Application Security Engineer

Job description

Who we are

Moniepoint Inc. is Africa’s all-in-one financial ecosystem, helping 10 million businesses and individuals access seamless payments, banking, credit, and business management tools since 2019.

As Nigeria’s largest merchant acquirer, it powers most of the country’s Point of Sale (POS) transactions. Through its subsidiaries, Moniepoint Inc. processes $22 billion monthly for its customers while operating profitably.

Curious about what makes Moniepoint an incredible place to work? Check out posts on how we cultivate a culture of innovation, teamwork, and growth.

About the role

As a Senior Security Engineer, you will champion secure innovation by embedding security into the fabric of our software development lifecycle. You’ll partner closely with engineering teams to safeguard customer trust while they build cutting-edge services. Your expertise will directly shape secure design through threat modeling and code review, drive efficiency via security automation, and mentor developers to elevate our collective security posture.

The ideal candidate is a technical leader who blends deep security expertise with exceptional influence. You possess broad security knowledge anchored by specialization in critical areas, and excel at translating complex risks into actionable insights for both engineers and executives. Your strength lies in harmonizing diverse perspectives, strategically prioritizing risks, and guiding partners to implement resilient, secure solutions that balance speed and safety.

Key Responsibilities

Security Strategy & Leadership

  • Define and execute security strategy for product teams, aligning with business objectives.
  • Lead threat modeling, security architecture reviews, and design guidance for diverse software projects.
  • Mentor engineers technically and professionally, fostering a culture of security excellence.

Advanced Technical Execution

  • Conduct adversarial security analysis using automated tools and manual techniques (e.g., custom exploit development).

  • Perform manual/automated secure code reviews across Java, Python, JavaScript, and cloud-native stacks.

  • Develop security automation tools to scale vulnerability detection (SAST/DAST/IAST enhancements).

Risk Mitigation & Innovation

  • Identify complex risks through offensive security research; advocate for cutting-edge mitigation technologies.
  • Solve novel security problems lacking predefined solutions (e.g., zero-day vulnerabilities, emergent attack vectors).
  • Maintain and evolve threat models for critical applications and microservices architectures.

Collaboration & Enablement

  • Partner with the engineering team to embed security controls into CI/CD pipelines and development practices.
  • Design/deliver security training programs tailored to development teams and business stakeholders.
  • Lead incident response for application security events and drive root-cause analysis.

Qualifications Required

  • 5+ years in application security, including 2+ years in a senior/lead role.
  • Expertise in threat modeling (e.g., STRIDE, PASTA), penetration testing, and secure SDLC implementation.Proficiency in code review for Java/Python/JavaScript and cloud platforms (AWS/Azure/GCP).
  • Hands-on experience building security tools (e.g., scanners, CI plugins) with Python/Go.
  • Proven track record in security architecture design and risk-based decision-making.

Preferred

  • OSCP, OSCE, GXPN, or similar offensive security certifications.
  • Contributions to security tooling/open-source projects.
  • Experience with container security (Kubernetes, Docker), serverless, or infrastructure-as-code.

Skills

  • Leadership: Ability to define team strategy, mentor engineers, and influence stakeholders.
  • Innovation: Aptitude for researching/implementing novel solutions to ambiguous security challenges.
  • Technical Depth: Mastery of application security frameworks (OWASP, NIST) and exploit techniques.
  • Communication: Translate technical risks to business impact for executives and engineers alike.
  • Execution: Drive implementation of security controls

What we can offer you

  • Culture -We put our people first and prioritize the well-being of every team member. We’ve built a company where all opinions carry weight and where all voices are heard. We value and respect each other and always look out for one another. Above all, we are human.
  • Learning - We have a learning and development-focused environment with an emphasis on knowledge sharing, training, and regular internal technical talks.
  • Compensation - You’ll receive an attractive salary, pension, health insurance,, Employee Stock Options, annual bonus, plus other benefits.

What to expect in the hiring process

  • A preliminary phone call with the recruiter
  • A technical interview with a Lead in our Engineering Team
  • A behavioural and technical interview with a member of the Executive team.
Share this job:
Please let Moniepoint know you found this job on Remote First Jobs 🙏

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service 🙏

Apply