Senior IT Engineer at Paystack

  • Nigeria

Website Paystack

Powering African ambition

Job Overview

Paystack is recruiting a Senior IT Engineer to strengthen its IT Operations team and support the reliability of its critical infrastructure. Reporting to the Head of IT, the successful candidate will help manage and improve the company’s identity, endpoint, network and access systems.

The role covers identity and access management, macOS endpoint administration, network infrastructure, Zero Trust access, infrastructure as code and automated compliance controls within a regulated fintech environment.

Job Details

Job detail Information
Job title Senior IT Engineer
Employer Paystack
Department Engineering
Team Engineering / IT & Network
Location Nigeria
Work arrangement Hybrid
Job type Not specified
Required experience Five or more years in infrastructure or systems engineering
Academic qualification Not specified
Application deadline Not specified
Salary Specific amount not disclosed

About the Organization

Paystack is a financial technology company that provides payment infrastructure to businesses across Africa. More than 300,000 businesses in Nigeria, South Africa, Ghana and Kenya use its payment services.

Paystack is part of The Stack Group, a family of technology companies building infrastructure across payments, banking, consumer products and emerging technologies.

Responsibilities

  • Manage the identity lifecycle, including SAML and OIDC configuration, SCIM provisioning, attribute-driven RBAC and phishing-resistant authentication.
  • Support and improve joiner, mover and leaver processes, including automated access approval and provisioning.
  • Oversee the macOS environment through automated enrolment, configuration profiles, endpoint detection and response, and data loss prevention controls for outsourced devices.
  • Maintain device trust as a certificate-backed control that rejects unmanaged or unpatched devices.
  • Manage physical networks across six locations, including multi-WAN failover, VLAN segmentation, centrally managed wireless and switching, server rooms, and carrier connectivity between on-premises infrastructure and the cloud.
  • Help transition from legacy VPNs to Zero Trust Network Access, with per-application authorisation based on real-time device posture.
  • Manage the IT environment as code using Terraform, Git-based staging-to-production pipelines, and Python or Bash where no provider exists.
  • Convert ISO 27001, ISO 20000, PCI-DSS, NDPR and CBN IT Blueprint requirements into automated controls that generate compliance evidence.
  • Resolve complex escalations involving combinations of firewalls, carriers and cloud providers.
  • Write documentation, specifications, procedures and audit responses that other teams can understand and use.

Requirements and Qualifications

The role requires 5+ years of experience in infrastructure or systems engineering, ideally including experience on a small, high-leverage team.

Candidates should have substantial expertise in at least two of the following areas, with enough baseline competence in the others to handle escalations:

  • Identity and access management: SAML 2.0, OIDC, OAuth 2.0, SCIM 2.0, LDAP, WebAuthn and FIDO2, including lifecycle automation.
  • Endpoint management at scale: Apple MDM protocols, zero-touch enrolment, declarative configurations and compliance enforcement across hundreds of devices.
  • Network engineering: Multi-site and multi-carrier environments, VLANs, complex routing, firewall policies, multi-WAN failover, 802.1X and RADIUS.
  • Infrastructure as code: Terraform, Git workflows with peer review, and Python, Go or Bash for building against REST APIs.

Applicants should also have experience operating under external assessors with multiple active compliance frameworks, a record of improving live critical systems without disrupting existing operations, sound judgement about when automation is appropriate, and strong technical writing skills.

Preferred Experience

  • Public cloud networking, certificate management and identity federation.
  • X.509, mTLS, ACME or SCEP for certificate-backed device identity.
  • osquery or an equivalent tool, and the use of CIS benchmarks to create enforced configurations.
  • Security baselines for BPOs and devices not physically owned by the organisation.
  • Tenant-level administration of enterprise collaboration suites, including deep DLP classification.
  • ITSM design under ISO 20000 or ITIL.

Compensation and Work Conditions

  • Competitive compensation package and benefits.
  • 13th-month bonus.
  • TSG equity compensation.
  • Full medical coverage.
  • Wellbeing stipend.
  • Hybrid working environment.
  • Equal-opportunity employment in a workplace that prohibits discrimination and harassment.
  • A collaborative working environment with colleagues who support professional development.

Quick Eligibility Check

  • Required experience: 5+ years in infrastructure or systems engineering
  • Verified duty station:  Nigeria
  • Work arrangement: Hybrid
  • Core requirement: Experience operating under external assessors with multiple active compliance frameworks
  • Core requirement: Track record of improving live critical systems without breaking existing operations
  • Core requirement: Strong technical writing skills
  • Core requirement: Engineering judgement about when not to automate
  • Preferred requirement: Public cloud networking, certificate management and identity federation
  • Preferred requirement: Experience with osquery or an equivalent and CIS benchmark enforcement
  • Preferred requirement: ITSM design under ISO 20000 or ITIL

Application Readiness Checklist

  • Identify the two or more core infrastructure areas in which you have substantial practical expertise.
  • Describe identity, endpoint, network or infrastructure-as-code systems you have managed at scale.
  • Show experience improving critical live systems without disrupting existing operations.
  • Include examples involving compliance frameworks such as ISO 27001, ISO 20000, PCI-DSS, NDPR or equivalent standards where applicable.
  • Highlight technical documentation, automation or audit evidence you personally developed.

Vacancy Verification

This vacancy was checked by AfriJobSpace on September 5, 2026 against the employer’s official recruitment source. View the official vacancy source.

Application Safety

Apply only through the official employer channel provided on this page. Do not pay anyone to submit or process your application, and verify unexpected recruitment messages directly with the employer.

Before You Apply

Applicants should demonstrate at least five years of infrastructure or systems-engineering experience and substantial expertise in at least two of the following areas: identity and access management, endpoint management, network engineering, or infrastructure as code. Baseline competence in the remaining areas is also expected. Paystack did not specify an academic qualification, employment type, application deadline or exact salary amount.

How to Apply

Interested and qualified candidates should submit their application through the employer’s official application platform using the Apply for Job button on this page.

To apply for this job please visit careers.paystack.com.

Scroll to Top
Verified by MonsterInsights