Senior Cybersecurity Analyst / Penetration Tester (Fully Remote)

Nigeria Undisclosed
Job Description
Job Title: Senior Cybersecurity Analyst / Penetration Tester (Remote)

Location: Remote
Type: Contract

Overview

We are a fast-growing digital education and training organization currently developing a comprehensive Learning Management System (LMS) portal. As we approach launch, security and data protection are top priorities.

We are seeking a highly experienced Senior Cybersecurity Analyst / Penetration Tester to conduct in-depth security assessments, simulate real-world attacks, and harden our platform against vulnerabilities.

This role is critical to ensuring that our LMS is resilient against cyber threats, data breaches, and unauthorized access. You will be responsible for identifying weaknesses, validating controls, and working closely with engineering teams to implement security improvements.

This is a project-based, fully remote engagement, ideal for an experienced security professional with strong penetration testing and application security expertise.

Reliable internet access and a secure remote work environment are required.

Who This Role Is For

This role is for a seasoned cybersecurity professional who:
• Has hands-on experience conducting penetration tests on web applications or SaaS platforms.
• Understands modern attack vectors, threat models, and defensive controls.
• Is comfortable working independently in remote environments.
• Can translate technical risks into clear, actionable recommendations.
• Has supported pre-launch security hardening of digital products.

If you have previously tested LMS platforms, fintech systems, SaaS tools, enterprise portals, or large-scale web applications, this role is a strong fit.

Key Responsibilities

Application Security & Penetration Testing
• Perform comprehensive penetration testing on the LMS platform, including:
• Web application testing
• API security testing
• Authentication and authorization review
• Session management and access control validation
• File upload and data handling assessments
• Identify and exploit vulnerabilities to assess real-world risk.
• Conduct vulnerability assessments and security audits.
• Validate compliance with security best practices and standards.
• Simulate attack scenarios to evaluate system resilience.

Risk Management & Security Hardening
• Document security findings with severity ratings and remediation guidance.
• Collaborate with developers to close identified security gaps.
• Validate security fixes and conduct re-testing.
• Support implementation of secure coding practices.
• Recommend architectural and infrastructure security improvements.
• Help establish baseline security policies and controls.

Monitoring, Reporting & Advisory
• Produce detailed security assessment reports.
• Provide executive-level risk summaries.
• Participate in security reviews and release readiness evaluations.
• Advise leadership on threat exposure and mitigation priorities.
• Maintain security documentation for future audits.

What You’ll Gain
• Opportunity to secure a high-impact digital learning platform.
• Direct influence on platform resilience and trustworthiness.
• Collaboration with engineering and leadership teams.
• Exposure to full product security lifecycle.
• Potential for long-term consulting opportunities.

What You’ll Learn
• Security architecture of modern LMS platforms.
• Real-world SaaS security operations.
• Remote security collaboration workflows.
• Risk management in digital product environments.
• Scaling security controls in growing systems.

Qualifications and Skills

Required
• Bachelor’s degree in Cybersecurity, Computer Science, Information Security, or related field (preferred).
• 5+ years of professional experience in cybersecurity or penetration testing.
• Proven experience testing web applications and APIs.
• Strong knowledge of OWASP Top 10 and modern threat models.
• Experience with security testing tools and frameworks.
• Excellent documentation and reporting skills.
• Ability to work independently and meet project deadlines.

Technical Skills
• Manual and automated penetration testing.
• Proficiency with tools such as:
• Burp Suite, Metasploit, Nessus, Nmap, OWASP ZAP
• API testing and security validation.
• Secure code review (basic to intermediate level).
• Cloud security fundamentals.
• Understanding of network security concepts.
• Familiarity with DevSecOps workflows.

Preferred Qualifications
• Experience securing LMS, EdTech, fintech, or SaaS platforms.
• Industry certifications (CEH, OSCP, CISSP, Security+).
• Experience in pre-launch security audits.
• Knowledge of data privacy regulations.
• Experience working with distributed engineering teams.

Bonus Experience (Nice to Have)
• Bug bounty participation.
• Incident response experience.
• Threat hunting exposure.
• Infrastructure security testing.
• Experience with container or cloud security.

Personal Attributes
• Highly ethical and confidentiality-driven.
• Detail-oriented and risk-focused.
• Proactive and solution-oriented.
• Strong communicator.
• Organized and disciplined in remote environments.
• Passionate about protecting digital systems.

What We Offer
• Fully remote, project-based engagement.
• Competitive compensation (₦220,000 – ₦450,000, negotiable).
• Flexible working schedule.
• High-impact security leadership role.
• Potential for future consulting engagements.
• Supportive and professional team culture.

Job Type: Contract

Pay: ₦220,000.00 - ₦750,000.00 per month

Application Question(s):
• Have you previously tested SaaS, LMS, or large-scale web platforms? Please describe.
• Which penetration testing tools and methodologies do you use most often?
• Can you share examples of systems you helped secure before launch?
• What is your expected monthly compensation within the stated range?
• How do you typically prioritize and report critical security risks?
• Are you available for project-based, fully remote work over the coming months?

Experience:
• Penetration Testing: 5 years (Preferred)
• Web Application Security: 4 years (Preferred)
• API Security Testing: 3 years (Preferred)
• Vulnerability Assessment: 4 years (Preferred)
• Security Reporting: 3 years (Preferred)
• DevSecOps: 2 years (Preferred)
Sponsored End of the year 50% Promo discount
Share this Job
Job Snapshot
  • Posted: Mar 08, 2026
  • Job Type:
  • Location: Nigeria
  • Source: External