Flutterwave logo

GRC, Privacy & Security Awareness Manager

Flutterwave
2 hours ago
Full-time
On-site
Lagos Island, Lagos State, Nigeria
Manager

Flutterwave was founded on the principle that every African must be able to participate and thrive in the global economy. To achieve this objective, we have built a trusted payment infrastructure that allows consumers and businesses (African and International) make and receive payments in a convenient borderless manner.


The Role: Flutterwave is looking for a GRC, Privacy and Security Awareness Manager who will play an integral part in the development, implementation, and compliance of technical security across the enterprise. The manager will be responsible for managing risks related to information security, physical security, business continuity planning, crisis management, privacy, and compliance. The manager will also be responsible for ensuring security awareness across the organization.


Responsibilities include but are not limited to:


  • Develops and implements security standards, processes and procedures, and guidelines for the enterprise
  • Develops and maintains security and governance standards for emerging technologies, including Artificial Intelligence (AI), ensuring alignment with regulatory requirements and industry best practices.
  • Ensures and monitors security compliance with industry and government rules and regulations
  • Develops and maintains governance frameworks, policies, and risk management processes for the secure, ethical, and compliant adoption of Artificial Intelligence (AI) technologies across the organisation.
  • Coordinates with technology and business teams to assess, implement, and monitor security, privacy, compliance, and AI-related risks associated with business and technology initiatives.
  • Performs governance and risk assessments for AI-enabled solutions, including third-party AI services, to ensure appropriate security, privacy, compliance, and regulatory oversight.
  • Manages the trade-offs required to manage the different levels of risk tolerance and risk exposure across the organization and balance this with risk investments
  • Reports security performance against established security metrics
  • Ensures security compliance and meets all service level agreement requirements
  • Creates an information security awareness program to ensure staff members across the organization understand the trade-off between risk and return
  • Understands “voice of the customer” and develops mechanisms to proactively sense adoption and usage patterns of consumer technologies by end users so that policy can align with need
  • Ensure personal information of customers, employees, and other individuals the company conducts business with is processed and protected in line with applicable data privacy policies, privacy laws, and global best practices.
  • Perform any other duties that may be assigned


Required competency and skillset to be a waver


  • BA or MS in computer science, information systems management, business administration, or a related discipline
  • Certified Information Systems Security Professional (CISSP) and/or Certified Information Security  Manager (CISM)
  • Minimum 8 years of experience in running the information security office analyzing and applying information security, risk management, and privacy practices 
  • Minimum 3 years of experience in strategic planning, budgeting, and allocation
  • Minimum 5 years of experience with regulatory compliance and information security management frameworks (e.g., IS027000, COBIT, NIST 800, etc.)
  • Experience implementing or supporting AI governance, AI risk management, or emerging technology governance programmes is an added advantage.


Click here for the Recruitment Privacy Notice and Flutterwave Privacy Policy