HCM Foundation; Hope, Compassion, and Mercy Foundation is a nonprofit organization committed to strengthening health systems through innovative, data-driven, and people-centered approaches. We are seeking qualified candidates for multiple full-time positions across several states.
Location: Gombe
Full-time Duration: 1year (Renewable)
Key Responsibilities
- Develop and implement a comprehensive cybersecurity framework to protect all digital health platforms, including biometric attendance systems, integrated registries, HRHMIS, and analytics tools, from breaches, unauthorized access, and cyber threats.
- Conduct routine vulnerability assessments, penetration testing, and security audits across all deployed systems in Gombe, Kano, and Kaduna.
- Establish and enforce data-access controls, authentication protocols, encryption standards, and secure transmission practices, with particular focus on the personally identifiable information of health workers.
- Monitor system logs, security alerts, and suspicious activities, ensuring rapid incident detection, escalation, and response in collaboration with IT teams and state partners.
- Lead the development and testing of incident-response plans, covering containment, recovery, reporting, and post-incident evaluation.
- Collaborate with Systems Integration and Database Administration teams to secure interoperability pathways, including API protection, token management, and safe data exchange between systems.
- Ensure compliance with the Nigeria Data Protection Act, donor data-protection requirements, and international cybersecurity standards, documenting adherence for audits and reporting purposes.
- Conduct training and awareness sessions for project staff, state teams, and government counterparts on safe digital practices, phishing prevention, password hygiene, and secure data handling.
- Maintain up-to-date knowledge of emerging cyber threats and vulnerabilities, recommending system-hardening measures and long-term risk-mitigation strategies.
- Carry out other tasks as assigned by the supervisor.
Education and Experience Requirements
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
- Minimum of 4 years’ experience in cybersecurity management, preferably in digital health, public-sector systems, or donor-funded programs.
- Professional certification is required.
Core Competencies & Values
- Strong technical expertise in cybersecurity, risk management, and threat mitigation.
- Proven ability to safeguard sensitive digital systems and PII.
- Strong problem-solving, analytical, and incident-response skills.
Excellent collaboration and communication skills to engage technical and non-technical stakeholders.
High professionalism, discretion, and ethical standards in handling sensitive data.
- Commitment to HCMF values.
How to Apply
Interested candidates should complete the application form via the link below and upload their CV and cover letter:
Application Form: https://forms.gle/WZ8CTT6Mbq7bToyM7
Application Deadline: 19th January 2026. Only shortlisted candidates will be contacted.