WFH.teamOpen app
Back to remote jobs
Remote job detail

Security & Technology Risk Analyst

Moniepoint

LocationNigeria
Senioritymid_senior
CompanyMoniepoint
Verified recentlyChecked today
Compensation

Salary not listed

Salary details are shown when available from the source listing. Sign in before applying so the role can be reviewed against your resume, salary goals, seniority, timezone, and location eligibility.

Requirements and working style

Decision details from the source listing

Experience

5+ years stated

Education

Bachelor's degree in Computer Science, Information Security, Risk Management, Engineering, or related field

Work authorization

Nigeria work authorization

Schedule

not specified

These fields are normalized from the employer's text. Confirm details on the employer site before applying.

WFH.team analysis

What this posting tells you

Security & Technology Risk Analyst role at Moniepoint in Nigeria, remote within Nigeria. Requires 5+ years experience in operational, cybersecurity or technology risk management with relevant bachelor's degree. Role involves risk assessments, regulatory compliance, and strategic risk reporting in fintech environment. Remote confidence high as listing states remote in Nigeria specifically.

Role lane

Accounting, Data, Design and creative, DevOps, Finance and investments, Legal, Operations, Product, Security, Customer support

Where you can work

Nigeria

Working hours

Africa/Lagos

Arrangement

mid_senior · full_time

Required signals
SecurityRisk ManagementOperational RiskCybersecurity RiskTechnology Risk AssessmentRisk MetricsNIST Cybersecurity FrameworkISO 27001Business ContinuityDisaster RecoveryThreat AnalysisVulnerability Management
Preferred signals
CISMCRISCFinancial ServicesFintechRegulated Industries
Confirm before applying
  • Compensation is not listed
Market context

Accounting hiring on WFH.team

1,397active related roles
983new in the latest period
931.3jobs per 100 candidates
$175kmedian of comparable listed ranges

Category counts come from WFH.team's latest published remote job market snapshot.

Explore the remote job market
Skills and signals
SecurityRisk ManagementOperational RiskCybersecurity RiskTechnology Risk AssessmentRisk MetricsNIST Cybersecurity FrameworkISO 27001Business ContinuityDisaster RecoveryThreat AnalysisVulnerability ManagementCISMCRISCFinancial ServicesFintechRemote within Nigeria
Job description

Security & Technology Risk Analyst at Moniepoint

Who we are

Moniepoint Inc. is Africa’s all-in-one financial ecosystem, helping 10 million businesses and individuals access seamless payments, banking, credit, and business management tools since 2019.

As Nigeria’s largest merchant acquirer, it powers most of the country’s Point of Sale (POS) transactions. Through its subsidiaries, Moniepoint Inc. processes $22 billion monthly for its customers while operating profitably.

Curious about what makes Moniepoint an incredible place to work? Check out posts on how we cultivate a culture of innovation, teamwork, and growth.

About the role

We are seeking a detail-oriented and analytically rigorous Security & Technology Risk Analyst to join our Information Security Assurance Team at Moniepoint. In this role, you will be instrumental in identifying, monitoring, and reporting on security and technology operational

risks across our fintech ecosystem. You will translate complex risk data into actionable intelligence that enables executive leadership to make informed strategic decisions while ensuring our organization maintains the highest standards of regulatory compliance and

operational resilience. As a financial technology company, trust and security are foundational to our brand. Your work directly contributes to Moniepoint's ability to safely expand into new markets, launch innovative products, and maintain the confidence of our customers and stakeholders.

Key Responsibilities

Conduct comprehensive risk assessments across security and technology domains (cloud, network, infrastructure, product, endpoint, third-party) using NIST Risk Management Framework, FAIR methodology, and qualitative/quantitative analysis methods.

● Perform Business Impact Analysis (BIA) on critical systems to determine Recovery Time Objectives (RTO) and Recovery Point Objectives (RPO), collaborating with process owners to validate findings and maintain documentation as business operations evolve.

● Administer and maintain the security risk register with current and historical records, ensuring comprehensive documentation and audit evidence for regulatory examinations and internal/external audits.

● Guide development and documentation of risk treatment plans aligned with enterprise risk appetite, collaborating with cross-functional stakeholders (Engineering, Legal, DevOps, IT, Security) on prioritization, execution strategies, and integration into product development and operational processes.

● Track and validate execution of risk treatment plans, monitoring completion rates, escalating delays, and ensuring residual risk remains within tolerance levels while adjusting plans as needed based on mitigation and remediation progress.

● Design and maintain quantifiable risk metrics across exposure measurement, control effectiveness assessment, and risk treatment progress tracking for executive decision-making, with continuous monitoring against organizational risk appetite thresholds via real-time dashboards and reporting.

● Analyze emerging threats and regulatory changes to proactively surface new risks and support strategic initiatives including market expansion and new product launches.

● Ensure all security and technology risk management activities adhere to applicable financial regulations, industry standards, and relevant frameworks (ISO 27001, SOC 2, PCI-DSS, NDPA, NIST, FAIR).

● Support security teams in evaluating third-party and vendor risks, ensuring alignment with organizational security standards and conducting ongoing risk assessments as part of the vendor management program.

● Communicate risk findings, assessments, and recommendations in business-relevant terms to stakeholders at all levels, translating technical risk concepts into actionable intelligence for executive leadership and operational teams.

Required qualifications

● Bachelor's degree in Computer Science, Information Security, Risk Management, Engineering, or related field.

● 5+ years of professional experience in operational risk management, cybersecurity risk, or technology risk assessment.

● Demonstrated experience conducting risk assessments, threat analysis, or vulnerability management.

● Experience developing risk metrics, KPIs, or dashboards for executive audiences.

● Familiarity with risk management frameworks (e.g., NIST Cybersecurity Framework, ISO 27001 or similar)

● Experience in financial services, fintech, or regulated industries preferred.

● Proficiency in risk assessment methodologies and qualitative/quantitative analysis

● Knowledge of business continuity and disaster recovery planning principles

Preferred qualifications

● Professional certifications: CISM, CRISC, or equivalent risk/security certification.

● Experience with fintech, banking, or other highly-regulated industries

What to expect in the hiring process

  • A preliminary phone call with the recruiter
  • A Panel Interview
  • A behavioural and technical interview with a member of the Executive team.

Moniepoint is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees and candidates.

Company context

Working remotely at Moniepoint

Moniepoint Inc. (formerly TeamApt) is a Nigerian-founded fintech company providing an all-in-one digital financial services platform for businesses and individuals in Africa, offering payments, banking, credit, and business management tools.

Headquarters
Nigeria
Team size
1001-5000
Founded
2015
Remote policy

Remote hiring signal is inferred from active confirmed-remote job listings.

Application process

Review current openings on Moniepoint's official careers page before applying.

Spring BootJavaGoKubernetesPostgreSQLGoogle WorkspaceFirebaseElasticsearchDockerSkype
Research Moniepoint