loading...

IT Security -Lead Auditor

Posted On: 30 Jan 2024
Job Summary
Qualification

M.Tech/B.E/BscIT/ BTech/Professional certifications such as CISSP, DISA, CISM, or CISA are highly desirable

Location

Mumbai

Experience

3-7 years

No. of Positions

2

Job Description

Position Overview:
We are seeking an experienced and certified ISO 27001 Lead Auditor to join our team. The ISO 27001 Lead Auditor will be responsible for leading and conducting ISO 27001 certification audits for our clients, ensuring compliance with international standards and best practices in information security management.

Key Responsibilities:
Plan, organize, and conduct ISO 27001 certification audits for clients across various industries, in accordance with established audit methodologies and standards.
Serve as the primary point of contact and lead auditor for assigned audit engagements, managing all aspects of the audit process from initiation to completion.
Conduct comprehensive risk assessments and gap analyses to identify vulnerabilities and areas for improvement in clients' information security management systems (ISMS).
Evaluate the effectiveness of clients' ISMS controls and processes, including risk mitigation strategies, security policies, procedures, and technical safeguards.
Prepare detailed audit reports documenting findings, observations, and recommendations for remediation, and present audit findings to clients' management teams.
Provide expert guidance and support to clients throughout the certification process, offering practical advice and solutions to address identified deficiencies and achieve compliance with ISO 27001 requirements.
Stay current with industry developments, trends, and emerging threats in information security, and contribute to the continuous improvement of audit methodologies and practices.

Qualifications:
Bachelor's degree in Information Technology, Computer Science, or a related field; relevant professional certifications (e.g., CISA, CISSP, ISO 27001 Lead Auditor) preferred.
Minimum 3 years of experience in information security, risk management, and auditing, with a focus on ISO 27001 compliance and certification.
Proven track record of conducting ISO 27001 certification audits and leading audit teams, with a thorough understanding of ISO 27001 standards, guidelines, and requirements.
Strong analytical and problem-solving skills, with the ability to assess complex information security issues and develop practical solutions.
Excellent communication and interpersonal skills, with the ability to interact effectively with clients, management teams, and audit stakeholders.
Proficiency in audit software tools, risk assessment methodologies, and information security frameworks.

Apply Now