- Experience
- 5+ yrs
- Salary
- —
- Openings
- 1
- Posted
- منذ 9 ساعات
- Work mode
- Work from home
- Resume
- Required to apply
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
About the Role
We are looking for a seasoned Head of Information and Application Security to establish and guide the security framework at Afriex. This leadership role is pivotal in safeguarding customer confidence, protecting systems and sensitive data, and promoting secure innovation within our products.
Key Duties
- Design and oversee the comprehensive information security strategy and implementation roadmap.
- Manage security governance, conduct risk assessments, and implement control mechanisms.
- Supervise cloud and endpoint security, manage access controls, monitor security posture, and lead incident response efforts.
- Collaborate with engineering teams to ensure secure software development lifecycle (SDLC), vulnerability management, and corrective actions.
- Conduct security evaluations of third-party vendors and oversee associated risk management.
- Maintain and update security policies, standards, and awareness training programs; generate security-related reports.
- Support internal and external security audits, certifications, and ensure compliance with regulatory requirements.
- Review application design and architecture to identify security weaknesses and risks.
- Perform secure code reviews and liaise with development teams to mitigate vulnerabilities.
- Identify and address common application security issues, including OWASP Top 10 vulnerabilities.
- Champion integration of security practices within the SDLC by promoting appropriate testing, tooling, and standards.
- Assist in formulating secure coding standards and offer guidance on remediation of security flaws.
Candidate Profile & Requirements
- Minimum of 5 years demonstrated experience in information security, cybersecurity, or related fields.
- In-depth understanding of security architecture, identity and access management (IAM), threat detection, incident handling, and risk mitigation strategies.
- Proven experience with cloud platforms and strong collaboration skills with engineering teams.
- Excellent communication abilities to translate technical security concepts into clear business language.
- Track record of designing effective security frameworks within fast-paced, growth-driven organizations.
Desirable Qualifications
- Professional certifications such as CISSP or CISM.
- Background in fintech, payments, or industries with regulatory controls.
Level
Head
Industry
FinTech