IT Governance and Controls Manager job at HFCB Group
14 Days Ago
Linkedid Twitter Share on facebook
IT Governance and Controls Manager
2026-07-29T13:47:06+00:00
HFCB Group
https://cdn.greatkenyanjobs.com/jsjobsdata/data/employer/comp_11895/logo/download%20-%202026-06-08T183350.829.png
FULL_TIME
Nairobi
Nairobi
00100
Kenya
Finance
Management, Computer & IT, Business Operations
KES
MONTH
2026-08-07T17:00:00+00:00
8

Background

HFCB Group Plc is an integrated financial solutions provider that is registered as a non–operating holding company (under the Banking Act Cap.488) and regulated by the Central Bank of Kenya (CBK) and the Capital Markets Authority (CMA). The Group is a public limited company with interests in Banking, Property and Insurance, and is listed at the Nairobi Securities Exchange. For more information on our banking, property and insurance solutions, please visit www.hfcb.co.ke The Group has 4 main entities: HFCB Limited – Full-Service Banking, HFCB Properties Limited – Property/Real Estate Solutions, HFCB Bancassurance Intermediary – Insurance Solutions & HFCB Foundation Limited – ESG/Sustainability.

On the back of a strong growth trajectory and in a bid to power the business, HFCB Limited is looking to recruit a dynamic and results-oriented IT Governance and Controls Manager.

About the Role

The role holder is responsible for the establishment, implementation, and continuous improvement of the Bank’s IT policy framework, internal control environment, regulatory compliance, technology risk management processes, and overall governance framework. The role ensures that technology operations align with business objectives, regulatory requirements, industry best practices, and the organization's risk appetite.

Key Accountabilities

  • Develop, implement, and maintain the IT Governance, Risk, and Controls framework to ensure alignment with business objectives and regulatory requirements.
  • Establish and oversee IT governance structures, policies, standards, and procedures, ensuring organization-wide compliance.
  • Design, monitor, and continuously improve the IT internal control environment through control assessments and governance reviews.
  • Ensure compliance with applicable regulatory, legal, and industry requirements, coordinating regulatory engagements and remediation of findings.
  • Lead technology risk management activities, including risk assessments, maintenance of the Technology Risk Register, monitoring of Key Risk Indicators (KRIs), and reporting to governance forums.
  • Coordinate internal, external, and regulatory audits, ensuring timely resolution of audit findings and effective stakeholder reporting.
  • Develop governance dashboards, KPIs, KRIs, compliance scorecards, and management reports for executive leadership and the Board.
  • Oversee governance of third-party technology risks, outsourcing, business continuity, and disaster recovery to ensure operational resilience.
  • Drive continuous improvement of IT governance maturity through benchmarking, process automation, and adoption of industry best practices.
  • Foster a culture of governance, accountability, compliance, and continuous improvement across the Technology function.
  • Perform any other duties as assigned by the immediate supervisor in support of departmental and organizational objectives.

Qualifications

  • Bachelor's degree in information technology, Computer Science, Information Systems, Cybersecurity, or related field.
  • Preferred certifications include: CISA, CISM, CRISC and CISSP
  • 4 - 5 years in IT governance, technology risk, IT audit, compliance, or information security.
  • Experience within a regulated industry, preferably banking or financial services.
  • Experience engaging with regulators, auditors, and executive management.

Competencies

  • Excellent problem-solving and analytical skills.
  • Strong communication and interpersonal abilities.
  • Stakeholder Management
  • Adaptability and Innovation.
  • Team Player.
  • Attention to detail and risk awareness.
  • Communicates complex technical issues clearly to both technical and non-technical audiences.
  • Influencing skills.
  • Negotiation.
  • Objectivity
  • Integrity and Accountability.
  • Develop, implement, and maintain the IT Governance, Risk, and Controls framework to ensure alignment with business objectives and regulatory requirements.
  • Establish and oversee IT governance structures, policies, standards, and procedures, ensuring organization-wide compliance.
  • Design, monitor, and continuously improve the IT internal control environment through control assessments and governance reviews.
  • Ensure compliance with applicable regulatory, legal, and industry requirements, coordinating regulatory engagements and remediation of findings.
  • Lead technology risk management activities, including risk assessments, maintenance of the Technology Risk Register, monitoring of Key Risk Indicators (KRIs), and reporting to governance forums.
  • Coordinate internal, external, and regulatory audits, ensuring timely resolution of audit findings and effective stakeholder reporting.
  • Develop governance dashboards, KPIs, KRIs, compliance scorecards, and management reports for executive leadership and the Board.
  • Oversee governance of third-party technology risks, outsourcing, business continuity, and disaster recovery to ensure operational resilience.
  • Drive continuous improvement of IT governance maturity through benchmarking, process automation, and adoption of industry best practices.
  • Foster a culture of governance, accountability, compliance, and continuous improvement across the Technology function.
  • Perform any other duties as assigned by the immediate supervisor in support of departmental and organizational objectives.
  • Excellent problem-solving and analytical skills.
  • Strong communication and interpersonal abilities.
  • Stakeholder Management
  • Adaptability and Innovation.
  • Team Player.
  • Attention to detail and risk awareness.
  • Communicates complex technical issues clearly to both technical and non-technical audiences.
  • Influencing skills.
  • Negotiation.
  • Objectivity
  • Integrity and Accountability.
  • Bachelor's degree in information technology, Computer Science, Information Systems, Cybersecurity, or related field.
  • Preferred certifications include: CISA, CISM, CRISC and CISSP
  • 4 - 5 years in IT governance, technology risk, IT audit, compliance, or information security.
  • Experience within a regulated industry, preferably banking or financial services.
  • Experience engaging with regulators, auditors, and executive management.
bachelor degree
48
JOB-6a6a045a68f81

