An exciting opportunity has arisen for an Internal IT Security Auditor to join a forward-thinking organisation based in Malaysia on a 12-month contract. This role is integral to the ongoing success of the company's information security strategy, ensuring compliance with customer, certification, and cyber security requirements.
You will play a pivotal part in safeguarding the organisation's digital assets by working closely with internal stakeholders across business lines and support functions.
What you'll do :
As an Internal IT Security Auditor, you will be entrusted with driving continuous improvement in the organisation's information security landscape. Your day-to-day activities will involve close collaboration with technical teams to assess current practices, identify potential risks, and implement effective mitigation strategies. Your responsibilties will also include :
- Serving as the second line of defence by performing ongoing assessments of IT security practices and policies to enhance the overall security posture of the organisation.
- Conducting regular risk assessments to identify vulnerabilities in systems and processes, developing and implementing strategies to mitigate identified risks effectively.
- Producing comprehensive reports on compliance evidence status, ensuring transparency and accountability across all relevant areas.
- Identifying gaps in compliance and plan for the implementation of new controls that align with evolving regulatory and business requirements.
- Collaborating closely with application and infrastructure architects to ensure secure design and seamless transition of applications and infrastructure into operational environments.
- Working hand-in-hand with the information technology team to guarantee that infrastructure is built with robust security controls, providing expert advice on best practices such as server hardening, patch management, and maintaining secure operating environments.
What you bring :
To excel as an Internal IT Security Auditor, your background should reflect proven experience in managing complex audit assignments within regulated environments. Your technical acumen enables you to interpret intricate frameworks while your interpersonal skills allow you to build rapport across departments. Other requirements include :
A degree in Information Technology or Information Security provides you with a solid foundation for understanding complex technical environments.Between 3 to 7 years' experience in information security compliance or audit roles ensures you bring practical knowledge to every challenge.Project management skills, including scheduling, tracking, and following up with stakeholders to ensure timely progress.Strong communication and interpersonal skills to lead discussions, influence stakeholders, and manage expectations.Demontrate competence in compiling audit findings, preparing documentation, and presenting clear and concise reports to management.Solid understanding of information security requirements (not necessarily deep technical expertise), with the ability to articulate them in simple terms for stakeholders and maintain an end-to-end process perspective.Professional certifications such as CISA, CISSP, or ISO / IEC 27001 Lead Auditor demonstrate your commitment to excellence in information security auditing is preferred but not essential.Experience working with major frameworks like PCI DSS, ISO 27001 or SOC2 equips you to navigate diverse compliance landscapes confidently.Familiarity with common information security management frameworks such as ISO / IEC 27001 and NIST allows you to benchmark organisational practices against global standards.Exceptional written and verbal communication skills enable you to convey complex concepts clearly across all levels of the business.A high level of personal integrity ensures trustworthiness when handling sensitive data or confidential findings during audits.What sets this company apart :
This organisation stands out for its unwavering commitment to fostering an inclusive workplace where every voice is valued. Employees benefit from flexible working opportunities designed to support work-life balance without compromising professional development.
What's next :
If you are ready to take your career in information security auditing to new heights within a collaborative environment that values your expertise-this is your moment
Apply today by clicking on the link provided; seize this opportunity to become an integral part of a team dedicated to making a real difference in cyber resilience.
Robert Walters SEA is acting as an Employment Business in relation to this vacancy.