Cybersecurity Architect and Security-Testing Provider

Lagos, Nigeria • Contract • Salary: ₦280,000 – ₦300,000 (Month)

Closes in 1 day.


Position purpose

Odunela Group seeks a cybersecurity architect and security-testing provider to independently review cybersecurity architecture, advise on control design and conduct security testing before launch and periodically thereafter.

The appointee must remain sufficiently independent from operational system administration.

Scope of services

The appointed professional will:

  1. review infrastructure, application and access architecture;
  2. assess identity and access-management controls;
  3. review privileged-access arrangements;
  4. review network, endpoint, server and database security;
  5. assess cloud, hosting and backup arrangements;
  6. review logging and monitoring;
  7. review encryption and key-management arrangements;
  8. assess secure development and deployment practices;
  9. review third-party and integration risks;
  10. perform vulnerability assessments;
  11. perform penetration testing within authorised scope;
  12. validate remediation;
  13. review incident-response arrangements;
  14. support business-continuity and disaster-recovery testing;
  15. advise on secure configuration baselines;
  16. review security-awareness measures;
  17. issue independent findings and risk-rated recommendations;
  18. provide a pre-launch security-readiness report.
Required qualifications and experience
Individual applicant

The applicant must demonstrate:

  1. relevant cybersecurity qualification or substantial equivalent experience;
  2. recognised security certification, where applicable;
  3. practical experience in security architecture;
  4. practical penetration-testing experience;
  5. knowledge of web applications, APIs, cloud or hosted infrastructure;
  6. experience producing risk-rated technical reports;
  7. evidence of ethical-testing practices;
  8. professional-indemnity or cyber-liability insurance where applicable.
Organisation applicant

The organisation must demonstrate:

  1. legal registration;
  2. cybersecurity-testing capability;
  3. designated lead architect and lead tester;
  4. suitably qualified team members;
  5. secure testing methodology;
  6. evidence-handling and confidentiality controls;
  7. professional-indemnity or cyber-liability insurance;
  8. experience with comparable digital-platform assignments;
  9. secure reporting and data-retention procedures.
Deliverables
  1. security-architecture review;
  2. threat and risk assessment;
  3. vulnerability report;
  4. penetration-test report;
  5. critical-findings notification;
  6. remediation tracker;
  7. retest report;
  8. incident-response review;
  9. backup and recovery review;
  10. pre-launch cybersecurity-readiness opinion.
Application requirements
Individual applicant must submit
  1. A current technical CV.
  2. The CV submission must include or have enclosed as annexes:
  3. relevant degree or technical qualification evidence;
  4. current cybersecurity certifications;
  5. evidence of comparable security assignments;
  6. two relevant professional references;
  7. professional-indemnity or cyber-liability insurance evidence;
  8. sample redacted security report;
  9. conflict-of-interest declaration;
  10. testing-tools and methodology statement.
  11. A Cover Letter containing the Statement of Suitability, addressing:
  12. security-architecture experience;
  13. penetration-testing capability;
  14. proposed methodology;
  15. independence;
  16. availability;
  17. proposed fees.

Organisation applicant must submit

  1. A corporate capability profile.
  2. CVs of the proposed lead architect, lead tester and material supporting personnel.
  3. The submission must include or have enclosed:
  4. incorporation or registration evidence;
  5. relevant certifications and accreditations;
  6. insurance evidence;
  7. testing methodology;
  8. sample redacted deliverables;
  9. at least two comparable assignments;
  10. two client references;
  11. conflict declaration;
  12. secure evidence-handling procedure;
  13. team continuity plan.
  14. A Cover Letter containing the organisation’s Statement of Suitability and proposed delivery approach.

YOUR APPLICATION WOULD BE REJECTED IF YOU DO NOT COMPLY WITH THIS APPLICATION REQUIREMENTS.

Equal Opportunity Policy

Odunela Group assesses applicants on competence, integrity, evidence, suitability and the approved requirements of the position.

Candidate Privacy

Applicant information will be processed for recruitment, verification and employment-administration purposes in accordance with the candidate privacy information available through the Odunela Group career portal.

Apply for this role

Max size: 5MB

Share this job