Information Security & IT Support Specialist (Oct, 2024
–Apr, 2025) at Orbita Kenya
Monitor security access logs, SIEM, and other monitoring tools for suspicious activity and potential breaches.
Execute the Incident Response (IR) plan, investigate security incidents, contain threats, and document post-incident remediation steps.
Perform regular vulnerability scans and penetration testing (or coordinate with external vendors) to identify and address system weaknesses.
Access & Identity Management (IAM):
Administer and manage user accounts, permissions, and access controls across various systems (e.g., Active Directory, cloud platforms, applications) based on the principle of least privilege.
Manage Multi-Factor Authentication (MFA) and Single Sign-On (SSO) systems.
Security Policy & Awareness:
Develop, maintain, and enforce information security policies, standards, and procedures (e.g., acceptable use, data classification, remote access).
Conduct security awareness training sessions for all employees on topics like phishing, social engineering, and password hygiene.
Endpoint Protection:
Manage and maintain endpoint security solutions (Antivirus/Malware, EDR) on all corporate devices.
Ensure all operating systems and applications are consistently patched and updated to mitigate known vulnerabilities.
II. IT Infrastructure & Support
Help Desk & User Support (Tier 1/2):
Serve as the primary point of contact for all IT-related issues, including hardware, software, network connectivity, and user application problems.
Manage the ticketing system, prioritize requests, and ensure timely resolution of issues while maintaining high user satisfaction.
Provide support for remote access solutions (VPN) and remote work technologies.
Network & Systems Administration:
Install, configure, and maintain network hardware (routers, switches, firewalls) and wireless access points.
Administer and maintain virtual and physical server environments (Windows Server, Linux).
Manage cloud services (e.g., Microsoft 365/Azure, AWS, Google Workspace), including email and collaboration tools.
Asset & Inventory Management:
Manage the full lifecycle of IT assets, from procurement and deployment to decommissioning.
Perform imaging, setup, and deployment of new workstations and mobile devices.
Backup & Disaster Recovery (DR):
Implement, monitor, and test data backup and restoration processes to ensure business continuity and compliance.
Maintain and periodically test the Disaster Recovery (DR) plan.