Information Security Officer (GRC & Security Operations)

Confidential Employer

Job Overview

Location

Yaba, Lagos, Nigeria

Employment Type

Full-time

Work Arrangement

Hybrid

Sector

Information Technology & Software

Experience Level

Mid-level (3-5 years)

About the Company

This role is within a fast-growing fintech environment in Lagos, Nigeria, focused on strengthening its security posture.

Job Description

We are seeking a skilled Information Security Officer to enhance our security posture within a rapidly expanding fintech organization.

This hybrid role requires a strong understanding of both Governance, Risk & Compliance (GRC) and hands-on Security Operations (SOC) to effectively manage and mitigate security risks.

Your responsibilities will include developing and implementing security policies, conducting risk assessments, monitoring security events using SIEM tools like Splunk, and leading incident response efforts.

You will ensure compliance with key frameworks such as ISO 27001 and NIST, manage access controls, and collaborate with engineering teams to secure systems.

To apply for this role, click the Apply button on this page and follow the instructions.

Required Skills

Information SecurityGRCSecurity OperationsSIEMSplunkISO 27001NISTRisk ManagementIncident ResponseVulnerability AssessmentAccess ManagementDocumentationAudit SupportCommunication

Key Responsibilities

  • Develop and implement security policies aligned with regulatory standards.
  • Conduct risk and vulnerability assessments, and drive mitigation strategies.
  • Monitor and respond to security events using SIEM tools (e.g., Splunk).
  • Lead incident response (detection → containment → recovery).
  • Ensure compliance with ISO 27001, NIST, and other frameworks.
  • Manage access controls and enforce least privilege principles.
  • Work closely with engineering teams to secure systems and infrastructure.
  • Support audits with proper documentation and reporting.
  • Drive security awareness across the organization.
  • Continuously improve overall security posture.

Qualifications

  • 3+ years experience in cybersecurity, GRC, or information security.
  • Strong knowledge of ISO 27001, NIST, and security best practices.
  • Hands-on experience with SIEM tools (e.g., Splunk).
  • Solid understanding of risk management, incident response, and vulnerability assessment.
  • Experience with identity and access management.
  • Strong documentation and audit support skills.
  • Clear communication and stakeholder management ability.

How to Apply

This job has expired

The fintech industry in Lagos is experiencing rapid expansion, necessitating robust information security measures to protect sensitive data and maintain regulatory compliance. This role is crucial for strengthening the security posture within this dynamic environment. Key technical keywords include GRC, Security Operations Center (SOC), SIEM tools, ISO 27001, NIST, risk management, and incident response. Your impact will be measured by your ability to develop and implement effective security policies, mitigate vulnerabilities, and lead incident response efforts, directly contributing to the company's resilience and reputation.

Posted Date

April 7, 2026

12 people viewed this job