Nomupay is hiring an Information Security Analyst to join our growing security team. This role will play a critical part in strengthening our information security posture and ensuring compliance across the organisation.
What you'll be doing
- Oversee IT asset management processes, ensuring accurate inventory and lifecycle tracking.
- Own and manage identity and access management (IAM) across organization.
- Develop and implement global access request & management processes, including access request workflows, access reviews, and role-based access control.
- Coordinate with the Enterprise IT team to improve end-user computing security, including endpoint hardening and device policies.
- Support audit and compliance efforts by maintaining documentation and access control records.
- Support SecOps engineer with infrastructure tasks coordination.
What we’re looking for
- 5+ years of experience in an information security management or IT governance role.
- Practical knowledge of IAM solutions and best practices.
- Experience with asset management systems and policies.
- Familiarity and experience with PCI DSS standard and audit process.
- Familiarity with frameworks such as ISO 27001, NIST, or CIS Controls.
- Strong collaboration and communication skills, especially with IT operations teams.
Additional skills (not essential)
- Certifications such as CISM, CISA, or ISO 27001 Lead Implementer/Auditor.
- PCI DSS QSA/ISA certifications.
- Experience in regulated industries such as finance or payments.