Search by job, company or skills

VP – Information & Cybersecurity Auditor

10-12 Years
  • Posted a day ago
  • Be among the first 10 applicants

Job Description

Our client a well-established international bank with a strong presence in Asia is seeking a strong Senior Audit Manager to join the Information and Cyber Security (ICS) team. The role requires strong technical expertise across identity and access management, vulnerability management, code security, security operations, threat intelligence, red and purple teaming, penetration testing, and ICS standards such as NIST and CIS, along with risk management experience

Please email your cv directly to [Confidential Information]in word format with job reference no. 16736 to [HIDDEN TEXT]

Please note that due to the high number of applications only shortlisted candidates will be contacted. If you do not hear from us in the next 5 business days we regret to inform you that your application for this position was unsuccessful.

By submitting your application, you acknowledge that your personal information may be processed using secure recruitment technologies, including AI-assisted tools, for recruitment, assessment, interview documentation, candidate representation, and related business purposes. Further information is available in our Privacy Policy.

EA Licence: 16S8131

Recruiter Licence: R22104669

[HIDDEN TEXT]

Key responsibilities

  • Support the Head of Audit & Management team in the development of the GIA risk assessment and development of an appropriate audit plan for the assigned portfolio
  • Strong understanding of identity and access management, vulnerability management, code security, security operation centre, threat intelligence, red and purple teaming, penetration testing, ICS related industry standards such as NIST and CIS, and risk management.
  • Knowledge of cybersecurity principles, frameworks, and best practices.
  • Perform, support, or lead where directed, the planning, fieldwork, and reporting of internal audit engagements to deliver agreed assurance objectives to established GIA standards and timelines and
  • Act as Team Manager or Team Lead to lead the delivery of high risk audits with integrated teams
  • Execute audit work and issue validation in an efficient and effective manner, within the given budget and timelines
  • Provide clear guidance, detailed review and supervision of the audit team's work, so that audit deliverables meet quality standards
  • Clearly identify the risks and impact of issues during issue writing, agreeing these issues with management and obtaining quality management action plans to mitigate the risk
  • Provide guidance to the team on business/ audit technical knowledge and management skills
  • Champion innovation and increase the use of leading edge methods, such as artificial intelligence and data analytics, in audit assignments and
  • Track the implementation/delivery of the agreed issues and action plans for the audits assigned, understanding the key risks arising, provide advice on resolution of issues to auditees/action plan owners and escalate audit findings that remain unresolved.

Role requirements

  • 10 years of experience in Cybersecurity, IT auditing, information security etc.
  • In-depth understanding of Information and Cyber Security risk management and associated control requirements
  • Strong communicator, both written and verbal, with ability to clearly explain complicated technical issues in business terms to audit and business management
  • Team management, team leading, coaching and mentoring, problem solving and conflict management, multi-tasking, risk assessment and collaboration.
  • Professional certifications such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), Certified Cloud Security Professional (CCSP), and Global Information Assurance Certification (GIAC) related certificates are highly desirable. Other designations such as Certified in Risk and Information Systems Control (CRISC) and Certified Information Security Manager (CISM), and Certified Internal Auditor (CIA) are a plus.
  • Strong understanding of identity and access management, vulnerability management, code security, security operation centre, threat intelligence, red and purple teaming, penetration testing, ICS related industry standards such as NIST and CIS, and risk management.
  • IT infrastructure components, including servers, networks, databases, and cloud services would be a plus.
  • Knowledge of cybersecurity principles, frameworks, and best practices.

More Info

Job ID: 151628449