Information Security Auditor
Limassol
ā ļø We'll shut down after Aug 1st - try fooš¦ for all jobs in tech ā ļø
XM
Trade with confidence at XM. Open an account and enjoy the benefits including bonuses, promotions, competitions, copy trading, live education and much more.The Role: We are looking for an experienced, passionate and self-motivated professional to join our fast-growing Information Security team. As part of our Information Security Audit Program, you will have the opportunity to assess and improve security controls across a dynamic and fast-paced environment. You will work with cutting-edge technologies and talented professionals, gaining hands-on experience in security assessments, compliance audits, and risk management.Ā
The main responsibilities of the position include:
- Perform hands-on complex security audits in IT infrastructure, applications, technologies and third partiesĀ
- Assess internal controls, processes and policies related to Information Technology and Security; identifying deficiencies, and developing remediation strategiesĀ
- Prepare comprehensive audit reports summarizing the audit scope, results of test work, findings and recommend corrective actionsĀ
- Identify information security risks and make recommendations which are appropriate, practical and cost-effectiveĀ
- Manage and monitor the progress of remediation steps on audit findingsĀ
- Ensure the organization meets all information security requirements of applicable laws and regulationsĀ
- Liaise with external auditors and internal stakeholders in successful execution of all compliance auditsĀ
- Provide regular reports and metrics on the security posture to the relevant stakeholdersĀ
Main requirements:
- BSc/MSc in Information Security or any other related fieldĀ
- Minimum 2 years working experience in an Information Security related fieldĀ
- Experience in IT Systems and Security audit, vulnerability assessments and security risk managementĀ
- Demonstrated experience in auditing large scale infrastructures, information systems, IT processes and advanced security controlsĀ
- Good knowledge of information and security technologies such as Windows and Active Directory, Linux, virtualization, host and application security, networking, firewalls, security architecture etcĀ
- Hands-on experience in auditing cloud infrastructures (AWS, Azure, GCP etc) will be considered an advantageĀ
- Good understanding of security regulations and frameworks such as ISO 27001, NIST CSF and 800-53, GDPR, DORA etcĀ
- Strong project and time management skills with the ability to work independently under minimal supervision and as part of a teamĀ
- Meticulous attention to detail with an analytical mind and outstanding problem-solving skillsĀ
- Excellent communication skills with the ability to explain technical concepts to a non-technical audienceĀ
- Audit-related and other information security certifications such as CISA, ISO 27001 Lead Auditor, CISSP, CCSP etc will be considered an advantageĀ
Benefit from:
- Attractive remuneration package plus performance related reward
- Private health insurance
- Corporate pension fund
- Intellectually stimulating work environment
- Continuous personal development and international training opportunities
The Hiring Experience: What Awaits You
- Letās Connect ā Intro Chat with Talent Acquisition
- Deep Dive ā First Interview with Your Future Team
- Final Connection ā Final Interview
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index š°
Tags: Active Directory Application security Audits AWS Azure CCSP CISA CISSP Cloud Compliance Firewalls GCP GDPR ISO 27001 IT infrastructure Linux NIST NIST 800-53 Risk management Security assessment Windows
Perks/benefits: Career development Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.