About the job
Duties and Responsibilities
- Deliver high-quality audit or assessment work, both locally and overseas.
- Craft proposals, audit/ engagement plans and execute tasks as per defined project schedules.
- Participate in presales activities such as discussions with clients and tender briefings.
- Work with key client stakeholders to identify requirements, define the scope, and perform fieldwork.
- Review clients’ policies, procedures, standards, and guidelines against relevant security standards.
- Identify gaps and clearly articulate observations, root causes, and implications.
- Provide recommendations based on best practices to clients.
- Visualise and present findings to key stakeholders.
- Perform other job-related duties as assigned.
Requirements
- Diploma/ Bachelor’s Degree in a related field, or equivalent experience.
- Hold one or more relevant Industry Certifications such as CISSP, CISA, CRISC, IEC 62443, Cloud etc.
- At least 2-4 years of audit experience for IT/ OT/ cloud environments.
Preferred Skills / Qualities
- Excellent grasp of cybersecurity concepts such as threat identification, information protection, threat detection, incident response, BCP/ DR etc.
- Familiarity with Industry standards and frameworks for information security (e.g., NIST Cybersecurity Framework, PCI DSS, ISO 27001 etc.)
- Good interpersonal and presentation skills.
- Team player, who can also work autonomously when required.
- Can multitask effectively and work under pressure.
- Good at data visualisation.