Назад
Company hidden
5 дней назад

Senior Cyber Security Internal Auditor

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Spain/Netherlands
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Cyber Security Internal Auditor (Cybersecurity and IT Audit): Performing independent cybersecurity, IT, and privacy audits across corporate procedures, processes, and sites with an accent on control effectiveness, technical audit techniques, and regulatory alignment. Focus on evaluating IAM, cloud, network, application, privacy, and cyber-resilience controls, identifying root causes, and validating sustainable remediation.

Location: Rotterdam, Netherlands, or Barcelona, Spain. Hybrid work includes working from home up to two days per week, depending on team needs. A separate flex-location benefit allows up to 30 days per year from any location worldwide.

Company

hirify.global provides technology and communications solutions for airports, airlines, borders, and the global air transport industry.

What you will do

  • Plan and perform independent end-to-end cybersecurity, IT, and privacy audits, including fieldwork, testing, documentation, and reporting.
  • Evaluate cybersecurity governance, risk management, policies, operating models, and control effectiveness.
  • Assess IAM, network and infrastructure security, cloud security, application security, SDLC, data protection, incident response, and cyber resilience.
  • Apply technical audit techniques such as configuration reviews, log analysis, and vulnerability assessment reviews.
  • Evaluate compliance with NIST CSF, ISO 27001, CIS, COBIT, NIS2, GDPR, and contractual requirements.
  • Present findings to senior management, assess remediation plans, and track follow-up testing and corrective actions.

Requirements

  • At least three years of external or internal cybersecurity, IT, and privacy auditing experience.
  • Demonstrated ability to perform end-to-end audits independently.
  • Strong understanding of cybersecurity and IT controls, including technical audit methods.
  • Familiarity with ISO 27001, NIST, CIS, COBIT, GDPR, and NIS2 frameworks.
  • Background in an audit firm or internal audit team and ability to communicate with senior leadership.

Nice to have

  • ISO 27001 Lead Auditor, CISM, or a similar certification.
  • Additional exposure to privacy topics alongside cybersecurity.

Culture & Benefits

  • Inclusive, diverse environment operating across 200 countries and 60 languages and cultures.
  • Flex Day options to adapt the workday to personal needs.
  • Up to 30 days per year of work from any location worldwide.
  • Employee Assistance Program and access to Champion Health wellbeing services.
  • Professional development through LinkedIn Learning, Pluralsight, Stanford, Harvard Business Publishing, and other learning platforms.
  • Competitive benefits aligned with the local market and employment status.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →