Intelligence Match
Match: ??%
Unlock Your Personalized Match
Sign in to see your exact score breakdown and personalized insights.
Team Tagline
About the role
Moniepoint is a financial technology company digitising Africa's real economy by building a financial ecosystem for businesses, providing payment, banking, credit and business management tools. The Security & Technology Risk Analyst joins the Information Security Assurance Team to identify, monitor, and report on security and technology operational risks across the fintech ecosystem, translating complex risk data into actionable intelligence for executive leadership while ensuring regulatory compliance and operational resilience.
Required Skills
Preferred Skills
Similar Skills not Listed
Responsibilities
- Conduct comprehensive risk assessments across security and technology domains (cloud, network, infrastructure, product, endpoint, third-party) using NIST RMF, FAIR methodology, and qualitative/quantitative analysis.
- Perform Business Impact Analysis (BIA) on critical systems to determine RTO and RPO, collaborating with process owners and maintaining documentation.
- Administer and maintain the security risk register with current and historical records, ensuring audit evidence for regulatory examinations and internal/external audits.
- Guide development and documentation of risk treatment plans aligned with enterprise risk appetite, collaborating with Engineering, Legal, DevOps, IT, and Security.
- Track and validate execution of risk treatment plans, monitoring completion rates, escalating delays, and ensuring residual risk remains within tolerance.
- Design and maintain quantifiable risk metrics across exposure measurement, control effectiveness, and risk treatment progress for executive decision-making.
- Analyze emerging threats and regulatory changes to proactively surface new risks and support strategic initiatives.
- Ensure risk management activities adhere to financial regulations and frameworks (ISO 27001, SOC 2, PCI-DSS, NDPA, NIST, FAIR).
- Support evaluation of third-party and vendor risks, ensuring alignment with organizational security standards.
- Communicate risk findings and recommendations in business-relevant terms to stakeholders at all levels.
Job Application Safety Disclaimer
Your security and privacy are our top priorities. Please be aware that InStreamIQ will never ask you to pay any fees for job applications, placements, or training as a condition of employment.
Furthermore, legitimate employers will not ask for sensitive personal identification such as your Bank Verification Number (BVN), National Identification Number (NIN), or Passport details during the initial application phase. Do not share financial information or make any payments to individuals or organizations claiming to represent an employer. If you encounter any suspicious requests, please report the listing immediately via our support channels.