Cyber Security and Compliance Expert
AI summary
SterlingPRO seeks a Cyber Security and Compliance Expert to lead security operations, incident response, and compliance for payment applications. The role involves managing SIEM, SOC, identity security, cloud security, and PCI DSS compliance. Full-time role in Lagos (Maryland) requiring 5+ years of experience and a BSc/HND.
- Lead 24/7 security monitoring and incident response for payment applications
- Manage compliance with CBN, NDPC, PCI DSS v4.0, ISO 9564-1, and EMVCo
- Experience with Azure/AWS, SIEM, PAM, MFA, and vulnerability management
- Full-time role in Lagos (Maryland) requiring 5+ years experience and a degree
AI job guide
Use this guide to check salary signals, requirements, documents, application steps and safety before you apply.
AI salary guide
Not enough public dataNot enough public salary data is available for this exact role. Before applying, prepare to ask about gross pay, benefits, contract length, probation period, transport and any allowances.
Can you qualify for this role?
- Required5+ years of relevant experienceThe job post includes a minimum experience signal.
- RequiredEducation or certification mentioned in the postThe captured text mentions education, a diploma, certificate, or licence.
- PreferredPractical evidence in security, seguranca, technologyThe tags and summary point to skills connected with this role.
- RequiredAvailability to work in Not specifiedThe vacancy is associated with this location.
- UnclearComfort with the Full Time contract termsConfirm hours, duration, probation and benefits at the original source.
Documents to prepare
- Likely requiredUpdated CV
- Role specificCover letter or short employer message
- OptionalProfessional references
- Role specificAcademic or professional certificates
- VerifyID or passport only after verifying the employer
Application tips for this job
- Place your strongest Cyber Security and Compliance Expert evidence in the first half of your CV.
- In your cover letter or employer message, connect your experience to SterlingPRO Business Application Limited and the role in Not specified.
- Add concrete examples related to security, seguranca, technology, ideally with measurable outcomes or clear responsibilities.
- Follow the instructions from MyJobMag Nigeria; avoid sending documents to unofficial contacts or copied links.
- Confirm the deadline, interview location and employer contact before sharing personal documents.
- Prepare a polite question about pay, benefits and contract terms for later interview stages.
Source and safety check
- MyJobMag Nigeria
- Original source link available
- Application method is clear
- Deadline not specified
- No major risk signal was detected in the captured text.
Never pay for interviews, shortlisting, medical checks, uniforms, or job placement. Confirm every application at the original source before sharing personal documents. Report suspicious listing.
Interview preparation
- What experience makes you a strong fit for this Cyber Security and Compliance Expert role in security, seguranca?
- How have you handled responsibilities similar to those in this job post?
- Are you available to work in Not specified under the listed contract or schedule?
- Prepare examples with clear responsibilities, tools used and measurable outcomes.
- Review the source and research SterlingPRO Business Application Limited before the interview.
Ask what the first priorities will be in the role and how success will be measured.
Similar jobs to consider
Use AI to apply better
After confirming the original source, use Career Assistant to check role fit, tailor your CV and prepare a cover letter or employer message.
Original source description
SterlingPRO is a service organization that assists businesses achieve success and improved productivity by harnessing the wealth of opportunities in information technology particularly software and e-business solutions. SterlingPRO supports organizations to build world-class state-of-the-art applications, portals and add-ins that transform the way they do bu... Read more about this company Cyber Security and Compliance Expert Job Type Full Time Qualification BA/BSc/HND Experience: 5 years Location Lagos City Maryland Job Field ICT / Computer Key Responsibilities: Security Operations & Incident Response Lead security monitoring, threat detection, incident response, and SOC governance activities, ensuring 24/7 coverage forSterlingPRO’spayment applications. Develop andoptimiseSIEM use cases, detection rules, alert management, and security monitoring processes tailored to financial transaction patterns. Manage MSSP and SOC providers, ensuring service quality, performance, and compliance with agreed SLAs. Develop andmaintainincident response procedures and coordinate security exercises and tabletop testing activities, specifically simulating payment fraud and data breach scenarios. Support business continuity, disaster recovery planning, testing, and security governance activities to ensure the uninterrupted availability ofSterlingPRO’sPOS, ATM, and Agency banking solutions. Identity, Cloud & Data Security: Manage identity security controls including MFA, Conditional Access, privileged access management (PAM), and identity risk monitoring to protect administrative access to core financial systems. Strengthen security across Azure/AWS environments, endpoints, collaboration platforms, and emerging technologies (including secure handling of biometric and payment data). Implement and oversee data classification, data protection, and access control frameworks to secure Personally Identifiable Information (PII) and financial data in transit and at rest. Compliance & Governance: Ensure compliancewith client, contractualandregulatory security requirements, including the Central Bank of Nigeria (CBN) guidelines, Nigeria Data Protection Commission (NDPC) regulations, and other applicable laws. Understand fintech Structure and security architecture Requirements. Manage end-to-end compliance with PCI DSS standards, aligning with the latest PCI DSS v4.0 requirements, including continuous monitoring and risk-based security management. Interpret and implement global standards such as ISO 9564-1 for PIN management and EMVCo's security requirements: for payment systems. Develop, review, andmaintainsecurity policies, standards, and procedures, ensuring they are technically enforceable and auditable. Lead audits and regulatory reviews, managing remediationactivitiesand tracking compliance findings to closure. Vulnerability & Threat Management: Conduct technology risk assessments for all new and existing products. Establish a robust vulnerability management program, coordinating penetrationtestingand overseeing the remediation ofidentifiedweaknesses. Manage the vendor risk management process, conducting thorough security assessments of third-party vendors and partners. Monitor security events using SIEM platforms, leading incident response, threat hunting, and digitalforensicsactivities. Champion operational resilience, ensuring the organization canmaintaincritical functions during and after a security incident. DevSecOps &Third-Party Security: Integrate security controls into CI/CD pipelines (SAST, DAST, SCA), working directly with engineering teams to promote secure coding practices. Manage supplier security assessments and third-party risk assurance activities for vendors supporting our payment ecosystem. Requirements: Education: & Certifications: Educational Background: Bachelor’s Degree in Cybersecurity, Computer Science, Information Technology,a related field; or equivalent proven experience. A Master’s Degree or MBA is a plus. Certifications: One or more of the following is highly preferred: CISSP, CISM, CISA, CRISC, or ISO 27001 Lead Implementer/Auditor. Standards:Expert knowledge of PCI DSS, ISO 27001, NIST, and OWASP. Professional Experience: 5+ years of experience: leading security operations within a hybrid SOC environment (Fintech industry experience: is an advantage) Track record of successfully managing regulatory relationships and navigating complex compliance landscapes (CBN, NDPC). Strong knowledge of SIEM platforms, particularly Microsoft Sentinel or equivalent technologies (e.g., Splunk,QRadar). Expertise inthreat detection, incident response, vulnerability management, and security monitoring. Hands-on experience: with modern security tooling: EDR/XDR (e.g., Microsoft Defender), IAM (Entra ID), Cloud Security (Azure/AWS native tools), and Data Loss Prevention technologies. Strong understanding of Zero Trust architecture, identity security, cloud security, and DevSec Ops principles. Working knowledge of ISO 27001, SOC 2, risk management frameworks, and audit processes. Ability to communicate effectively with technical teams, senior stakeholders, clients, and external partners. Check how your CV aligns with this job Method of Application Interested and qualified candidates should send their CV to: hr@sterlingprong.com using the job title as the subject of the mail. Build your CV for free. Download in different templates.