Information Security Analyst responsible for conducting internal audits and compliance in information technology. Working with audit teams and enhancing compliance frameworks at Ness Digital Engineering.
Responsibilities
Conduct internal audits focused on verifying and enhancing the company’s compliance and information technology controls
Help facilitate 3rd party audits and coordinate and work with audit teams, and internal control owners
Conduct timely and effective audit planning, execution, and reporting
Conduct training and process analysis with control owners and operators
Provide updates and escalate issues in a timely manner
Act as lead for future audit success by preparing internal control owners for external audits
Help internal control owners scope appropriate evidence samples for external auditors
Establish consistent and sustainable processes for conducting internal audits
Track and ensure visibility of developing compliance framework standards
Help facilitate and or conduct internal gap assessments and audit readiness assessments
Assess inherent and residual risks, evaluate control designs, develop, and execute audit tests
Document control narratives and walkthroughs
Comfortably assume core audit responsibilities in all audit phases
Participate as a key team member on audit projects, having responsibility for more complex areas
Assist team leaders, managers, and senior and staff auditors in accomplishing team objectives
Identify and assess the impact of control deficiencies
Draft audit reports
Present audit findings to management through status updates and closing meetings
Assist in the development of cost-justified, value-added management actions
Effectively handle larger and more challenging workloads on successive assignments
Produce excellent results in audit projects across multiple business areas and for different team leaders
Proficient in the use of automated work papers and other department and company tools
Ensure effective and efficient execution of audits in conformance with professional and department standards, budgets, and timelines
Maintain internal audit competency through ongoing professional development
Participate in the review of co-worker’s work
Always follow the company code of ethics and policies and procedures
Communicate in an effective and professional way with customers
Requirements
High School Diploma
Common entry-level information security certifications include CompTIA Security+, CISSP Associate, CEH, CISM, CISA, GSEC, CCT, ENSA, SSCP, Cisco Certified CyberOps Associate, or similar
2+ years of experience in information security audits
Experience with common compliance frameworks, (BSI C5, GDRP, ISO 27000, Cyber Essentials, PCI-DSS, SOC 2 Type 2, etc...)
Experience testing compliance controls with control owners
Strong written, verbal, and interpersonal communication skills
High level of energy, and the desire to work in a fast-changing environment
Proficient knowledge of PCs and Servers -- Windows, Linux, and Unix preferred
Experience in auditing the security of deployments in AWS and/or Azure environments
Benefits
access to trainings and certifications
bonuses
aids
socializing activities
attractive compensation
Job title
Information Security Analyst – IT Audit & Compliance, German
Intern supporting IT Security team at OneDigital with hands - on experience and mentoring. Engaging in real - world assignments and responsibilities within IT Security.
Cyber Threat Intelligence Analyst at AIG specializing in cyber threat research and intelligence production. Collaborating with an interdisciplinary team to enhance cybersecurity situational awareness and reporting.
Senior Cyber Security Analyst protecting customers from cyber threats while enhancing cyber security services at technology firm. Focused on both security operations and technical delivery.
Cybersecurity Analyst assisting in the review and implementation of cybersecurity initiatives across a large environment at Kemper. Responding to cyber threats and improving processes and technologies.
Senior Information Security Analyst managing Information Security Management System at BMLL Technology. Supporting compliance with ISO 27001 and enhancing security measures.
Graduate Cyber Security Analyst at McKesson participating in a 24 - month Cyber Academy program. Monitor security alerts and contribute to incident response efforts while gaining mentorship.
Threat Intelligence Analyst role analyzing cyber threats and providing strategic recommendations. Working with cybersecurity teams at PwC Canada to safeguard client data and systems.
Contract Security Analyst specializing in security operations and incident response for cloud security at Embark. Focus on alert handling, detection engineering, and data loss prevention.
Cyber Security Analyst providing security operations support for USAF Cloud One project. Engaging in incident response and cybersecurity compliance activities within a hybrid environment.
Cybersecurity Analyst responsible for monitoring, analyzing, and responding to security incidents in SOC. Developing detection rules and conducting threat - hunting campaigns within a hybrid work setup.