Governance, Risk, and Compliance RUN Consultant

  • Customer Service
  • 12/24/2025
  • Full Time
  • Featured
  • Urgent
Job expired!

RECRUITMENT NOTICE

Governance, Risk, and Compliance RUN Consultant

Department: Cybersecurity - GRC

 

Start Date: As soon as possible

Contract Type: Permanent

Working Hours: Full-time, On-site

Location: Norrsken House, Kigali, Rwanda

 

The Organization is the leading multimodal logistics operator in Africa, covering port, logistics, maritime, and rail activities. Now part of a global leader in maritime and logistics, The Organization combines more than a century of expertise with a strong presence in 49 countries and a team of over 23,000 employees. The Organization delivers innovative, tailor-made logistics solutions to African and international customers, with the ambition of driving sustainable transformation across the continent. Beyond Africa, The Organization also operates in Haiti, Timor-Leste, and Indonesia.

As part of The Organization, the Shared Service Center, established in 2025, includes a dedicated MIS/IT department. The center is entering a strategic growth phase, and to support this expansion and deliver high-value digital services across the network, we are recruiting talented professionals to join our dynamic team. The center plays a key role in MIS activities through standardized service delivery, operational excellence, and strong cross-site collaboration.

ASCENS, the MIS/IT department, supports 250 subsidiaries from hubs in Paris, Abidjan, Johannesburg, and Kigali, ensuring the effective use, management, and continuous evolution of the Group’s digital tools.

As part of innovation drive, ASCENS launched its first Innovation Center—YIRI—in Abidjan, a collaborative space dedicated to digital transformation and partnerships with internal teams, technology providers, universities, and start-ups. Building on this success, a second Innovation Center will soon open in Kigali, aiming to become a hub for open innovation in East Africa - stimulating creativity, accelerating projects, and strengthening regional synergies.

Do you want to grow in a truly international environment and contribute to a company that places Africa at the heart of its mission?

Join KSSC and be part of the team shaping the future of logistics in Africa!

JOB FUNCTION & KEY RESPONSIBILITIES

As part of our efforts to strengthen the Group’s GRC RUN capabilities, the Cybersecurity team is looking to reinforce its operational capacity with two dedicated resources. The objective is to ensure robust support in GRC monitoring, compliance execution, and coordination with local information security officers.

Main Responsibilities

Operational Security Compliance Monitoring

·       Manage the Security Control Plan: follow-ups, evidence collection, tracking deadlines

·       Monitor implementation of security policies and standards (ISO 27001, NIST…)

·       Track non-conformities and action plans resulting from internal and external audits

·       Process and monitor security exception requests

·       Follow up on vendor cybersecurity assessments

Support & Coordination with Local Security Officers

·       Act as the operational liaison between the central GRC team and LISOs (Local Information Security Officers)

·       Assist in the rollout of reporting tools, maturity assessments, and awareness campaigns

·       Track remediation plans following penetration tests or cybersecurity alerts

·       Contribute to updates of compliance dashboards and indicators

Support to Cybersecurity Governance

·       Contribute to the preparation of cybersecurity governance committees

·       Participate in updates of ISO 27001 deliverables (policies, risk mapping, incident feedback, etc.)

Assist in preparing progress reports, KPIs, and summaries for executive committees

EDUCATION & EXPERIENCE REQUIRED

·       Master’s degree or equivalent in cybersecurity, IT, auditing, risk management, or related field

·       2–5 years of experience in cybersecurity GRC or audit/compliance roles (preferably in RUN/ops)

·       Solid understanding of ISO 27001, ISO 27005, and EBIOS RM frameworks

 

·       Proficient in tracking action plans, coordinating stakeholders, and managing compliance data

 

BEHAVORIAL SKILLS REQUIRED

·       Excellent communication and interpersonal skills, with ability to work in multicultural environments

·       Strong organizational and analytical skills, autonomous and proactive

 

·       Fluent in French (mandatory) and professional English required

EXPECTED DELIVRABLES

·       Monthly and quarterly compliance dashboards

·       Audit reports and action plan tracking logs

·       Updated ISO documentation (policies, procedures, risk mapping, Retex)

·       Summary of security incidents and alert handling

·       KPI and risk indicators tracking (dashboards, awareness, supplier compliance, etc.)