Hospitality

Application Security Analyst At Conclase Consulting

Conclase Consulting·Lagos, nigeria·Full Time·Onsite
HospitalityFull TimeOnsite
-

The Applications & Mobile Solution Security Analysts is responsible for the following:

  • Perform static application security testing (SAST), dynamic application security testing (DAST), and manual code reviews to identify vulnerabilities.
  • Collaborate with development teams to ensure secure coding practices are followed and security is embedded into the software development lifecycle (SDLC).
  • Integrate security tools into CI/CD pipelines to automate testing and enforce policies.
  • Review and update security configuration baselines for applications & databases in alignment with leading practice and changes to business and technology environment
  • Create corrective action plans for non-compliant items and work with application development and database teams to close the issues
  • Stay updated on the latest application security threats, tools, and techniques.
  • Collaborate with relevant teams to ensure that secure service posture from design to implementation are maintained for all cloud services.
  • Support and consult with product and development teams in application security, including threat modeling and application security reviews.
  • Ensure that all new IT and e-business projects, products and services are effectively assessed and certified okaybefore Go-Live.
  • Perform periodic vulnerability assessments and provide reports to management review and corrective actions
  • Ensure application security practices align with regulatory requirements and industry standards like OWASP, ISO 27001, and PCI DSS.
  • Fintech or banking experience is a plus
  • 3-5 years experience needed

Key Performance Indicators

  • Complete security testing on all applications with a turnaround time (TAT) of less than 10 days, achieving a defect detection rate of at least 95%
  • VAPT on all critical applications at least once a year
  • Achieve a 100% completion rate for secure code reviews for all code changes in critical applications before merging into the main codebase
  • Zero incident in a year due to false negative or no VAPT

Skillset & Qualification

  • Oral and verbal communication
  • CISSP/CEH/
  • Breach & attack simulation
  • Understanding of bank's digital operations
  • Strong analytical and problem-solving skills
  • BSc Computer Science, Information Technology, or a related field

Key skills

BA/BSc/HND
Apply Now
Send your CV along with a cover letter tocareers@conclaseint.com

Please use the job title as the subject line of your email.

At a glance

Company

Conclase Consulting

Location

Lagos, nigeria

Employment

Full Time

Work style

Onsite

Experience

Valid until

Not specified

Created

June 15, 2026

More opportunities

Similar roles you might like

Application Security Analyst At Hydrogen Payment Services Company Limited

Hydrogen Payment Services Company Limited

Lagos, nigeria

full-time

We are seeking an Application Security Analyst to protect the applications powering our card issuance, card management, and switch/transaction processing platforms. You will embed security across the SDLC, conduct testing and code reviews, support PCI-DSS compliance, and drive remediation efforts. You'll partner with engineering, SOC, and security teams to secure card and switch infrastructure, including third-party and ISO 8583 integrations What you will do Secure Application Testing & Review - Conduct SAST, DAST, SCA, and manual secure code reviews, along with vulnerability assessments and penetration testing (web, API, mobile) across card management, switch, and POS/ATM integration systems. Secure SDLC & CI/CD Integration - Design and embed security checkpoints throughout the development lifecycle and CI/CD pipelines to ensure security is built into application development from the start. PCI-DSS Compliance & Risk Management - Support control validation, evidence collection, and remediation tracking for PCI-DSS compliance, while reviewing third-party and vendor integrations (including ISO 8583 messaging and card network interfaces) for security risk Monitoring & Incident Response - Monitor application-layer security events, collaborate with SOC teams to investigate anomalies in card/switch transaction flows, and participate in incident response for application- level security incidents Reporting & Security Enablement - Document findings and produce risk assessment reports, partner with engineering teams to track remediation to closure, and contribute to secure coding training and awareness sessions for developers. Requirements Bachelor's degree in cyber/information security, computer science, information technology or any related discipline. 3-5 years of relevant experience in application security, penetration testing, or software security engineering, with prior exposure to fintech, banking, card processing, or payment switch environments considered a strong advantage. Certifications: CompTIA Security+ (required or in progress); CEH, OSCP, CSSLP, PCI-DSS, or cloud security certifications (AWS Security Specialty. AZ-500) preferred; progress toward CISSP a plus. Strong analytical communication, and cross-functional collaboration skills; able to translate technical risk into business terms and perform under pressure.

a day ago