Job Summary
- Type: full-time
- Location: Harare
- Category: ICT & Telecoms
- Closing Date: 2026-08-21
Key Responsibilities
- Develops, implements, reviews, and maintains information security policies, standards, procedures and guidelines.
- Monitors ICT infrastructure, systems and networks for security threats, vulnerabilities, and breaches, ensuring timely detection and response.
- Conducts information security risk assessments, vulnerability assessments, penetration tests and security audits.
- Implements recommendations from internal/external audits.
- Ensures compliance with applicable regulatory requirements, data protection laws, and ICT governance frameworks.
- Manages identity and access controls, including user provisioning, authentication, authorization and privileged access controls.
- Plans, coordinates, and delivers information security awareness and training programs for employees.
- Collects feedback from ZINARA IT staff and end users about the effectiveness of ICT security measures and shares this feedback with teammates and management.
- Implements, configures, and maintains security technologies, including firewalls, intrusion detection/prevention systems, antivirus solutions and security monitoring tools.
- Conducts regular inspections and maintenance checks on CCTV cameras, recording devices, and network components; troubleshoots CCTV system-related issues and resolves them.
- Leads the investigation, documentation, and reporting of security incidents, recommending corrective and preventive actions.
- Collaborates with internal departments, vendors, regulators, and external stakeholders on cybersecurity matters.
- Develops and maintains incident response, disaster recovery and business continuity security requirements.
- Performs regular security monitoring, log analysis, and threat intelligence reviews to identify emerging risks.
- Prepares security reports, dashboards and recommends remedial or preventive measures to management.
- Supports security assessments of third-party service providers and ensures compliance with security requirements.
Requirements
- Minimum of 5 ‘O’ Levels including English and Mathematics
- At least 2 ‘A’ Levels or equivalent
- Degree in Computer Science, Information Systems, or a related ICT field
- Professional certifications such as CISSP, CISM, CEH, CompTIA Security+, or equivalent
- Membership of a recognized professional body (e.g., CISSP, PMI, CSZ) is an added advantage
- At least 4 years’ experience in information security or a related field
How to Apply
About the Company
The Zimbabwe National Road Administration (ZINARA) is a Zimbabwean parastatal responsible for the management, maintenance and development of Zimbabwe's national road network.
Website: https://www.zinara.co.zw/
Frequently Asked Questions
What academic qualifications and professional certifications are typically required for an ICT Information Security Specialist role in Zimbabwe?
A relevant degree in Computer Science, Information Technology, or a related field is usually a foundational requirement for such a specialist role. Industry certifications like CISSP, CISM, CompTIA Security+, or CEH are highly valued and often expected to demonstrate specialized expertise and commitment in Zimbabwe's ICT sector.
What are the common day-to-day responsibilities for an Information Security Specialist within a Zimbabwean parastatal?
You would typically be involved in monitoring security systems, responding to incidents, conducting vulnerability assessments, and ensuring compliance with local data protection regulations. Daily tasks also include implementing security policies and educating staff on best practices to safeguard organizational data and infrastructure.
What is the typical work culture and what are the key expectations for an ICT Information Security Specialist in a Zimbabwean organization like Zinara?
The work culture often emphasizes adherence to established protocols, teamwork, and strong problem-solving skills, especially in environments with evolving technological needs. Professionals are expected to be proactive, diligent in upholding security standards, and adaptable to emerging cyber threats.
What are the realistic career progression and growth paths for an ICT Information Security Specialist within Zimbabwean organizations?
You could progress from a specialist role to more senior positions like a Security Analyst, then potentially to a Security Architect or Information Security Manager. Continuous professional development, gaining advanced certifications, and specializing in areas like cloud security or governance are crucial for upward mobility in this field.
What kind of typical benefits package, such as leave, medical aid, and pension, can I expect as an ICT professional in a Zimbabwean parastatal?
Most Zimbabwean parastatals typically offer a standard benefits package that includes annual leave, sick leave, and often a robust medical aid scheme for employees. A pension fund contribution is also a common benefit, aligned with local labor laws and organizational policies.
What aspects should I emphasize in my application to stand out for an ICT Information Security Specialist role in Zimbabwe?
Highlight practical experience in security operations, incident response, and demonstrated compliance with relevant local data privacy acts and ICT security frameworks. Tailor your CV to showcase specific technical skills, project contributions, and problem-solving abilities relevant to safeguarding organizational information systems.