
Information Technology (IT) Cyber Auditor
- Havant, Hampshire
- £50,100-75,100 per year
- Permanent
- Full-time
- Understand the business and impact of IT cyber risk - Through building trusted relationships with the business, IT, and Cyber Risk teams, develop a close understanding of the business, the technology that supports key processes, and impact of strategic change on the IT cyber risk profile.
- Balancing robust and pragmatic cyber assurance and advice - Using the understanding gained from relationships across the Group, support the scoping, delivery, and reporting of assurance via audit. Provide practical risk and assurance advice that recognises business risk and impact, as well as the level of current cyber security maturity.
- Prepare reports, communicate results and agree action - As part of delivering cyber audits, this role will regularly report to management at all levels. Prepare draft reports for review and discussion with management, agree achievable and proportionate actions for all relevant Management Disclosures and Findings ensuring clear responsibility and due dates are set.
- Ensure actions are completed - Undertake follow-on activities to ensure agreed audit actions are completed in-line with the audit reports and that any changes are clearly documented.
- Passionate interest in cyber security / IT and business impacts in the energy sector
- Robust understanding of risk-based assurance processes and cyber security frameworks, controls, and standards across different types of technology (e.g. Cloud, AI, database, network, operating system)
- Demonstrable operational or auditing experience in at least three of the following security disciplines:
- Identity & Access Management
- Privileged Access Management
- SIEM/Security Operations
- Firewalls/IDS/IPS
- Threat & Vulnerability Management
- Zero Trust Networks
- Endpoint Protection
- Incident Response
- Supplier Assurance
- Web Proxy/CASB
- Strong communication, organisational, and influencing skills to engage with stakeholders and deliver audits effectively and in a timely manner
- Ability to operate objectively and demonstrate professionalism & integrity throughout the audit lifecycle