eSmart Recruitment
One of our clients in the Banking sector are looking for a Cyber Risk Auditor to join their team.
Role Purpose
To coordinate Group Internal Audit assurance activities relating to cyber risk facing the Organisation, establish audit procedures and manage the execution of cyber risk audits across the GIA function. This includes the provision of risk insights, independent internal audit assurance and consulting services using the prescribed audit approach to serve as a third line of assurance on cyber security risk
Responsibilities
• Provide input into the annual audit plan and manage and report on audit progress to plan
• Compile and coordinate cyber risk audit findings to highlight any deficiencies while producing quality audit reports
• Execute audits in line with the Group Internal Audit methodology as well as all relevant Organisation frameworks, policies, procedures, and standards
• Provide insights into reviews and apply innovative solutions to make organisational improvements to the cyber security control environment
• Develop, encourage and nurture collaborative relationships across area of specialization
• Display and encourage an appreciation of teamwork and inclusivity
• Participate in planned activities that are appropriate for own development
• Provide subject matter expertise and thought leadership in area of expertise
• Ensure development and continuous value add improvement to operational processes
• Management of audit risks in own area of responsibility
• Build working relationships across teams and functional lines to enhance work delivery, collaboration and innovation
• Deliver customer experience excellence in own service delivery aligned to organisational values and service standards
Additional Requirements
In accordance with National Credit Act (NCA) candidates applying for this role will require a credit record check.
Qualifications and Experience
• Minimum Qualification – Relevant Degree in Information Technology, Computer information systems or related field
• Preferred Qualification – Post Graduate Degree
• Experience – 3 to 5 years relevant IT auditing, IT risk or information security experience.
• Additional Knowledge – Experience with managing or reviewing networking, firewalls (functionality and maintenance), and endpoint security
• Strong technical skills in information security management and related standards (ISO, NIST, etc)
• Experience in IT security vulnerability assessment, network penetration testing and ethical hacking.
• A thorough understanding of IT and cyber risk management disciplines
• Great awareness of cyber security trends and hacking techniques
• Knowledge of information technology general computer controls and application controls
• Exceptional writing, editing, proofreading, and research skills
• Project management experience is an advantage
