IT Risk Specialist
IT Risk Specialist à Nigeria — Concevoir, développer et maintenir des solutions logicielles robustes et scalables.
The Dangote Group is one of the most diversified business conglomerates in Africa with a hard-earned reputation for excellent business practices and products' quality with its operational headquarters in the bustling metropolis of Lagos, Nigeria in West Africa. The Group's activities encompass: Cement - Manufacturing / Importing
Sugar - Manufacturing ... Read more about this company IT Risk Specialist Job Type Full Time Qualification BA/BSc/HND Experience 5 years Location Lagos Job Field ICT / Computer  The IT Risk Specialist at Dangote Cement Plc will lead the identification, assessment, and mitigation of technology and cybersecurity risks across cement production plants and corporate operations. This role ensures that IT systems supporting manufacturing, logistics, and enterprise functions are secure, resilient, and aligned with the Group’s risk appetite and regulatory requirements. Key Responsibilities Conduct objective, fact-based risk assessments on new and existing systems and share findings with all stakeholders within the information system. Managing the IT Risk environment, including related policies, standards, and processes. Manage the risk portfolio to include linking risk to controls, coordinating control owners to conduct RSCAs, and appropriately documenting control statements. Understand and provide advice on managing cybersecurity risks; collaborate with other IT professionals as needed to address new emerging threats. Manage the self-identified issue process; acceptance of issues; tracking SIIs and audit issues to closure. Develop and implement a cybersecurity defence strategy, including business continuity and disaster recovery procedures. Identify threats and conduct risk assessments to address cybersecurity risks. Work with the team to improve the security posture of the business and reduce its risk profile. Conduct on-site security assessments to measure the effectiveness of the third party's current control environment. Knowledge and experience in information security standards. (ISO 27001, NIST, CIS, OWASP Top 10, Security Essentials) Maintain close working relationships with appropriate teams across and outside of IT. Work closely with all areas to ensure clear risk visibility with all IT staff. Provide Continuous Control Monitoring through Key Risk Indicators, providing challenges to KRIs. Establish and monitor key risk indicators and implement corrective action plans to mitigate risks. Work closely with Group Risk Management, ensuring that IT Risks are reported as required to the Group Risk Board Committee and aligned with Risk appetite and Risk tolerance levels Maintain an awareness of potential Emerging Risks and ensure these are recorded, visible, and considered in all new technology initiatives and financial planning activities Provide oversight of all Risk Events, ensuring they are recorded, investigated, closed off, or escalated as necessary Required Skills & Experience Strong technical background with 5 + years of experience in risk management with proven IT risk and/or IT governance skills. Certified CRISC/CISA/CISM/CISSP or other relevant qualifications. An Information Security GRC position with strong knowledge of ISO27001, NIST, OWASP, and PSI-DSS Knowledge of risk management/cyber security controls and tooling is desirable. Has strong policy writing experience Can communicate with Senior Stakeholders about Information risk. Can build relationships with stakeholders at all levels. Ability to communicate complex information to a variety of audiences. Can work in a fast-paced environment Knowledge and understanding of Privileged Access Management, Patch Management, SOC Visibility, and Business Continuity Knowledge of Control/Vulnerability Assessment and Penetration Testing methodologies Experience using and configuring information security and risk management tools like Nessus, Tenable, Acunetix, BULP suite, Nipper tool, and more to generate and report IT risks. Able to work in a cross-cultural and cross-functional environment. Check how your CV aligns with this job Method of Application Interested and qualified? Go to Dangote on careers.dangote.com to apply Build your CV for free. Download in different templates.
---
**
[Click the Apply button below to see the contact details]
Key certification — The CISSP certification is a direct screening criterion. If you hold it, put it at the top of your CV. Without it, compensate with quantified achievements proving equivalent competency.
Positioning — Your cover letter must answer one question: why YOU for THIS specific role right NOW? Avoid generic templates — one sentence on what you specifically bring beats three generic paragraphs.
Active portfolio — Your GitHub profile or online portfolio is your real CV for an IT recruiter. Build it with your 2-3 best projects before applying — it's your most convincing proof of competence.
🎯 Make your application ATS-ready
ATS (Applicant Tracking Systems) are the software recruiters use to automatically filter CVs before any human reads them. Our CV builder is specifically designed to pass these filters — and it takes under 3 minutes.
Create my ATS CV →Never pay money to get an interview. Taf4All will never contact you to request application fees.
IT Risk Specialist à Nigeria — Concevoir, développer et maintenir des solutions logicielles robustes et scalables.
📊 Autres informations The Dangote Group is one of the most diversified business conglomerates in Africa with a hardearn
DRC Risk & Compliance Specialist Skip to Job Description Risk & Compliance Specialist Danish Refugee Council (DR
IT Auditor at Dangote à Nigeria — Concevoir, développer et maintenir des solutions logicielles robustes et scalables.