Engineering

Security Engineer At Kredete

Kredete·Lagos, nigeria·Full Time·Internship
EngineeringFull TimeInternship

About The Role

  • We are seeking a seasoned Security Engineer to safeguard our critical digital assets and infrastructure from evolving cyber threats. In this role, you will be the frontline defender, responsible for implementing robust security measures, proactively hunting for vulnerabilities, and rapidly responding to security incidents to ensure the integrity, confidentiality, and availability of our systems.

What You'll Do

  • Defend & Monitor: Continuously monitor security alerts from our SIEM, EDR, firewalls, and other security systems to detect and investigate malicious activity.
  • Respond & Recover: Lead the response to security incidents, performing containment, eradication, and forensic analysis to identify root cause and prevent recurrence.
  • Identify Weaknesses: Conduct regular vulnerability assessments and penetration tests on our networks, applications, and cloud environments to find security gaps before attackers do.
  • Harden Defenses: Configure, manage, and optimize our security infrastructure, including firewalls, WAF (Web Application Firewall), IDS/IPS, and endpoint protection tools.
  • Automate Security: Develop scripts (e.g., in Python, Bash, or PowerShell) to automate repetitive security tasks and improve our operational efficiency.
  • Enforce Policy: Help implement and enforce IT security policies and controls, ensuring compliance with relevant standards like ISO 27001 or the NDPA.
  • Promote Awareness: Contribute to company-wide security training initiatives to foster a strong culture of security awareness.

Qualifications

  • You hold a Bachelor's degree in Computer Science, Cybersecurity, or a related field.
  • You have 3-5 years of hands-on experience in a cybersecurity role such as Security Engineer, SOC Analyst, or Network Security Administrator.
  • You possess proven, practical experience with:
  • Core security tools: Firewalls (Palo Alto, Fortinet), SIEM (Splunk, Elastic, Sentinel), and EDR (CrowdStrike, SentinelOne).
  • Networking fundamentals: Deep understanding of TCP/IP, DNS, VPNs, and network segmentation.
  • Cloud security: Hands-on experience securing cloud platforms, preferably AWS or Azure.
  • Operating Systems: Strong administration skills for both Windows and Linux environments.
  • You have a strong grasp of common cyber threats, attack vectors, and vulnerability management lifecycles.
  • You are a proactive problem-solver with excellent analytical skills and the ability to remain calm under pressure during incidents.
  • You can communicate complex security concepts clearly to both technical and non-technical colleagues.

Nice To Have

  • Professional cybersecurity certifications such as CEH, CompTIA Security+, CySA+, or CISSP (Associate).
  • Experience with scripting for automation using Python, PowerShell, or Bash.
  • Knowledge of securing containerized environments (Docker, Kubernetes).
  • Experience participating in internal or external security audits.
  • A passion for continuous learning and staying updated with the latest security trends and threats.

Key skills

BA/BSc/HND

At a glance

Company

Kredete

Location

Lagos, nigeria

Employment

Full Time

Experience

Valid until

Not specified

Created

September 4, 2026

More opportunities

Similar roles you might like

Senior Cybersecurity Engineer At Irecharge Tech-innovations

iRecharge Tech-Innovations

Lagos, nigeria

full-time

The ideal candidate will be a hands-on security professional with strong experience in security engineering, penetration testing, ethical hacking, application security, cloud security, and vulnerability management. You should be able to think like an attacker while working collaboratively with Engineering, DevOps, Infrastructure, and Product teams to identify and mitigate real-world security threats. Key Responsibilities Design and implement security controls across applications, infrastructure, networks, cloud environments, and digital banking systems. Plan and execute authorised penetration tests across web applications, APIs, mobile applications, networks, cloud infrastructure, and internal systems. Conduct ethical hacking and manual security testing to identify vulnerabilities beyond automated scanning. Assess web applications and APIs for authentication, authorisation, access control, session management, and other security vulnerabilities. Assess and strengthen AWS cloud and infrastructure security, including IAM, network configurations, exposed services, storage, and access controls. Manage vulnerability assessments, prioritisation, remediation, and validation across technology environments. Investigate security alerts, suspicious activities, and potential breaches, supporting incident response and root-cause analysis. Conduct threat modelling, attack-surface assessments, and security reviews for new products and system changes. Work closely with developers and technical teams to resolve vulnerabilities and promote secure development practices. Prepare clear security reports, communicate risks, and recommend practical remediation measures. Continuously improve the organisation's overall security posture and security processes. Requirements Bachelor's degree in Computer Science, Information Technology, Engineering, or a related discipline. 5+ years of professional cybersecurity experience, with strong hands-on experience in security engineering, penetration testing, offensive security, or application security, within banking, fintech, payments, financial services, or other regulated environments is an advantage. Proven experience conducting penetration tests and security assessments. Strong knowledge of web application, API, mobile, network, cloud, and infrastructure security. Strong understanding of OWASP principles and common security vulnerabilities. Hands-on experience with tools such as Burp Suite, Nmap, Wireshark, Metasploit, Nessus/OpenVAS, or equivalent. Strong knowledge of AWS security and cloud security controls. Knowledge of Linux and Windows security. Scripting experience with Python, Bash, PowerShell, JavaScript, or similar languages. Ability to understand source code and identify security vulnerabilities. Strong analytical, problem-solving, and communication skills. Experience working with Engineering, DevOps, Infrastructure, and technical teams. Knowledge of PCI DSS, ISO 27001, NIST, and OWASP is desirable. Professional certifications such as OSCP/OSCP+, CEH, PNPT, CISSP, CISM, GIAC, or AWS Certified Security - Specialty are an added advantage. What We're Looking For We are looking for someone who can: Think beyond automated vulnerability scanners. Identify and validate real-world security weaknesses. Demonstrate the business impact of vulnerabilities. Recommend practical and scalable security solutions. Work effectively with technical teams to resolve security issues. Respond effectively to security incidents. Make ownership of strengthening the organisation's security posture. Maintain high standards of integrity, confidentiality, and responsible security practice

