Address: 115 ED Mnangagwa Rd, Highlands, Harare Whatsapp (ONLY for CV Making): +263784644514

APPLICATIONS SECURITY ANALYST – NSSA 41 views

Job Expired
NSSA is an organisation undergoing a transformation journey to position itself as a modern and relevant entity that delivers real value to its members through responsive social security services. In addition, we strive to stimulate economic activity, generate foreign currency, and create jobs for the benefit of Zimbabweans.

The new NSSA conducts its business in an honest, accountable, and transparent manner and we seek to recruit like-minded individuals in the following areas:

Reporting to the ICT Systems Security Manager, the successful candidate safeguards the Authority’s application landscape by guiding secure design and development practices, driving application security governance, and overseeing the assessment, monitoring and mitigation of application-related risks.

Job Summary

  • Type: contract
  • Location: Harare
  • Category: Information Security
  • Closing Date: 2026-06-05

Key Responsibilities

  • Guides and defines application security policies and standards by interpreting OWASP, ISO 27034 and SafeCode requirements, deciding on compliance expectations for development teams, and liaising across ICT and business units to ensure applications consistently meet Authority security obligations. Secure Design, Architecture & Threat Modelling.
  • Influences application design decisions by driving the integration of secure-by-design principles, leading threat modelling exercises, advising architects and developers on secure patterns, and ensuring proposed solutions appropriately address application-level risks.
  • Oversees and conducts comprehensive security assessments of applications, APIs and integrations by leading vulnerability analysis, code reviews and penetration testing efforts, and deciding on prioritized remediation paths based on risk severity.
  • Leads application-related incident response by analysing security events, liaising with operations teams during containment, guiding investigative actions, and ensuring documentation and reporting align with CDPA and internal incident handling procedures.
  • Drives the application vulnerability management lifecycle by evaluating identified weaknesses, guiding technical teams on mitigation steps, defining remediation timelines, and ensuring application environments adhere to secure configuration requirements.
  • Guides and oversees enforcement of application-level access controls, deciding on role-based access issues where needed, liaising with system owners to mitigate identity-related vulnerabilities, and ensuring secure authentication and authorisation for APIs and integrations.
  • Guides the selection and configuration of application security controls including DLP, endpoint protections, WAF rules, API security controls, and secure application settings ensuring systems processing Authority data comply with approved security procedures.
  • Provides leadership and direction to the Application Security Specialist by assigning assessment tasks, reviewing outputs, mentoring on secure development practices, and ensuring the team executes application security activities to required standards.
  • Drives secure coding maturity by liaising with internal and external development teams, delivering targeted awareness programmes, guiding developers on secure coding patterns, and shaping a culture of application security within the SDLC.
  • Prepares and presents application security assessment reports, risk dashboards, and compliance updates to ICT Management, ensuring decisions about application risks are informed, timely, and aligned with Authority policies and procedures.

Requirements

  • Degree in Computer Science, Information Systems, Software Engineering or equivalent.
  • Professional security certifications such as CSSLP, GIAC GWEB, GIAC GWEB, OSWE, OSCP, ISO 27034, or equivalent are desirable.
  • A minimum of 5 years’ experience in application security, software security, software development.

How to Apply

Interested candidates should apply online using NSSA website (www.nssa.org.zw) on the following link www.nssa.org.zw/careers

To reach not later than close of business on Friday 5th June 2026.

About the Company

In Zimbabwe the National Social Security Authority (NSSA), constituted and established in terms of the NSSA Act of 1989, Chapter 17: 04 DOWNLOAD: NATIONAL SOCIAL SECURITY AUTHORITY ACT 17 04 (PDF 128.4 KB), is the statutory corporate body tasked by the Government to provide social security. The provision of social security can be defined as instituting public policy measures intended to protect an individual in life situations or conditions in which his/her livelihood and well being may be threatened, such as those engendered by sickness, workplace injuries, unemployment, invalidity, old age, retirement and death. It is based on the principle of social solidarity and pooling of resources and risks, involving drawing of savings from periods of employment, earnings and good health to provide for periods of unemployment, old age, invalidity and death. At the moment NSSA is administering two schemes: Pension and Other Benefits Scheme and Accident Prevention and Workers’ Compensation Scheme, although, in an endeavor to provide a more comprehensive social security package for the Zimbabwean society, groundwork for the introduction of more schemes is underway.

View all jobs at this company →

  • This job has expired!
Share this job

Leave your thoughts

Get daily jobs updates through your email

JobsZW