Loading...
29 April 2026

Location: Abidjan, Côte I’voire or Dakar, Senegal

About Djamo

Djamo is a Series B neobank serving over 1 million customers across Francophone Africa. We’re the first fintech to receive a BCEAO microfinance license and the leading card issuer in Côte d’Ivoire. Our engineering team is 27 strong, organized into cross-functional squads that own end-to-end product experiences, from virtual cards and transactions to savings, credit, and customer support.

We’re growing fast, but we’re deliberate about how. We care about reliability, security, and shipping things that actually work for our customers.

Why this role exists

We’re a bank. Security isn’t optional, it’s existential. Today we rely on external vendors for penetration testing across four scopes: our Dakar office, Abidjan office, cloud infrastructure, and applications. That costs us ~$59,000/year and produces point-in-time assessments from people who don’t know our systems.

We need an in-house penetration tester who knows Djamo deeply, can test continuously rather than annually, and becomes a true security partner to our engineering teams. This hire saves money from year one while dramatically improving our security posture.

What you’ll do

  • Plan and execute penetration tests across all four scopes: office networks (Dakar, Abidjan), cloud infrastructure (AWS), and applications (web + mobile).
  • Conduct regular vulnerability assessments and produce clear, actionable reports for engineering teams.
  • Work with engineering squads to verify fixes and retest after remediation.
  • Contribute to Djamo’s security posture by identifying systemic weaknesses, not just individual vulnerabilities.
  • Support PCI DSS compliance by providing evidence of regular security testing.
  • Stay current on emerging threats and attack techniques relevant to fintech and banking.
  • Travel periodically to Abidjan and Dakar offices for on-site network and physical security assessments.

What we’re looking for

Must have:

  • 3+ years of hands-on penetration testing experience.
  • Strong web application and API security testing skills (OWASP Top 10 and beyond).
  • Network penetration testing experience (internal and external).
  • Experience with common pen testing tools: Burp Suite, Nmap, Metasploit, Nessus/OpenVAS, etc.
  • Ability to write clear, prioritized vulnerability reports that engineering teams can act on.
  • Clear communication in English: written and verbal.
  • Willingness to travel periodically between Dakar and Abidjan.

Strong plus:

  • OSCP, OSCE, OSWE, or equivalent certification.
  • CEH, GPEN, or other recognized security certifications.
  • Mobile application security testing (Android/iOS).
  • Cloud security assessment experience (AWS).
  • Experience in fintech, banking, or PCI DSS-regulated environments.
  • French-speaking.
  • Experience with infrastructure-as-code security review (Terraform, Kubernetes).

What we’re NOT looking for:

  • Someone who runs automated scanners and calls it a pen test. We need manual testing depth.
  • A researcher who can find vulnerabilities but can’t communicate them clearly to developers.

What success looks like after 6 months

  • You’ve completed a full cycle of pen tests across all four scopes.
  • Engineering teams trust your reports and act on them promptly.
  • We’ve reduced or eliminated our dependency on external pen test vendors.
  • You’ve identified and helped remediate systemic security issues, not just surface-level findings.
  • You have a testing calendar that ensures continuous coverage rather than annual point-in-time assessments.

How we work

  • Remote-first, asynchronous by default.
  • Small engineering team (27 engineers) your impact will be visible and immediate.
  • We take reliability and security seriously: we’re a bank, not a social app.
  • You’ll work closely with the ISSM, engineering squads, and infrastructure team.

Why work at Djamo

  • Balance between autonomy and collaboration, insight and intuition, work and life.
  • Work in small, open, friendly teams to create beloved products and services.
  • Ethical and stimulating environment.
  • Contribute to the rapid expansion of a startup in French-speaking Africa.
  • Positively impact millions by providing simple and fair banking.
  • Collaborative, fun environment with strong team spirit and a culture of continuous employee development.

We will consider all applications on the same basis. Djamo is an equal-opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. You are not ticking every box or thinking you’ve got that unique set of skills we haven’t realized we need. Apply anyway; we’re always looking to add great people at every level.

Type of contract

CDD / CDI – for residents of Côte d’Ivoire or Sénégal

Desired start date

June 2026

Sector of activity

Mobile Financial Services

Employment Type
On-site

Related Jobs

Other similar jobs that might interest you