40 hours of learning and development annually.
- Demonstrate stewardship by continuously improving processes and outcomes.
Academic Qualifications
Required:
- Bachelor’s degree, preferably in:
- Computer Science
- Accountancy
- Finance
Added Advantage:
- Master’s degree in:
- Finance
- Accounting
- Computer Science
- ICT Risk Management/Governance
- Business Administration
Professional Qualifications
Candidates should be qualified in one of the following:
- CISA – Certified Information Systems Auditor
- CPA – Certified Public Accountant
- CIA – Certified Internal Auditor
- CISSP – Certified Information Systems Security Professional
- Equivalent professional qualification
Required Work Experience
- At least 4 years of managerial experience in:
- ICT auditing
- ICT risk
- ICT control assurance
- Experience in the financial services industry or a reputable audit firm is preferred.
Technical Knowledge & Skills
Candidates should have:
- Knowledge of new and emerging banking products and services.
- Understanding of multiple technology domains, including:
- Software development
- Windows environments
- Database management
- Networking
- SAP
- T24 banking system
- Knowledge of information security standards and best practices.
- Understanding of applicable laws and regulations.
- Practical knowledge of the regulatory environment.
- Demonstrated good conduct and high performance in previous positions.
Key Stakeholders
Internal
- Internal Audit colleagues
- Management
- Group Internal Audit Management
- Board Audit Committee
External
- Customers
- Shareholders
- Regulators
- External Auditors
Work Cycle & Impact
Planning horizon: 6–12 months
Core Competency Areas
The role requires strong capabilities in:
- ICT Audit & Assurance
- IT General Controls (ITGC)
- IT Risk Management
- Information Security
- Cybersecurity
- Application & Infrastructure Security
- IT Governance
- Business Continuity & Disaster Recovery
- Change Management
- Data Analytics & Continuous Auditing
- Regulatory Compliance
- Audit Reporting
- Stakeholder Management
- Risk Assessment
- Audit Issue Management
- Professional Ethics and Integrity
Important Candidate Assessment
This is a senior ICT audit position. The major screening requirements are:
- Bachelor’s degree in a relevant field.
- CISA, CPA, CIA, CISSP, or equivalent professional qualification.
- At least 4 years of managerial ICT audit/risk/control assurance experience.
- Preferably experience within banking/financial services or a reputable audit firm.
- Broad technical knowledge covering infrastructure, applications, databases, networking, security, and banking systems.
To apply for this job please visit career5.successfactors.eu.
