Technology Audit Professional assessing risk exposure related to technology and security at SEB. Supporting digitalisation journey through evaluation and assurance on governance and risk by a qualified audit team.
Responsibilities
As a member of our team, you will assess SEB's risk exposure related to technology and security and contribute to the development of our audit strategy.
You need to stay on top of the threat landscape, the regulatory environment, and how new technologies, new ways of working and a growing ecosystem is altering SEB's risk posture.
You will also use your skills and creativity to develop and deploy smart ways of testing controls and deliver top-quality audit work, e.g. using AI and data analytics.
You will participate in and lead audit assignments in areas such as cyber security, technical resilience, and data management, spanning governance and operational processes, technology platforms, business applications, third-party service providers, and more.
You will assist other teams within Group Internal Audit to identify and assess technology related risk within business processes and perform integrated audit assignments.
You will also provide guidance and support to the organisation in the implementation and enhancement of controls.
The team has a global reach, so occasional travelling is part of the job.
Requirements
You have a genuine interest and proficiency in technology, cyber security and risk management.
You could either have a technical or auditor background, working in roles such as solution architect, senior developer, IT security officer, internal/external auditor, or similar.
Hands-on experience as a developer or technician, experience from a Big4 audit firm, and exposure to the financial industry are meriting.
You are eager to learn and continuously develop, and either possess or are willing earn relevant certifications, such as CISA, CISSP, CISM.
Ideally you have experience in one or more of the following areas:
System development, maintenance, and/or operation
IT audit, security testing, or similar
IT and security governance and risk management
Security operations
Cloud technology and security
Programming and scripting
Third party risk management
Data management and Artificial Intelligence
Industry standards such as ISO27k, ISF SoGP, CIS18, NIST CSF, COBIT, etc.
You have a MSc or BSc degree in the IT field, or equivalent experience, and have proven skills in professional English report writing.
Finally, you are dedicated, curious and self-propelled in your assignments. You are a team player but can deliver independently on time and scope with minimum supervision. You are structured and have strong project and time management skills. You are also an excellent communicator with the ability to build trust and relationships at all levels in the technology and business organisations.
Benefits
Flexible and empowering work environment.
Extensive training and learning opportunities.
International opportunities and working environment.
Focus Sales role at api GmbH, engaging clients and supporting Cloud business growth. Collaborate with teams for optimal client service and success in IT products.
Security Engineering Manager leading Detection & Response team at Snap. Overseeing security monitoring and team collaboration on high - impact initiatives.
Mid - Level Security Design & Development Specialist at Boeing involved in directory services infrastructure. Collaborating with a team of senior technical experts in a fast - paced environment.
Application Security Specialist conducting SAST and DAST analyses at TEHORA to enhance digital healthcare security. Responsible for code reviews, OWASP recommendations, and participation in intrusion tests.
Facilities and Security Coordinator providing operational support for facility operations at Westinghouse. Coordinating administrative tasks, reporting, and ensuring compliance in facility management.
Information Security Specialist ensuring digital security and compliance at cyberunity AG in Zürich. Collaborating with IT teams to implement security measures and address vulnerabilities.
Data & Cloud Security Manager overseeing security programs for protecting sensitive data at Digital Realty. Leading initiatives in data protection and cloud security across various environments.
Cybersecurity GRC Lead responsible for governance, risk, and compliance at Emerson's Industrial IoT division. Shaping the cybersecurity agenda within a fast - evolving environment.
Security staff conducting access and entry controls and ensuring safety standards in Hamburg, Germany. Team collaboration and reporting tasks required for effective security measures.
Security Personnel responsible for access and entry controls, ensuring safety standards at proSicherheit. Collaborating on reports and preventing criminal activities in various settings.