Skip to content

Open nowPosted 145 days ago

Cybersecurity Lead

Workable (global search)108,016 open roles

Where
Lagos, LA, Nigeria
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowCybersecurity LeadWorkable (global search) · Lagos, LA, Nigeria
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 7 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 145 days ago

Workable (global search) median: 7 days open

The posting

The Cybersecurity Lead is responsible for safeguarding the organization’s information assets, operational technology interfaces, digital platforms, and data by leading the enterprise cybersecurity and information security function. Reporting directly to the Chief Technology Officer (CTO), the role provides independent oversight of cybersecurity risk, governance, and compliance while supporting safe, reliable, and efficient business and operational outcomes.

The role operates within a lean technology organization and works closely with Technology Operations, Digital & Technology Innovation, and Technical Project Management teams to embed cybersecurity controls into day‑to‑day operations and project delivery.

Key Accountabilities

Cybersecurity Strategy & Governance

  • Define the organization information and cybersecurity strategy together with the Digital and Technology innovation team. And execute the strategy in alignment with operational reliability, safety, and business objectives.
  • Establish and maintain cybersecurity policies, standards, and procedures aligned with global best practices and regulatory expectations.
  • Ensure security considerations are integrated into infrastructure, cloud, business applications, and digital transformation initiatives.

Cyber Risk Management & IT GRC

  • Lead enterprise cybersecurity risk management activities, including identification, assessment, mitigation, and reporting of cyber risks.
  • Maintain the cybersecurity and IT risk register and support integration with broader enterprise risk management processes.
  • Ensure compliance with applicable regulatory requirements, contractual obligations, and data protection standards relevant to the oil and gas operating environment.
  • Coordinate and support internal and external audits, risk assessments, and assurance activities.

Security Operations & Incident Response

  • Provide oversight and service assurance for outsourced Security Operations Centre (SOC) services.
  • Lead and coordinate cybersecurity incident response activities, including investigation, containment, remediation, and post‑incident reviews.
  • Ensure incident response plans, escalation procedures, and communication protocols are defined, tested, and operationally practical.

Threat Intelligence, Vulnerability & Assurance

  • Oversee vulnerability management and penetration testing programs delivered by third‑party providers.
  • Work with Technology Operations teams to ensure timely remediation of identified vulnerabilities, prioritised based on operational and business risk.
  • Monitor emerging cyber threats and industry‑relevant attack patterns and translate insights into practical control improvements.
  • Identity, Access & Architecture Security
  • Oversee Identity and Access Management (IAM) controls, including privileged access management and user lifecycle processes.
  • Promote least‑privilege access, segregation of duties, and zero‑trust principles across enterprise IT and digital platforms.
  • Provide security input into system architecture, solution designs, and technology standards.
  • Third‑Party & Supply Chain Security
  • Assess and manage cybersecurity risks associated with vendors, service providers, and technology partners.
  • Ensure appropriate security controls and requirements are embedded within contracts and service agreements.
  • Security Awareness & Capability Development
  • Deliver security awareness and targeted training programs to improve cyber hygiene across the organization.
  • Provide guidance and coaching to technology and digital delivery teams on secure practices.
  • Line‑manage and mentor a Cybersecurity Analyst to build internal security capability.
  • Reporting & Stakeholder Engagement
  • Report cybersecurity risks, incidents, and overall security posture directly to the CTO.
  • Provide clear, practical cybersecurity insights to technology leadership and business stakeholders.
  • Act as the primary cybersecurity point of contact across the organization.

Requirements

The ideal candidate must possess the following:

  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related discipline.
  • 5–8 years’ experience in cybersecurity, information security, or IT GRC roles within enterprise environments.
  • Practical experience with cybersecurity governance frameworks such as ISO/IEC 27001, NIST Cybersecurity Framework, or similar.
  • Proven experience conducting cybersecurity risk assessments, audits, and compliance activities.
  • Familiarity with security operations concepts, incident response, vulnerability management, and third‑party security oversight.
  • Experience working in regulated or asset‑intensive industries (e.g., oil & gas, energy, utilities, or heavy industry) is an advantage.
  • Relevant professional certifications (or working towards them) such as ISO 27001, CISSP, CISM, or CRISC are desirable.
  • Strong understanding of both technical cybersecurity controls and IT governance, risk, and compliance.
  • Practical, risk‑based approach suited to operational environments where availability, safety, and business continuity are critical
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.