3 Information Security Auditor jobs in whatjobs
Information Security Auditor
Posted 14 days ago
Job Viewed
Job Description
Our client is looking for a meticulous and analytical Information Security Auditor to join their team. This role will involve conducting comprehensive assessments of the organization's security controls, policies, and procedures to ensure compliance with industry standards and regulatory requirements. You will identify vulnerabilities, assess risks, and provide actionable recommendations for enhancing the overall security posture. The position offers a hybrid work arrangement, allowing for a balance between remote work and in-office collaboration. Your expertise will be vital in safeguarding sensitive data and maintaining the integrity of our IT systems.
Key Responsibilities:
Qualifications:
This hybrid role offers a significant opportunity to impact the security of a growing organization. If you possess a strong audit background and a passion for cybersecurity, we encourage you to apply.
Key Responsibilities:
- Plan and execute information security audits across various IT systems and business processes.
- Evaluate the effectiveness of existing security controls, including physical, technical, and administrative safeguards.
- Review and assess compliance with relevant regulations and standards (e.g., GDPR, SOX, PCI DSS, ISO 27001).
- Identify security risks, vulnerabilities, and non-compliance issues, and document findings clearly.
- Develop detailed audit reports with prioritized recommendations for remediation.
- Collaborate with IT and business departments to discuss audit findings and remediation plans.
- Follow up on audit recommendations to ensure timely and effective implementation.
- Stay current with emerging threats, security trends, and audit best practices.
- Assist in the development and maintenance of audit programs and methodologies.
- Contribute to the continuous improvement of the information security management system.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 4 years of experience in information security, IT audit, or risk management.
- Strong understanding of cybersecurity principles, frameworks, and best practices.
- Experience with various IT systems, networks, and application security concepts.
- Knowledge of common IT audit frameworks and methodologies.
- Excellent analytical and problem-solving skills with a keen eye for detail.
- Strong written and verbal communication skills, with the ability to present complex information clearly.
- Proficiency in data analysis and reporting tools.
- Ability to work effectively both independently and as part of a team.
- Relevant certifications such as CISA, CISSP, or CRISC are highly desirable.
This hybrid role offers a significant opportunity to impact the security of a growing organization. If you possess a strong audit background and a passion for cybersecurity, we encourage you to apply.
This advertiser has chosen not to accept applicants from your region.
0
Information Security Auditor
Posted 16 days ago
Job Viewed
Job Description
Our client is seeking a diligent and detail-oriented Information Security Auditor to join their globally distributed security team. This role is entirely remote, providing flexibility to work from any location. The Information Security Auditor will be responsible for evaluating and verifying the effectiveness of existing security controls, identifying compliance gaps, and ensuring adherence to industry best practices and regulatory requirements. You will conduct comprehensive audits of IT systems, applications, and processes to assess security risks and recommend improvements. This position requires a strong understanding of cybersecurity frameworks, audit methodologies, and a keen eye for detail. The ideal candidate is proactive, analytical, and capable of communicating complex findings clearly and concisely.
Key Responsibilities:
Key Responsibilities:
- Plan and execute information security audits and assessments across various systems and applications.
- Evaluate the design and operating effectiveness of IT controls, including access controls, change management, and data protection.
- Identify compliance gaps against internal policies, industry standards (e.g., ISO 27001, NIST), and regulatory requirements.
- Document audit findings, observations, and recommendations in clear and comprehensive reports.
- Collaborate with IT and security teams to develop remediation plans for identified issues.
- Track the progress of remediation efforts and conduct follow-up audits.
- Stay up-to-date with the latest cybersecurity threats, vulnerabilities, and audit techniques.
- Assist in the development and maintenance of audit programs and checklists.
- Provide guidance and support to business units on security best practices and compliance matters.
- Participate in security risk assessments and provide input on control design.
- Bachelor's degree in Information Technology, Computer Science, Accounting, or a related field.
- Minimum of 4 years of experience in information security auditing, risk management, or compliance.
- In-depth knowledge of IT audit principles, methodologies, and frameworks (e.g., COBIT, ISO 27001, NIST).
- Experience with conducting internal or external IT audits.
- Familiarity with various IT systems, networks, and application security controls.
- Strong analytical, critical thinking, and problem-solving skills.
- Excellent written and verbal communication skills, with the ability to present technical information to diverse audiences.
- Relevant certifications such as CISA, CISSP, or CRISC are highly preferred.
- Ability to work independently and manage workload effectively in a remote environment.
This advertiser has chosen not to accept applicants from your region.
1
Job Description
Our client is seeking a meticulous and proactive Information Security Auditor to join their expanding cybersecurity team. This is a fully remote position, offering the flexibility to work from anywhere. The successful candidate will be responsible for conducting independent assessments of the organization's information security controls, policies, and procedures to identify potential risks and ensure compliance with regulatory standards and internal policies. You will play a crucial role in evaluating the effectiveness of our security measures and providing actionable recommendations for improvement. This role requires a deep understanding of cybersecurity principles, audit methodologies, and a keen eye for detail. You will work with various departments to ensure that security is embedded in all aspects of our operations, contributing to a secure and resilient digital environment.
Responsibilities:
Responsibilities:
- Plan and execute comprehensive information security audits across various IT systems, applications, and business processes.
- Evaluate the design and operational effectiveness of security controls, including access controls, data protection, network security, and incident management.
- Assess compliance with relevant industry standards (e.g., ISO 27001, NIST), regulations, and company policies.
- Identify security vulnerabilities, control weaknesses, and non-compliance issues, documenting findings clearly and concisely.
- Develop detailed audit reports with practical recommendations for remediation and risk mitigation.
- Follow up on audit findings to ensure timely and effective implementation of corrective actions.
- Stay current with evolving cybersecurity threats, vulnerabilities, and regulatory requirements.
- Collaborate with IT and business teams to understand their processes and security needs.
- Conduct security risk assessments as part of the audit process.
- Perform continuous monitoring of security controls where applicable.
- Contribute to the development and improvement of the internal audit methodology for information security.
- Communicate audit results effectively to management and relevant stakeholders.
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field.
- Minimum of 4-6 years of experience in information security auditing, IT auditing, or a related cybersecurity role.
- Strong knowledge of information security principles, frameworks (e.g., COBIT, ITIL), and best practices.
- Experience with various audit techniques and methodologies.
- Familiarity with common operating systems, network infrastructure, and cloud security concepts.
- Understanding of data privacy regulations (e.g., GDPR, CCPA).
- Excellent analytical, problem-solving, and critical thinking skills.
- Proficiency in documenting findings and writing clear, concise audit reports.
- Strong interpersonal and communication skills for effective stakeholder engagement.
- Relevant certifications such as CISA, CISSP, CISM, or CRISC are highly preferred.
- Ability to work independently and manage multiple audit projects simultaneously in a remote environment.
This advertiser has chosen not to accept applicants from your region.
Be The First To Know
About the latest Information security auditor Jobs in Kenya !
2