We're Hiring | IT & Cybersecurity Auditor | Riyadh, Saudi ArabiaOptiClaim Business Solutions is hiring on behalf of a client for a Senior IT & Cybersecurity Auditor to support IT and cybersecurity audit engagements.
Location: Riyadh, Saudi ArabiaExperience: 10โ12 Years
Employment Type: Full-Time๐ฅ๐ผ๐น๐ฒ ๐ฆ๐๐บ๐บ๐ฎ๐ฟ๐ You'll assess IT infrastructure, cybersecurity controls, IT General Controls (ITGC), technology risks, and governance processes, evaluating the effectiveness of security controls, identifying risks and gaps, and recommending improvements to the organization's cybersecurity posture and compliance.๐๐ฒ๐ ๐ฅ๐ฒ๐๐ฝ๐ผ๐ป๐๐ถ๐ฏ๐ถ๐น๐ถ๐๐ถ๐ฒ๐Plan and execute IT and cybersecurity audit engagements using risk-based audit methodologiesEvaluate design and operating effectiveness of ITGC: logical access, privileged access, password controls, change management, backup/recovery, logging, monitoring, IT operationsAssess cybersecurity controls across network, endpoint, server, database, cloud, and infrastructure environmentsReview IAM, PAM, MFA, and access governance processesAssess vulnerability management, patch management, security monitoring, incident response, threat detection, and SOC capabilitiesReview network security architecture: firewalls, segmentation, remote access, VPNs, email security, secure configurationEvaluate cloud security controls across Azure, AWS, Microsoft 365, GCP, and hybrid environmentsPerform technology risk assessments to identify control deficiencies and improvement opportunitiesAssess compliance with internal policies, regulatory requirements, and cybersecurity frameworksPrepare audit working papers, risk assessments, reports, and executive presentationsMonitor and validate remediation actions and verify closure of audit observationsCollaborate with IT, InfoSec, Risk Management, Internal Audit, and business stakeholders๐ฅ๐ฒ๐พ๐๐ถ๐ฟ๐ฒ๐ฑ ๐๐
๐ฝ๐ฒ๐ฟ๐๐ถ๐๐ฒ10โ12 years in IT Audit, Cybersecurity Audit, Information Security, Technology Risk, or Internal AuditConsulting background preferred, ideally with a Big 4 firmStrong grounding in IT audit methodologies and risk-based auditingHands-on ITGC review experienceStrong knowledge across IAM, PAM, network/endpoint/server/OS security, cloud security, SOC, vulnerability & patch management, SIEM, incident response, backup/DR, data protection & encryptionExperience auditing on-prem, cloud, and hybrid environmentsFamiliarity with Azure, AWS, Microsoft 365, Active Directory, Microsoft Entra ID, VMware preferred๐๐ฟ๐ฎ๐บ๐ฒ๐๐ผ๐ฟ๐ธ๐ NCA ECC & DCC ยท SAMA CSF ยท PDPL ยท ISO/IEC 27001 ยท NIST CSF ยท COBIT ยท CIS Controls ยท PCI DSS๐ค๐๐ฎ๐น๐ถ๐ณ๐ถ๐ฐ๐ฎ๐๐ถ๐ผ๐ป๐Bachelor's in Computer Science, IT, Cybersecurity, Information Systems, or related.Certifications required/preferred: CISA, CISM, CRISC, or any equivalent Audit certification.
CISSP or ISO/IEC 27001 Lead Auditor also preferred.Interested or know someone who fits? Send your resume to admin@opticlaim.co or DM me directly.#Hiring #CybersecurityAudit #ITAudit #ITGC #CISA #CISSP #RiyadhJobs #SaudiArabia #InternalAudit #TechRisk #OptiClaim