Job Description
A reputable organization is seeking an experienced Data Protection Officer / Information Security Officer (ISO / DPO) to oversee information security, data protection compliance, and cybersecurity risk management. The successful candidate will play a key role in safeguarding digital assets, ensuring compliance with the Nigeria Data Protection Act (NDPA/NDPR), strengthening the organization’s Information Security Management System (ISMS), and supporting a secure technology environment.
Location: Lagos
Employment Type: Full-time
Role Level: Experienced Analyst – Associate
Department: Technology
Key Responsibilities
- Lead data protection initiatives and ensure compliance with NDPR, NDPA, and other applicable data privacy regulations.
- Conduct Data Protection Impact Assessments (DPIAs) and manage data subject access requests.
- Develop, implement, and continuously improve the organization’s Information Security Management System (ISMS).
- Perform cybersecurity risk assessments, vulnerability assessments, penetration testing (VAPT), and implement risk mitigation strategies.
- Monitor security incidents, manage access controls, and enforce segregation of duties (maker-checker controls).
- Carry out application server health checks and develop SQL/Oracle scripts for reporting and monitoring.
- Conduct API and application security testing using industry-standard tools.
- Collaborate with auditors, regulators, and internal stakeholders to maintain risk registers and Key Risk Indicators (KRIs).
Requirements
- Bachelor’s Degree in Computer Science, Information Technology, Computer Engineering, Finance, or a related discipline with a minimum of Second Class Upper (2:1).
- Minimum of 5 years’ experience in Information Security, Cybersecurity, or Data Protection roles.
- Previous experience within the Nigerian Capital Market or Financial Services industry is highly preferred.
- Possession of at least one relevant professional certification such as CISA, CISM, CRISC, CEH, CDPO, CIPP, or ISO 27001 Lead Auditor/Implementer.
- Strong understanding of information security frameworks, governance, risk and compliance (GRC), NDPR/NDPA requirements, and cybersecurity best practices.
- Hands-on experience with SQL, Oracle databases, vulnerability assessment tools, Swagger, Postman, and related security technologies.
- Excellent analytical, communication, problem-solving, and stakeholder management skills.
Salary
₦500,000 – ₦800,000 per month
Application Deadline
20th August, 2026
