Safaricom PLC
2022-07-01 -
Cloud Solution Architect/Cloud Security Engineer
Directed Safaricom’s cloud strategy, achieving a 30% reduction in operational costs through optimized cloud adoption, infrastructure design, and management, while ensuring robust security across public and private cloud environments.
Co-operative Bank of Kenya
2021-01-01 - 2022-06-30
Head, ICT Security Operations
Led the Security Operations Centre (SOC) and cybersecurity initiatives, ensuring 24/7 monitoring, compliance with ISO 27001, progress toward PCI DSS certification, adherence to NIST Cybersecurity Framework, secure cloud migration, and alignment with the Kenya Data Protection Act, while delivering comprehensive security reporting to stakeholders.
Co-operative Bank of Kenya
2018-09-24 - 2020-12-31
Applications and Infrastructure Security Officer
Led red team penetration testing, security assessments (web, mobile, API), vulnerability and risk assessments, incident response, malware analysis, automation scripting, and cloud adoption planning, while enhancing cybersecurity awareness and aligning with frameworks like OWASP and NIST.
Equity Group Holdings
2017-04-04 - 2018-09-21
Computer Incident Response and Forensics Manager
Led cyber incident response and forensics aligned with ISO 27001:2013, including malware analysis, policy development, security testing for web and mobile applications, and managing incidents across Windows and Unix/Linux environments.
Constellis (Formerly Olive Group)
2017-01-01 - 2017-03-31
Team Lead, Cyber Security and Cyber Forensics
Performed malware analysis, penetration testing, cloud security management (AWS, Azure), incident response, policy reviews, and security testing for web, mobile, and IT environments, while conducting forensic analysis across servers, desktops, and mobile devices.
Constellis (Formerly Olive Group)
2013-03-01 - 2016-12-31
Cyber Security and Cyber Forensics Analyst
Contributed to cybersecurity and forensics, overseeing penetration testing, vulnerability assessments, cloud security (AWS), server forensics, and mobile incident response for banking and telephony industries.
Brand ID East Africa
2010-12-01 - 2013-03-31
Full Stack Software Developer and Trainer
Served as a programmer and systems integrator for SMS routing systems and conducted end-user training on Brand ID's product authentication platform.
Future Link Technologies
2007-05-01 - 2008-12-31
Full Stack Software Developer and Trainer
Developed Savings Plus banking applications and bulk messaging systems, integrated with telecom providers, and conducted end-user training across Uganda, Rwanda, and Zambia.
Beginning!