
Job Overview
Location
Lagos
Job Type
Full-time
Category
Software Engineering
Date Posted
June 4, 2026
Full Job Description
đ Description
- ⢠Conduct web and mobile application security assessments, including API security testing, threat modelling, secure code reviews, and attack surface analysis to identify vulnerabilities in Paystackâs fintech platform.
- ⢠Perform SAST and DAST initiatives to automate and enhance application security scanning across development pipelines.
- ⢠Manage the vulnerability lifecycle by coordinating internal and external security assessments, ensuring proper scoping, timely delivery, and tracking remediation progress across engineering teams.
- ⢠Integrate secure development practices into the SDLC by collaborating with Engineering, Product, and DevOps teams during development sprints to provide proactive security guidance.
- ⢠Develop and maintain security frameworks, checklists, and guidelines aligned with OWASP Top 10, CWE, NIST, and MITRE standards to standardize secure coding practices.
- ⢠Implement DevSecOps testing and protective controls within CI/CD pipelines to embed security early and continuously in the software development lifecycle.
- ⢠Assist in the investigation and resolution of application security incidents, contributing to post-incident analysis and recommending preventative measures to reduce recurrence.
- ⢠Stay current with emerging cybersecurity threats, attack vectors, and industry trends to research and propose innovative security solutions for Paystackâs growing platform.
- ⢠Identify and drive process improvements to increase the efficiency and effectiveness of security assessments, reducing mean time to detect and remediate vulnerabilities.
- ⢠Communicate complex security concepts clearly to both technical and non-technical stakeholders, ensuring alignment across departments on security priorities and risk mitigation strategies.
- ⢠Work cross-functionally with Engineering, DevOps, and Product teams to foster a culture of secure development and shared ownership of application security.
- ⢠Support the Information Security function by contributing to policy creation, standards enforcement, and security awareness initiatives across the organization.
- ⢠Ensure cloud security best practices are applied across AWS, Azure, or GCP environments used by Paystackâs infrastructure.
- ⢠Maintain hands-on technical involvement in security tooling, scripting, and automation to enhance detection capabilities and reduce manual effort in security operations.
- ⢠Participate in security audits and compliance activities related to application security controls and regulatory requirements impacting fintech operations in Africa.
đŻ Requirements
- ⢠Minimum 3 years in application security, IT security, or software development with a security focus
- ⢠Hands-on experience with penetration testing, vulnerability assessments, and secure code reviews
- ⢠Proven experience with SAST, DAST, and threat modelling frameworks
- ⢠Practical knowledge of secure software development practices (OWASP Top 10, CWE)
- ⢠Hands-on development experience or scripting ability (Python, JavaScript, Bash)
- ⢠Strong understanding of web application security, API security, and cloud security concepts (AWS, Azure, or GCP)
đď¸ Benefits
- ⢠Competitive compensation package and benefits
- ⢠Stripe Equity compensation
- ⢠Full medical coverage
- ⢠Wellbeing stipend
- ⢠Generous leave and sabbatical policies
- ⢠Hybrid working environment
Skills & Technologies
About TalentSafari SAS
French recruitment agency matching tech talent with startups and scale-ups through curated talent pools, skill assessments and streamlined hiring processes. Offers permanent and freelance placements across software engineering, data, product and design roles. Founded in 2016 and headquartered in Paris, it combines human expertise with AI-driven matching to reduce time-to-hire for fast-growing European companies while providing career coaching and market insights to candidates.
Subscribe to the weekly newsletter for similar remote roles and curated hiring updates.
Newsletter
Weekly remote jobs and featured talent.
No spam. Only curated remote roles and product updates. You can unsubscribe anytime.
Similar Opportunities
3 days ago

Twilio Inc.
2 months ago


