IT Infrastructure and Security Audit Manager (4 months Contract)
London, London, GB, EC4R 3AB
⚠️ We'll shut down after Aug 1st - try foo🦍 for all jobs in tech ⚠️
Nomura
Nomura Holdings website. Group companies, news releases, services, CSR, IR, careers information.Job title: IT Infrastructure and Security Audit Manager (4 months Contract)
Job Type: Temporary (PAYE)
Department: Internal Audit
Location: London
Company overview
Nomura is a global financial services group with an integrated network spanning approximately 30 countries and regions. By connecting markets East & West, Nomura services the needs of individuals, institutions, corporates and governments through its three business divisions: Wealth Management, Investment Management, and Wholesale (Global Markets and Investment Banking). Founded in 1925, the firm is built on a tradition of disciplined entrepreneurship, serving clients with creative solutions and considered thought leadership. For further information about Nomura, visit www.nomura.com.
Department overview:
The department is a key part of Nomura’s corporate governance and the department’s primary objectives are to review the company's control environment and report any weaknesses identified to the Audit Committee and senior management.
The Wholesale Technology Audit function forms part of the Global CIO audit team, which is globally split across Operations and IT audit specialists reporting to the Global Head of CIO Audit based in London, who in turn reports to the Global Head of Wholesale Audit who is also based in London. This position will be based in EMEA but will be expected to work on global IT Infrastructure and security audit assignments.
Role description:
The role’s responsibilities are:
- Leading global audits. Including planning, fieldwork and reporting. This involves leading the global team assigned to the audit, delivery of the audit within the planned timelines, ensuring all audit work is executed and documented in accordance with our audit methodology.
- Risk Assessments. This involves interaction with technology stakeholders, review of relevant metrics as well as other internal and external material. You would also be expected to provide input into the audit plan covering the IT Infrastructure and Security portfolio.
- Continuous Monitoring. Including interaction with key technology stakeholders, review of metrics as well as other relevant internal and external material, evaluation of changes to the risk profile.
- Issue Tracking. Including determining the audit procedures required to validate the closure of audit issues.
- Data Analytics. Use of data analytics techniques on audit engagements where relevant and supporting audit colleagues to utilise data analytics to improve and enhance the audit approach.
Skills, experience, qualifications and knowledge required:
- Experience working within IT Internal/External Audit or Second line IT functions.
- Financial services background will be beneficial although not essential.
- Strong knowledge of IT security, including both technical and business controls.
- Relationship management: Ability to develop and maintain strong relationships with subject matter experts and IT leaders across the organisation. Work collaboratively with other Internal Audit stakeholders.
- Strong time and project management skills, consistently delivering to deadlines (budget and time).
- Very good knowledge of leading technology reviews including: Linux, Windows, Messaging infrastructure, Collaboration Tools, Cloud infrastructure, Remote Access technologies and networking products.
- Experience in assessing controls based on COBIT or other leading technology risk management and governance control framework.
- Experience in assessing controls based on NIST, SANS, ISO27000 or other leading cyber security framework.
- Very good presentation and report writing skills. Producing draft reports that require minimal changes.
- Qualifications: University degree in a technology related discipline and CISSP/CISA/CISM or equivalent certifications are required. Other relevant qualifications will be beneficial but not required.
Nomura competencies
Trusted Partner
- Understand clients’ needs and issues, and respond with high-quality proposals
- Acquire capabilities to perform one’s responsibilities and contribute to being a Trusted Partner
Entrepreneurial leadership
- Produce new ideas that might challenge the status-quo or oneself
Teamwork Collaboration
- Seek advice from senior colleagues and utilize it for improved results
- Collaborate with members from relevant departments
Influence
- Contribute to the success of the organization both quantitatively and qualitatively, and act with awareness of the impact on others
- Serve as role model and provide guidance to junior employees
Integrity
- Have a good understanding of corporate philosophy, professional ethics, compliance, risk management, and code of conduct, and make decisions and take actions accordingly
Diversity Statement:
Nomura is committed to an employment policy of equal opportunities and is fundamentally opposed to any less favourable treatment accorded to existing or potential members of staff on the grounds of race, creed, colour, nationality, disability, marital status, pregnancy, gender or sexual orientation. If you require any assistance or reasonable adjustments due to a disability or long-term health condition, please do not hesitate to contact us.
Right to Work
The UK Government have taken steps to reduce net migration to the UK by limiting the number of overseas workers from outside the EEA coming to the UK for employment. Please note that whilst we are able to consider applications from overseas workers from outside the EEA (who require a Tier 2 (General) visa) we can only employ them if we can provide evidence that there are no other suitable candidates for this vacancy from inside the EEA.
Please contact us if you are visiting our offices and require any form of personal assistance or physical adaptations to be provided for your appointment. A member of staff will be happy to help.
Nomura is an Equal Opportunity Employer
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics Audits Banking CISA CISM CISSP Cloud COBIT Compliance Data Analytics Governance ISO 27000 IT infrastructure Linux Monitoring NIST Risk assessment Risk management SANS Windows
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.