This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are looking for an independent and highly skilled Information Security Expert to join our client’s team on an expertise-driven assignment. We are looking for a specialist who can hit the ground running to deliver comprehensive, end-to-end security audits within the critical domain of Supply Chain Security. If you are a self-starter who thrives on delivering deep-dive analyses and structured risk assessments in a collaborative environment, this project is for you.
Evaluate control designs versus actual operational effectiveness using direct system evidence rather than design intent alone
Provide key insights into technical gaps, emerging security risks, and strategic improvement opportunities
Lead and conduct thorough end-to-end audits of systems, processes, SaaS platforms, and third-party vendors
Analyze technical configurations, including access controls, authentication mechanisms, security settings, and system behaviors
Review and interpret log files, audit trails, and system monitoring data to validate control effectiveness and locate weaknesses
Evaluate cloud, SaaS, and platform architectures against shared responsibility models to call out security and ownership gaps
Actively engage and collaborate with internal and external stakeholders, including Risk, Procurement, Contract Owners, and suppliers
Work aligned with DevOps & Agile methodologies within an international team
Requirements
Typically 6-8 years of experience in internal audit, security auditing, IT risk, compliance, or similar specialist roles
Proven experience auditing SaaS environments and cloud architectures is a strong plus
Demonstrated experience testing actual operational control effectiveness using direct system evidence and technical configurations
Solid understanding of IT platforms, applications, security architectures, and Identity and Access Management (IAM), including RBAC, PAM, access governance, and user lifecycle controls
Strong familiarity with industry standards and compliance frameworks such as ISO 27001, SOC 2, NIST, CIS, and GDPR
Comfort working in a hybrid, DevOps, and Agile environment
Full professional fluency in English (the working language of the team)
Ability to work in a hybrid setup (1-2 days per week from the office)
Willingness to travel abroad as required for audit-related activities