2 days ago

Senior Application Security Engineer At Software Business Solutions Consulting

Software Business Solutions Consulting

Lagos, nigeria

full-time

Role Description The Senior Application Security Engineer is a contract, on-site role based in Ikeja, responsible for securing applications and related infrastructure throughout the software development lifecycle. This role involves performing threat modeling, secure design reviews, and code reviews to identify and remediate vulnerabilities in web, mobile, and backend systems. The engineer will collaborate closely with development, DevOps, and product teams to integrate security best practices, define secure coding standards, and support automated security testing in CI/CD pipelines. Daily activities include analyzing security incidents, conducting penetration testing and risk assessments, recommending technical and process improvements, and documenting security requirements and guidelines. The role also includes mentoring team members on security practices, staying current on emerging threats and technologies, and contributing to the overall security posture of client solutions. Qualifications Strong expertise in application security, including threat modeling, secure architecture design, code review, and vulnerability assessment. Experience with common security tools and technologies (e.g., SAST/DAST tools, dependency scanning, penetration testing frameworks, and security monitoring solutions). Solid understanding of secure software development practices, including SDLC integration, CI/CD pipeline security, and DevSecOps principles. Knowledge of industry security standards and frameworks such as OWASP Top 10, NIST, ISO 27001, and relevant compliance requirements. Proficiency in at least one major programming language (such as Java, C#, JavaScript, Python, or similar) and familiarity with modern web and mobile application frameworks. Experience collaborating with cross-functional teams, providing security guidance to developers, and communicating technical risks to non-technical stakeholders. Strong analytical and problem-solving skills, with the ability to prioritize risks and recommend practical mitigation strategies. Bachelor's degree in Computer Science, Information Security, Engineering, or a related field; relevant certifications (e.g., CISSP, CSSLP, OSCP, CEH) are an advantage. Prior experience in a senior or lead application security role, preferably within consulting or multi-industry environments.

4 days ago

Cloud Security Engineer At Renmoney

Renmoney

Lagos, nigeria

full-time

The Role The Cloud Security Engineer is responsible for designing, implementing, and managing security controls across the organization's cloud environments. The role ensures secure architectures, proactive threat detection, and continuous compliance across AWS, Azure, GCP, and cloud-native technologies. What You Will Do Cloud Security Architecture & Engineering: Design and implement secure cloud architectures for IaaS, PaaS, and SaaS platforms (AWS, Azure, GCP). Implement Zero Trust principles, network segmentation, and secure landing zones. Define and enforce cloud security baselines, hardening standards, and configuration policies. Cloud Security Operations: Manage cloud-native security tools (AWS Security Hub, GuardDuty, Azure Defender, GCP Security Command Center). Monitor and remediate misconfigurations using CSPM and CIEM solutions. Conduct continuous security assessments and vulnerability remediation on cloud assets. Support DevOps pipelines by integrating security tools (SAST and DAST). Identity & Access Management: Implement and manage identity controls such as IAM, RBAC, MFA, and conditional access policies. Review and enforce least privilege access for users, applications, and services. Threat Detection & Incident Response: Analyze cloud-specific security alerts, investigate suspicious activities, and respond to incidents. Support threat hunting and logging activities using SIEM/SOAR platforms. Develop runbooks and playbooks for cloud-related incidents. Compliance & Governance: Ensure cloud environments meet internal security policies, regulatory requirements, and frameworks such as ISO 27001, PCI DSS, CIS Benchmarks, NIST CSF. Conduct periodic cloud compliance audits and provide remediation guidance. Documentation & Collaboration: Create and maintain security documentation including architecture diagrams, SOPs, and hardening guides. Work closely with DevOps, Networking, Infrastructure, and other teams to ensure secure deployment of cloud workloads. Train and guide technical teams on cloud security best practices. Requirements Bachelor's degree in computer science, Information Security, Engineering, or related field. 5 - 7 years hands-on experience in cloud engineering or cloud security. Strong experience with at least one major cloud platform (AWS, Azure, or GCP). Experience with cloud security tools: CSPM, WAF, API Gateway security, Firewalls, and vulnerability scanners. Solid understanding of networking concepts: VPC, subnets, VPN, firewalls, routing, DNS, load balancing. Experience with security frameworks such as ISO 27001, NIST, CIS, and PCI DSS. Preferred Certifications (Any 3 of the following): AWS Certified Security - Specialty Microsoft Azure Security Engineer (AZ-500) Google Professional Cloud Security Engineer CISSP, CISM, CCSP, CEH CompTIA Security+, Cloud+ Key Skills: Cloud architecture and security hardening Identity and Access Management Threat detection and incident response Container and Kubernetes security Strong analytical and troubleshooting skills Excellent communication and documentation skills. Benefits Competitive compensation and performance-driven rewards. Opportunity to work with modern cloud security technologies across AWS, Azure, and GCP. A collaborative and high-impact engineering environment. Professional development support, including certifications and specialized security training. Exposure to advanced cloud architectures, DevSecOps practices, and enterprise-scale security programs. A culture that values innovation, ownership, and continuous improvement.

6 days ago

Security Engineer At Kredete
Lagos, nigeria
Apply