Credit Direct Limited is a non-bank finance company with its Head-Quarters in Lagos, Nigeria. The company was established in 2006 and is focused on providing Payroll based consumer loans to eligible individuals. The Company currently operates in 25 states in Nigeria including the Federal Capital Territory– Abuja. With a staff strength of over 1000 employees and an active customer base in excess of 300,000, Credit Direct Limited is positioning itself to become the dominant market leader in the unsecured micro-lending (payroll lending) space in Nigeria and indeed Sub-Saharan Africa.
Job Summary
The ideal candidate will be responsible for identifying, assessing, and mitigating risks associated with our IT systems and processes. This role requires a deep understanding of IT infrastructure, security measures, and risk management frameworks.
RESPONSIBILITIES:
Risk Assessment and Analysis:
- Conduct comprehensive risk assessments of IT systems, applications, and processes.
- Identify potential vulnerabilities and threats to IT infrastructure.
- Evaluate the effectiveness of existing controls and recommend improvements.
Risk Mitigation:
- Develop and implement strategies to mitigate identified risks.
- Collaborate with IT and business units to ensure risk mitigation measures are integrated into daily operations.
- Monitor and report on the status of risk mitigation efforts.
Compliance and Regulatory Adherence:
- Ensure compliance with relevant regulatory requirements and industry standards (e.g., NIST, ISO 27001, COBIT).
- Conduct regular audits to ensure adherence to IT risk management policies and procedures.
- Stay updated on regulatory changes and emerging threats.
Incident Management:
- Respond to IT security incidents and breaches.
- Conduct root cause analysis and develop action plans to prevent recurrence.
- Coordinate with external agencies and stakeholders during major incidents.
Reporting and Documentation:
- Prepare detailed reports on risk assessments, audit findings, and incident responses.
- Maintain comprehensive documentation of risk management activities.
- Communicate findings and recommendations to senior management and stakeholders.
Training and Awareness:
- Develop and deliver training programs to enhance awareness of IT risk management practices.
- Promote a culture of risk awareness and proactive risk management within the organization.
Requirements
- Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field.
- Professional certifications such as CISSP, CISM, CRISC, ITIL, COBIT or equivalent.
- Minimum of 2-4 years of experience in IT risk management, IT audit, or cybersecurity.
- Prior experience working in the financial sector in Nigeria.
- Familiarity with Nigerian financial regulations and compliance requirements.
COMPETENCIES REQUIREMENTS:
Technical:
- Strong understanding of IT risk management frameworks and standards (e.g., NIST, ISO 27001, COBIT).
- Excellent analytical and problem-solving skills.
- Strong communication and report-writing skills.
Behavioural:
- Ability to work independently and as part of a team.
- High level of integrity and ethical standards.
Method of Application
Signup to view application details.
Signup Now