02/02/2026
We are looking for an IT Audit, Security & Risk Consultant to support information security governance, risk management, and compliance activities in line with ISO/IEC 27001 ISMS standards. The role involves audits, risk assessments, policy implementation, and continuous improvement of security controls.
๐๐๐ฒ ๐๐๐ฌ๐ฉ๐จ๐ง๐ฌ๐ข๐๐ข๐ฅ๐ข๐ญ๐ข๐๐ฌ:
โข Plan and conduct IT audits aligned with ISO/IEC 27001 and best practices
โข Support ISMS implementation, maintenance, and continual improvement
โข Perform risk assessments, threat modeling, and treatment plans
โข Develop, review, and maintain ISMS documentation (policies, SOPs, procedures)
โข Conduct internal audits, gap assessments, and readiness reviews
โข Assist with ISO 27001 certification and surveillance audits
โข Monitor and ensure compliance with security controls (Annex A)
โข Support incident management, root cause analysis, and corrective actions
โข Coordinate with internal teams, management, and external auditors
โข Create audit reports, risk registers, and management review inputs
โข Promote security awareness and best practices across the organization
๐๐๐ง๐๐๐ญ๐จ๐ซ๐ฒ ๐๐ค๐ข๐ฅ๐ฅ๐ฌ & ๐๐ง๐จ๐ฐ๐ฅ๐๐๐ ๐:
โข Strong understanding of ISO/IEC 27001:2022
โข Knowledge of ISMS lifecycle (PlanโDoโCheckโAct)
โข Risk assessment methodologies
โข Information security policies & controls
โข Audit planning and evidence collection
โข Internal audits
โข Gap analysis
โข Compliance documentation
โข Network & application security
โข Asset management, access control, incident response
โข Excellent documentation and reporting skills
๐๐ฎ๐๐ฅ๐ข๐๐ข๐๐๐ญ๐ข๐จ๐ง๐ฌ:
โข Bachelorโs degree in IT, Computer Science, Cybersecurity, or related field
โข ISO/IEC 27001 Lead Implementer / Lead Auditor
โข CISA / CEH / CISSP / CRISC
โข Other relevant cybersecurity certifications
๐๐ฅ๐๐๐ฌ๐ ๐ฌ๐๐ง๐ ๐ฎ๐ฌ ๐ฒ๐จ๐ฎ๐ซ ๐ซ๐๐ฌ๐ฎ๐ฆ๐:
[email protected]