Line of Service
Advisory
Industry/Sector
Not Applicable
Specialism
Business Controls
Management Level
Manager
Job Description & Summary
A career within Internal Audit services, will provide you with an opportunity to gain an understanding of an organisation’s objectives, regulatory and risk management environment, and the diverse needs of their critical stakeholders. We focus on helping organisations look deeper and see further considering areas like culture and behaviours to help improve and embed controls. In short, we seek to address the right risks and ultimately add value to their organisation.
Reporting:
- Position reports to the Group and GTM leads within the Cyber, Risk & Regulatory practice.
Essential Duties and Responsibilities:
- Manage and direct the work streams related to Cyber Governance, Risk and Compliance aligned to industry frameworks such as NIST CSF, ISO 27001, CIS
- Provide technical support in the assessment, design, and implementation of industry standard frameworks such as ISO 27001 and NIST CSF and relevant regulatory frameworks (Australian regulation experience preferred but not mandatory).
- Thorough understanding around IT Infrastructure, IT Security, and Cyber security assessment framework. .
- Develop, implement, and test controls for new acquisitions and in-scope entities.
- Work with control owners and operators to ensure quality, consistency, and operability of new and existing controls.
- Collaborate and build long-term relationships with key stakeholders in a fast-paced and matrixed work environment.
- Review test findings, facilitate the remediation of security control gaps, and escalate possible critical issues to senior management of client/Onshore teams.
- Plan and direct the work to team members, monitor their work, and take corrective action when necessary.
- Coaches, mentors, and develops direct reports, including overseeing new hire onboarding process and providing career development planning and opportunities; maintains a safe, secure, and legal work environment.
- Builds and maintains strong peer relationships within the team and across the organization.
- Coordinates work with Line 2 Risk and other governance entities of the client if needed.
- Manage the Cyber, Risk & Regulatory (Advisory) team and client portfolio to deliver 8,000 to 12,000 of client hours.
Interpersonal Skills:
- Ability to work independently under general supervision with latitude for initiative and independent judgment.
- Effective verbal and written communications, including active listening skills and skills in presenting findings and recommendations.
- Ability to establish and maintain effective working relationships with co-workers and external contactors/auditors.
- Detail-oriented & comfortable working on multiple projects simultaneously.
- Individuals would be expected to cultivate a strong team environment and promote a positive working relationship amongst their team.
- Excellent communication skills, written and verbal would be expected.
- Ensure client service delivery in accordance with the quality guidelines & methodologies.
- Build and maintain client relationships by understanding and being responsive to client needs and ensuring high quality of deliverables.
- Contribute to people and knowledge development initiatives by developing training material and conducting training.
- Demonstrate strong analytical thinking and communication skills including the ability to research and understand complex processes and effectively communicate them to interested parties.
- Demonstrate superior relationship building and relationship management skills.
Client Management
- Develop strong working relationships with the client and onshore teams.
- Maintain excellent rapport and proactive communication with the stakeholders and clients.
Operational excellence
- Suggest ideas on improving engagement productivity and identify opportunities for improving client service.
- Manage engagement budgets and ensure compliance with engagement plans and internal quality & risk management procedures.
People related
- Display teamwork, integrity, and leadership. Work with team members to set goals and responsibilities for specific engagements.
- Foster teamwork and innovation.
- Utilize technology & tools to continually learn and innovate, share knowledge with team members and enhance service delivery.
- Conduct workshops and technical training sessions for team members.
- Contribute to the learning & development agenda and knowledge harnessing initiatives.
- Mentor and coach junior team members, enabling them to meet their performance goals and successfully grow their careers.
Minimum Qualifications
- Bachelor’s degree in Information Systems, Computer Science Engineering
- B.E., B. TECH, M. TECH, MCA, BCA, CA, MBA
- Experience of business experience in technology risk, security risk management, compliance, consulting, or information security including acting in the capacity of a supervisor
- Experience in technology and cyber security controls testing.
- Experience in 1 or more of the following areas is essential:
- Security controls testing,
- Security strategy, governance, risk, and compliance,
- Security policies, procedures, standards, and controls in line with regulation and/or current standards, ISO27001, NIST, SANS etc.,
- Data privacy and data protection controls
- Cloud technologies and cloud security
- Third party security
- Vulnerability management
- Knowledge of regulations and standards relating to protection of data and cybersecurity (PCI, SWIFT, etc.).
- Experience using industry best practice frameworks (e.g., NIST CSF, ISO 27001, CIS, SANS, etc.)
- Candidates with 6-8 years of relevant experience in similar role, preferably with a “Big 4” or equivalent
- Certification(s) preferred:
- CISA / CISM / CRISC / CISSP / ISO 27001 LA certifications
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required:Degrees/Field of Study preferred:
Certifications (if blank, certifications not specified)
Required Skills
Optional Skills
Desired Languages (If blank, desired languages not specified)
Travel Requirements
Not Specified
Available for Work Visa Sponsorship?
No
Government Clearance Required?
Yes
Job Posting End Date