Information Risk Management Apprentice
Absa Bank
Job Summary
Absa Bank Uganda is seeking a motivated and detail-oriented Information Risk Management Apprentice to support the Information Risk Management (IRM) function in protecting the Bank’s information assets.
The role involves supporting the implementation, monitoring, and enforcement of controls across Records Management, Data Privacy, and Logical Access Management. The successful candidate will gain hands-on experience in banking risk management frameworks, governance processes, compliance requirements, and control environments while helping maintain the confidentiality, integrity, and availability of information assets.
Key Responsibilities
Logical Access Management
- Assist in timely and accurate provisioning of system access based on approved requests.
- Support periodic User Access Reviews (UAR) across critical banking systems.
- Assist business owners in validating appropriate access rights.
- Track and follow up access review exceptions and remediation actions.
- Maintain evidence of completed recertification exercises for audit purposes.
- Help identify and flag segregation of duties conflicts.
- Support monitoring and control of privileged accounts.
- Assist in periodic reviews of administrator and super-user accounts.
- Support compliance with Absa Group policies and regulatory requirements.
- Contribute to improving access management controls and automation initiatives.
Data Privacy
- Support compliance with the Uganda Data Protection and Privacy Act, 2019, Bank of Uganda guidelines, and Absa Group policies.
- Assist in implementing data privacy frameworks, standards, and controls.
- Maintain Records of Processing Activities (RoPA).
- Participate in Data Protection Impact Assessments (DPIAs).
- Support handling of data subject rights requests.
- Assist in tracking and reporting privacy incidents and data breaches.
- Monitor compliance of third-party data processors with privacy requirements.
Records Management
- Support implementation of records management policies and procedures.
- Maintain records inventories and classification registers.
- Assist with records retention and disposal schedules.
- Support secure storage, archival, retrieval, and destruction of records.
- Participate in records management audits and compliance reviews.
- Promote awareness of proper records handling practices.
Continuous Learning and Improvement
- Develop knowledge in information security, data privacy, and risk management.
- Stay informed about emerging risks, regulatory developments, and industry best practices.
- Contribute to process improvement initiatives within the Information Risk Management function.
Qualifications and Requirements
Education
Bachelor’s Degree in any of the following fields:
- Information Technology
- Information and Cyber Security
- Records and Archives Management
- Or a related discipline
Academic Requirements
Degree Classification
- First Class
- Second Class Upper
O’ Level
- Credit or higher in Mathematics
- Credit or higher in English
A’ Level
- At least two principal passes
Year of Graduation
- Graduated between 2024 and 2026
Additional Requirements
- Knowledge of various software, hardware, and operating systems.
- Knowledge of Uganda’s Data Protection and Privacy laws is an added advantage.
Skills and Competencies
- Basic understanding of Information Security and Risk Management principles.
- Basic understanding of Data Protection and Privacy regulations.
- Familiarity with IT access controls and identity management concepts.
- Proficiency in Microsoft Office applications (Excel, Word, PowerPoint).
- Familiarity with records management systems and access management tools is an advantage.
- High level of integrity and confidentiality.
- Strong attention to detail.
- Analytical and problem-solving skills.
- Effective communication and interpersonal skills.
- Ability and willingness to learn in a regulated environment.
Key Performance Indicators
- Accuracy and timeliness of user access management activities.
- Reduction of unauthorized or excessive access risks.
- Timely handling of data subject requests.
- Accuracy and completeness of records inventories.
- Compliance with records retention and disposal requirements.
- Efficient records retrieval and archival processes.
- Reduction in records-related audit findings.
Why Join Absa?
This apprenticeship offers an excellent opportunity for recent graduates to gain practical experience in Information Risk Management within one of Uganda’s leading banking institutions. Successful candidates will develop valuable skills in information security, data privacy, governance, and risk management while working alongside experienced professionals.
To apply for this job please visit absa.wd3.myworkdayjobs.com.
