Technology Risk and Compliance Officer
BRAC TANZANIA FINANCE LIMITED (BTFL) is the largest Microfinance organization in Tanzania with a mission to responsibly provide a range of financial services to people at the bottom of the pyramid. We particularly focus on women living in poverty in rural and hard-to-reach areas to create self-employment opportunities, build financial resilience, and harness women’s entrepreneurial spirit by empowering them economically.
BRAC Tanzania Finance LTD is seeking applications from competent, dynamic and self-motivated individuals to fill up the following position.
Job Location: Head Office, Dar es Salaam
Key Responsibilities:
1. Post-Implementation Oversight:
- Monitor and optimize the performance of the T24 core banking system.
- Identify and address system vulnerabilities and operational risks.
- Collaborate with IT teams to ensure seamless integration with other systems and processes.
2. Risk Management:
- Conduct regular IT risk assessments, focusing on the T24 system and associated operations.
- Oversee the security of IT systems used for loan processing, customer data management, and financial transactions.
- Develop and implement risk mitigation strategies tailored to large-scale microfinance activities.
- Develop and maintain an IT incident response plan specific to microfinance operations.
- Lead investigations into IT security incidents and implement measures to prevent recurrence.
- Ensure robust disaster recovery and business continuity plans are in place.
- Assess risks associated with third-party vendors providing IT services.
- Ensure compliance with contractual obligations and security standards.
- Collaborate with business units to assess the IT impact of new financial products or services.
3. Compliance:
- Ensure compliance with local and international regulations, including data protection laws and anti-money laundering (AML) standards.
- Maintain and update IT compliance policies and procedures, considering the T24 system's functionalities and new laws.
- Liaise with regulatory bodies during audits and inspections.
- Stay updated on evolving regulatory requirements affecting IT risk and compliance.
4. IT Security:
- Oversee the implementation of advanced security measures for the T24 system, including encryption, access controls, and monitoring tools.
- Conduct regular penetration testing and vulnerability assessments specific to the T24 environment/Conduct or coordinate regular penetration tests, vulnerability scans, and security assessments focusing on T24 and other integrated systems.
- Regularly review and assess of user roles, access rights, and privileges across all BTFL systems to ensure alignment with the principle of least privilege, segregation of duties (SoD), and compliance with internal policies and regulatory requirements.
- Provide guidance on secure IT practices to staff.
5. Training and Awareness:
- Conduct training sessions for employees on IT risk management and compliance requirements related to the T24 system.
- Promote a culture of compliance and risk awareness within the organization.
6. Reporting:
- Prepare detailed reports on IT risk and compliance issues for senior management and stakeholders.
- Act as the primary liaison with regulatory bodies during IT audits.
7. Safeguarding
- Ensure the safety of team members from any harm, abuse, neglect, harassment and exploitation to achieve the programme’s goals for safeguarding implementation. Act as a key source of support, guidance and expertise on safeguarding for establishing a safe working environment.
- Practice, promote and endorse the issues of safeguarding policy among team members and ensure the implementation of safeguarding standards in every course of action.
- Follow the safeguarding reporting procedure in case any reportable incident takes place, encourage others to do so.
Required Qualifications and Experience:
- Must have a Degree in IT, Computer Science, or a related field, with additional knowledge of finance or microfinance operations.
- Must have relevant certifications like CISA, CRISC, or certifications in microfinance risk management.
- Prior experience in IT risk management or compliance within the financial sector will be an added advantage.
- Strong understanding of microfinance operations.
- Excellent problem-solving skills.
- Familiarity with IT frameworks like ISO 27001.
- Familiarity with Temenos T24 system administration or controls is a strong added advantage.
- Understanding cyber security frameworks is desirable.
How to apply:
If you feel you are the right match for the above-mentioned position, please apply by sending your CV and cover letter through email to: recruitment.tanzania@brac.co.tz with a subject “Technology Risk and Compliance Officer”.
The application deadline is 15.08.2025
Only shortlisted candidates will be contacted.
***BRAC Tanzania is an equal opportunity employer and is against all forms of Exploitation, discrimination and harassment at workplace.