Manager, Cybersecurity Infrastructure & Operations Specialist
Summary
Deploys, administers, and continuously improves the cybersecurity controls protecting Equity Bank Rwanda's infrastructure, endpoints, networks, cloud, and OT platforms. Day-to-day work spans firewalls, WAF, IDS/IPS, EDR/XDR, SIEM, DLP, VPN/MFA, vulnerability and patch management, plus SOC alert triage and incident support.
Job Summary
The purpose of this role is to implement, administer, and continuously improve cybersecurity controls that protect
Equity Bank Rwanda’s infrastructure, endpoints, networks, cloud services, and operational technology platforms.
The role ensures that security technologies are correctly deployed, configured, monitored, maintained, and
integrated to support resilient and secure banking operations.
Key Responsibilities and Accountability
• Deploy, configure, administer, and maintain cybersecurity technologies, including firewalls, WAF,
IDS/IPS, EDR/XDR, email security, web security, DLP, SIEM collectors, vulnerability scanners, and
privileged access controls.
• Apply secure configuration baselines and hardening standards across servers, endpoints, network
devices, databases, virtualization platforms, containers, and cloud environments.
• Monitor the health, coverage, capacity, licensing and effectiveness of security tools and promptly
remediate agent, sensor, integration or policy gaps.
• Support secure network segmentation, remote access, VPN, multifactor authentication, administrative
access and third-party connectivity controls.
• Integrate infrastructure and security platforms with central logging, monitoring, ticketing and identity
services, and validate that security events are captured accurately.
• Review infrastructure designs, projects and change requests, and provide security requirements before
implementation or production deployment.
• Perform technical security assessments of infrastructure and operational configurations, document
findings and track remediation with responsible teams.
• Support vulnerability and patch management by validating asset coverage, prioritising technical
exposure, coordinating remediation and verifying closure.
• Investigate security alerts associated with infrastructure, endpoints, cloud and network services and
support incident containment and recovery activities.
• Maintain accurate inventories, configuration records, architecture diagrams, operating procedures,
standards and evidence for assigned security platforms.
• Conduct periodic access, rule-based, certificate, cryptographic, firewall, and configuration reviews in
line with policy and regulatory requirements.
• Evaluate new cybersecurity technologies through technical testing, proof of concept and risk-based
recommendations.
• Coordinate with IT Infrastructure, application, database, network, cloud, service management and Group
security teams to resolve security issues.
• Support disaster recovery, resilience testing and restoration of cybersecurity services.
• Prepare regular operational reports and metrics covering security control coverage, exceptions, incidents,
vulnerabilities and remediation status.
• Participate in SOC monitoring activities by supporting the review of security alerts, events, and
suspicious activities across the Bank’s security monitoring platforms.
• Support SOC operations by escalating notable alerts, sharing relevant observations and contributing to
timely investigation and response activities.
• Perform any other responsibilities assigned by the line manager.
Additional skills required\:
• Strong understanding of cybersecurity infrastructure technologies, including firewalls, endpoint
protection, SIEM, vulnerability management, identity and access controls, secure remote access and
cloud security services.
• Ability to troubleshoot technical security issues, interpret security alerts, document evidence clearly,
coordinate remediation with technical teams, and communicate operational risks to management.