Infrastructure Security Engineer

Lagos Full-time Undisclosed
Job Description
Job description Remote: Remote About Quidax

Quidax is where crypto meets limitless possibilities. We’re making digital asset access effortless for individuals, businesses, and fintechs in Africa. Our goal? Providing real value for our customers while driving the future of Finance.

About the Role

We’re looking for an Infrastructure Security Engineer who can build and maintain a strong security posture in a fast-moving, high-stakes financial environment, without slowing the business down.

This role sits at the heart of our security infrastructure, protecting our cloud, networks, endpoints, databases, code repositories, data stores and critical systems. You’ll be designing, re-designing, fixing and continuously improving how we secure Quidax at scale.

If you’re the kind of person who is very meticulous, process oriented, logical and has a passion for cybersecurity technologies — you’ll fit right in.

What You’ll Be Owning

Security Solutions Configuration, Review & Optimization

• Within 30 days, the Infrastructure Security Engineer should be able to carry out configuration of various security solutions including network firewalls, Endpoint Detection & Response Solutions, Web Application Firewalls, Cloud Native Application Protection Platforms, Security Incident and Event Management, Security Orchestration Automation and Response Solutions, Identity Provider Solutions and Threat Management Solutions among others.
• Within 90 days, the Infrastructure Security Engineer should be able to carry out reviews & optimizations on various security solutions in compliance with the established policies.
• Within 180 days, the Infrastructure Security Engineer should review current security baselines & ensure alignment of all security and technology solutions with the security baselines across all environments (cloud, endpoints, network)
Audits & Compliance Reviews
• Within 90 days, the Infrastructure Security Engineer should have adequate understanding of our existing infrastructure security systems and technical controls (how they work, effectiveness & gaps if any) to be able to provide insights during audits & compliance reviews.
• Within 180 days, the Infrastructure Security Engineer should be able to assume roles within our Information Systems Management framework.
• Within 180 days, the Infrastructure Security Engineer should be able to work with Governance Risk & Compliance to close audit findings quickly and effectively.
Access Control Management & Optimization
• Within 30 days, the Infrastructure Security Engineer should have an understanding of our Access Control Policies, Processes & Technologies.
• Within 30 days, the Infrastructure Security Engineer should be able to take ownership of Access provisioning, decommissioning & access management optimization.
• Within 90 days, the Infrastructure Security Engineer should have conducted a review of the current access management system, identified gaps and propose recommendations.
Vulnerability Management
• Within 60 days, establish a consistent vulnerability management process across infrastructure and endpoints
• Within 90 days, ensure all critical & high vulnerabilities have clearly defined remediation SLAs
• Within 180 days, reduce monthly recurring unremediated vulnerabilities by 40%
• Provide clear, actionable vulnerability remediation guidance to Engineering and DevOps teams.
Security Monitoring, Detection & Response
• Within 30 days, review and be conversant with existing SIEM architecture.
• Within 90 days, identify and document all areas of improvement in our security event monitoring.
• Within 180 days, start implementing all areas of improvement to log aggregation, security event analysis and alerting.
• Within 90 days, identify new playbooks for automated incident response in the SOAR and document the recommendations
• Within 12 months, implement the playbooks for automated incident response recommendations in the SOAR
• Continuously improve detection coverage and incident response automation and orchestration across cloud, endpoints, and network layers.
Secure Cloud & Network
• Within 30 days, review and understand services & configurations across multi-cloud platforms.
• Within 60 days, be able to administer security policies & security services across multi-cloud platforms.
• Within 60 days, partner with relevant Engineering teams to ensure security is embedded in infrastructure design and configuration from day one.
Security Operations & Automation
Sponsored Reseller Web hosting
Share this Job
Job Snapshot
  • Posted: May 23, 2026
  • Job Type: Full-time
  • Location: Lagos
  • Source: External