Vacancy title:
IT Governance and Controls Manager

[Type: FULL_TIME, Industry: Finance, Category: Management, Computer & IT, Business Operations]

Jobs at:
HFCB Group

Deadline of this Job:
Friday, August 7 2026

Duty Station:
Nairobi | Nairobi

Summary
Date Posted: Wednesday, July 29 2026, Base Salary: Not Disclosed

Similar Jobs in Kenya
Learn more about HFCB Group
HFCB Group jobs in Kenya

JOB DETAILS:

Background

HFCB Group Plc is an integrated financial solutions provider that is registered as a non–operating holding company (under the Banking Act Cap.488) and regulated by the Central Bank of Kenya (CBK) and the Capital Markets Authority (CMA). The Group is a public limited company with interests in Banking, Property and Insurance, and is listed at the Nairobi Securities Exchange. For more information on our banking, property and insurance solutions, please visit www.hfcb.co.ke The Group has 4 main entities: HFCB Limited – Full-Service Banking, HFCB Properties Limited – Property/Real Estate Solutions, HFCB Bancassurance Intermediary – Insurance Solutions & HFCB Foundation Limited – ESG/Sustainability.

On the back of a strong growth trajectory and in a bid to power the business, HFCB Limited is looking to recruit a dynamic and results-oriented IT Governance and Controls Manager.

About the Role

The role holder is responsible for the establishment, implementation, and continuous improvement of the Bank’s IT policy framework, internal control environment, regulatory compliance, technology risk management processes, and overall governance framework. The role ensures that technology operations align with business objectives, regulatory requirements, industry best practices, and the organization's risk appetite.

Key Accountabilities

  • Develop, implement, and maintain the IT Governance, Risk, and Controls framework to ensure alignment with business objectives and regulatory requirements.
  • Establish and oversee IT governance structures, policies, standards, and procedures, ensuring organization-wide compliance.
  • Design, monitor, and continuously improve the IT internal control environment through control assessments and governance reviews.
  • Ensure compliance with applicable regulatory, legal, and industry requirements, coordinating regulatory engagements and remediation of findings.
  • Lead technology risk management activities, including risk assessments, maintenance of the Technology Risk Register, monitoring of Key Risk Indicators (KRIs), and reporting to governance forums.
  • Coordinate internal, external, and regulatory audits, ensuring timely resolution of audit findings and effective stakeholder reporting.
  • Develop governance dashboards, KPIs, KRIs, compliance scorecards, and management reports for executive leadership and the Board.
  • Oversee governance of third-party technology risks, outsourcing, business continuity, and disaster recovery to ensure operational resilience.
  • Drive continuous improvement of IT governance maturity through benchmarking, process automation, and adoption of industry best practices.
  • Foster a culture of governance, accountability, compliance, and continuous improvement across the Technology function.
  • Perform any other duties as assigned by the immediate supervisor in support of departmental and organizational objectives.

Qualifications

  • Bachelor's degree in information technology, Computer Science, Information Systems, Cybersecurity, or related field.
  • Preferred certifications include: CISA, CISM, CRISC and CISSP
  • 4 - 5 years in IT governance, technology risk, IT audit, compliance, or information security.
  • Experience within a regulated industry, preferably banking or financial services.
  • Experience engaging with regulators, auditors, and executive management.

Competencies

  • Excellent problem-solving and analytical skills.
  • Strong communication and interpersonal abilities.
  • Stakeholder Management
  • Adaptability and Innovation.
  • Team Player.
  • Attention to detail and risk awareness.
  • Communicates complex technical issues clearly to both technical and non-technical audiences.
  • Influencing skills.
  • Negotiation.
  • Objectivity
  • Integrity and Accountability.

Work Hours: 8

Experience in Months: 48

Level of Education: bachelor degree

Job application procedure

Click Here to Apply Now

All Jobs | QUICK ALERT SUBSCRIPTION

Job Info
Job Category: Management jobs in Kenya
Job Type: Full-time
Deadline of this Job: Friday, August 7 2026
Duty Station: Nairobi | Nairobi
Posted: 29-07-2026
No of Jobs: 1
Start Publishing: 29-07-2026
Stop Publishing (Put date of 2030): 10-10-2076
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.