Apply Edge Start your job search

IT & Cybersecurity Auditor

OptiClaim ยท Riyadh, Saudi Arabia

Apply & track with Apply Edge

We're Hiring | IT & Cybersecurity Auditor | Riyadh, Saudi ArabiaOptiClaim Business Solutions is hiring on behalf of a client for a Senior IT & Cybersecurity Auditor to support IT and cybersecurity audit engagements.

Location: Riyadh, Saudi ArabiaExperience: 10โ€“12 Years

Employment Type: Full-Time๐—ฅ๐—ผ๐—น๐—ฒ ๐—ฆ๐˜‚๐—บ๐—บ๐—ฎ๐—ฟ๐˜† You'll assess IT infrastructure, cybersecurity controls, IT General Controls (ITGC), technology risks, and governance processes, evaluating the effectiveness of security controls, identifying risks and gaps, and recommending improvements to the organization's cybersecurity posture and compliance.๐—ž๐—ฒ๐˜† ๐—ฅ๐—ฒ๐˜€๐—ฝ๐—ผ๐—ป๐˜€๐—ถ๐—ฏ๐—ถ๐—น๐—ถ๐˜๐—ถ๐—ฒ๐˜€Plan and execute IT and cybersecurity audit engagements using risk-based audit methodologiesEvaluate design and operating effectiveness of ITGC: logical access, privileged access, password controls, change management, backup/recovery, logging, monitoring, IT operationsAssess cybersecurity controls across network, endpoint, server, database, cloud, and infrastructure environmentsReview IAM, PAM, MFA, and access governance processesAssess vulnerability management, patch management, security monitoring, incident response, threat detection, and SOC capabilitiesReview network security architecture: firewalls, segmentation, remote access, VPNs, email security, secure configurationEvaluate cloud security controls across Azure, AWS, Microsoft 365, GCP, and hybrid environmentsPerform technology risk assessments to identify control deficiencies and improvement opportunitiesAssess compliance with internal policies, regulatory requirements, and cybersecurity frameworksPrepare audit working papers, risk assessments, reports, and executive presentationsMonitor and validate remediation actions and verify closure of audit observationsCollaborate with IT, InfoSec, Risk Management, Internal Audit, and business stakeholders๐—ฅ๐—ฒ๐—พ๐˜‚๐—ถ๐—ฟ๐—ฒ๐—ฑ ๐—˜๐˜…๐—ฝ๐—ฒ๐—ฟ๐˜๐—ถ๐˜€๐—ฒ10โ€“12 years in IT Audit, Cybersecurity Audit, Information Security, Technology Risk, or Internal AuditConsulting background preferred, ideally with a Big 4 firmStrong grounding in IT audit methodologies and risk-based auditingHands-on ITGC review experienceStrong knowledge across IAM, PAM, network/endpoint/server/OS security, cloud security, SOC, vulnerability & patch management, SIEM, incident response, backup/DR, data protection & encryptionExperience auditing on-prem, cloud, and hybrid environmentsFamiliarity with Azure, AWS, Microsoft 365, Active Directory, Microsoft Entra ID, VMware preferred๐—™๐—ฟ๐—ฎ๐—บ๐—ฒ๐˜„๐—ผ๐—ฟ๐—ธ๐˜€ NCA ECC & DCC ยท SAMA CSF ยท PDPL ยท ISO/IEC 27001 ยท NIST CSF ยท COBIT ยท CIS Controls ยท PCI DSS๐—ค๐˜‚๐—ฎ๐—น๐—ถ๐—ณ๐—ถ๐—ฐ๐—ฎ๐˜๐—ถ๐—ผ๐—ป๐˜€Bachelor's in Computer Science, IT, Cybersecurity, Information Systems, or related.Certifications required/preferred: CISA, CISM, CRISC, or any equivalent Audit certification.

CISSP or ISO/IEC 27001 Lead Auditor also preferred.Interested or know someone who fits? Send your resume to admin@opticlaim.co or DM me directly.#Hiring #CybersecurityAudit #ITAudit #ITGC #CISA #CISSP #RiyadhJobs #SaudiArabia #InternalAudit #TechRisk #OptiClaim