A

Head of Information Security

Afriex

Remote · Full Time

Be the first to apply

Experience
5+ yrs
Salary
Openings
1
Posted
11 કલાક પેહલા
Work mode
Work from home
Resume
Required to apply

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About the Role

We are looking for a seasoned Head of Information and Application Security to establish and guide the security framework at Afriex. This leadership role is pivotal in safeguarding customer confidence, protecting systems and sensitive data, and promoting secure innovation within our products.

Key Duties

  • Design and oversee the comprehensive information security strategy and implementation roadmap.
  • Manage security governance, conduct risk assessments, and implement control mechanisms.
  • Supervise cloud and endpoint security, manage access controls, monitor security posture, and lead incident response efforts.
  • Collaborate with engineering teams to ensure secure software development lifecycle (SDLC), vulnerability management, and corrective actions.
  • Conduct security evaluations of third-party vendors and oversee associated risk management.
  • Maintain and update security policies, standards, and awareness training programs; generate security-related reports.
  • Support internal and external security audits, certifications, and ensure compliance with regulatory requirements.
  • Review application design and architecture to identify security weaknesses and risks.
  • Perform secure code reviews and liaise with development teams to mitigate vulnerabilities.
  • Identify and address common application security issues, including OWASP Top 10 vulnerabilities.
  • Champion integration of security practices within the SDLC by promoting appropriate testing, tooling, and standards.
  • Assist in formulating secure coding standards and offer guidance on remediation of security flaws.

Candidate Profile & Requirements

  • Minimum of 5 years demonstrated experience in information security, cybersecurity, or related fields.
  • In-depth understanding of security architecture, identity and access management (IAM), threat detection, incident handling, and risk mitigation strategies.
  • Proven experience with cloud platforms and strong collaboration skills with engineering teams.
  • Excellent communication abilities to translate technical security concepts into clear business language.
  • Track record of designing effective security frameworks within fast-paced, growth-driven organizations.

Desirable Qualifications

  • Professional certifications such as CISSP or CISM.
  • Background in fintech, payments, or industries with regulatory controls.

Level

Head

Industry

FinTech
🤖
Online · instant AI help