Remote Jobs RockRemote Jobs Rock

Information Security Auditor

πŸ“… Jan 15, 2025
Information SecuritySecurity AuditsRisk ManagementCompliance Audits

πŸ“œ Description

  • Perform hands-on complex security audits in IT infrastructure, applications, technologies and third parties
  • Assess internal controls, processes and policies related to Information Technology and Security identifying deficiencies, and developing remediation strategies
  • Prepare comprehensive audit reports summarizing the audit scope, results of test work, findings and recommend corrective actions
  • Identify information security risks and make recommendations which are appropriate, practical and cost-effective
  • Manage and monitor the progress of remediation steps on audit findings
  • Ensure the organization meets all information security requirements of applicable laws and regulations

πŸ› οΈ Requirements

  • BSc/MSc in Information Security or any other related field
  • Minimum 2 years working experience in an Information Security related field
  • Experience in IT Systems and Security audit, vulnerability assessments and security risk management
  • Demonstrated experience in auditing large scale infrastructures, information systems, IT processes and advanced security controls
  • Good knowledge of information and security technologies such as Windows and Active Directory, Linux, virtualization, host and application security, networking, firewalls, security architecture etc
  • Hands-on experience in auditing cloud infrastructures (AWS, Azure, GCP etc) will be considered an advantage
  • Good understanding of security regulations and frameworks such as ISO 27001, NIST CSF and 800-53, GDPR, DORA etc
  • Strong project and time management skills with the ability to work independently under minimal supervision and as part of a team
  • Meticulous attention to detail with an analytical mind and outstanding problem-solving skills
  • Excellent communication skills with the ability to explain technical concepts to a non-technical audience

✨ Benefits

  • Attractive remuneration package plus performance related reward
  • Private health insurance
  • Corporate pension fund
  • Intellectually stimulating work environment
  • Continuous personal development and international training opportunities
Full job description
The Role:
We are looking for an experienced, passionate and self-motivated professional to join our fast-growing Information Security team. As part of our Information Security Audit Program, you will have the opportunity to assess and improve security controls across a dynamic and fast-paced environment. You will work with cutting-edge technologies and talented professionals, gaining hands-on experience in security assessments, compliance audits, and risk management.
All applications will be treated with strict confidentiality!

The main responsibilities of the position include:

  • Perform hands-on complex security audits in IT infrastructure, applications, technologies and third parties
  • Assess internal controls, processes and policies related to Information Technology and Security identifying deficiencies, and developing remediation strategies
  • Prepare comprehensive audit reports summarizing the audit scope, results of test work, findings and recommend corrective actions
  • Identify information security risks and make recommendations which are appropriate, practical and cost-effective
  • Manage and monitor the progress of remediation steps on audit findings
  • Ensure the organization meets all information security requirements of applicable laws and regulations
  • Liaise with external auditors and internal stakeholders in successful execution of all compliance audits
  • Provide regular reports and metrics on the security posture to the relevant stakeholders
  • Main requirements:

  • BSc/MSc in Information Security or any other related field
  • Minimum 2 years working experience in an Information Security related field
  • Experience in IT Systems and Security audit, vulnerability assessments and security risk management
  • Demonstrated experience in auditing large scale infrastructures, information systems, IT processes and advanced security controls
  • Good knowledge of information and security technologies such as Windows and Active Directory, Linux, virtualization, host and application security, networking, firewalls, security architecture etc
  • Hands-on experience in auditing cloud infrastructures (AWS, Azure, GCP etc) will be considered an advantage
  • Good understanding of security regulations and frameworks such as ISO 27001, NIST CSF and 800-53, GDPR, DORA etc
  • Strong project and time management skills with the ability to work independently under minimal supervision and as part of a team
  • Meticulous attention to detail with an analytical mind and outstanding problem-solving skills
  • Excellent communication skills with the ability to explain technical concepts to a non-technical audience
  • Audit-related and other information security certifications such as CISA, ISO 27001 Lead Auditor, CISSP, CCSP etc will be considered an advantage
  • Benefit from:

  • Attractive remuneration package plus performance related reward
  • Private health insurance
  • Corporate pension fund
  • Intellectually stimulating work environment
  • Continuous personal development and international training opportunities
  • The Hiring Experience: What Awaits You

  • Let’s Connect – Intro Chat with Talent Acquisition
  • Deep Dive – First Interview with Your Future Team
  • Final Connection – Final Interview
  • Cloudflare

    Rack Integration Operations Engineer

    πŸ•’ 2 days ago
    CloudflareπŸ‘₯ 10,000+ employees🏒 Computer And Network Security🀝 B2B

    As a Rack Integration Operations Engineer, you will ensure BOM accuracy, optimize materials planning, and modernize operations through AI-enabled automations while collaborating with hardware partners.

    Bill Of Materials (bom) ManagementHardware Vendor ManagementContract ManufacturingTechnical Specifications Evaluation
    Abnormalsecurity

    Software Engineer II - Insider Risk

    πŸ•’ 2 days ago
    AbnormalsecurityπŸ‘₯ 1001 - 5000 employees🏒 Computer & Network Security

    Build and enhance identity verification and fraud detection systems to protect organizations from insider threats and fraudulent employee identities.

    Software DevelopmentFraud DetectionIdentity VerificationData Analysis
    Replit

    Staff Software Engineer, Identity & Authorization

    πŸ•’ 2 days ago
    ReplitπŸ‘₯ 10,000+ employees🏒 Software Development🀝 B2B

    Design, build, and operate identity and authorization systems that secure critical interactions on Replit, enabling efficient and reliable user and agent identity management.

    Oauth 2.0OIDCJWTMtls
    Aecom2

    OLE Engineer

    πŸ•’ 2 days ago
    Aecom2πŸ‘₯ 10,000+ employees🏒 Architecture And Engineering🀝 B2B

    The OLE Engineer will engage in design activities for international railway projects, focusing on technical reports, structural design, and interdisciplinary collaboration.

    OLE DesignStructural DesignTechnical ReportingCAD Tools
    Cloudflare

    Software Engineer - Egress (Go/Rust)

    πŸ•’ 2 days ago
    CloudflareπŸ‘₯ 10,000+ employees🏒 Computer And Network Security🀝 B2B

    As a key technical contributor on the Egress team, you will enhance Cloudflare's network software infrastructure, ensuring robust connectivity for various products.

    GoRustLinux NetworkingClickhouse

    Trusted by Remote Workers