CrawlJobs Logo

Senior Information Security Auditor

nttdata.com Logo

NTT DATA

Location Icon

Location:
Spain , Barcelona

Category Icon
Category:
-

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The Senior Information Security Auditor is responsible for leading internal audits, ensuring compliance with security standards, and mentoring junior auditors.

Job Responsibility:

  • Leading internal audits
  • Ensuring compliance with security standards
  • Mentoring junior auditors

Requirements:

  • Strong background in ISO standards and GDPR
  • At least 5 years of experience in information security or IT audit roles
  • Excellent communication skills
  • Excellent analytical skills

Additional Information:

Job Posted:
January 25, 2026

Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Senior Information Security Auditor

Senior Information Security Officer

Senior Information Security Officer (ISO Sr. Analyst - AVP) is an intermediate l...
Location
Location
Turkey , Istanbul
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-8 years of relevant experience
  • Strong knowledge of local regulations (BRSA) and cybersecurity principles
  • Proficient in interpreting and applying policies, standards and procedures
  • Consistently demonstrates clear and concise written and verbal communication
  • Proven influencing and relationship management skills
  • Proven analytical skills
  • Preferably holding IT/security certifications such as CISA, CISM, CISSP, CRISC, CEH or similar
  • Follows cybersecurity trends
  • Bachelor’s degree/University degree or equivalent experience
Job Responsibility
Job Responsibility
  • Address security issues identified in the various information security programs
  • Review and address issues identified within various Information Security (IS) programs and ensure all IS issues related to Internal Audit, and External Auditors are closed by their original target date
  • Improve the efficacy of governance processes by identifying risks, monitoring controls, and remediating issues
  • Establish cross-sector working relationships and complete weekly awareness discussions with local team to efficiently tackle security issues
  • Ensure risk exceptions are raised, registered and closed on a timely basis and communicate updates and changes to the global standards
  • Complete Risk Assessment process, including completing accurate inventory reporting, data classification, threat analysis, and action plans
  • Test and validate that the business complies with applicable IS requirements
  • develop and implement IS policies and procedures
  • Determine and validate appropriate level of controls are being implemented to safeguard sensitive data
  • Develop Corrective Action Plans for all Information Security-related gaps and approve all closures through reviewing evidence to ensure each closure meets Citi Requirements
  • Fulltime
Read More
Arrow Right

Senior Information Security Compliance Analyst

We're looking for a technically grounded Senior IS Compliance Analyst who speaks...
Location
Location
United States , Chicago
Salary
Salary:
90000.00 - 130000.00 USD / Year
blumeglobal.com Logo
Blume Global
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Hands-on experience in technical security roles such as Security Operations, Incident Response, Security Analysis, penetration testing, or similar
  • Practical knowledge of security tools, SIEM platforms, vulnerability management, and security monitoring
  • and ability to read and understand security logs, configurations, and technical documentation
  • 6+ years of total experience with significant time in GRC
  • Working knowledge of ISO 27001, NIST frameworks, SOC 1/2, and GDPR requirements
  • Experience developing and implementing information security policies and controls
  • ISO 27001:2022 Lead Implementer and Lead Auditor certification
Job Responsibility
Job Responsibility
  • Lead technical security assessments and integration of acquired companies, mapping their security architectures and controls to our GRC frameworks, identifying gaps, and building remediation roadmaps that address both technical security and compliance alignment
  • Bridge technical security and business stakeholders by evaluating risks through a technical lens, working alongside security engineering teams to translate GRC requirements into practical security measures, and communicating effectively across technical and non-technical audiences
  • Develop and harmonize security policies and control frameworks across acquired entities, ensuring they're both audit ready and operationally sound, while translating between technical security requirements and governance documentation
  • Own customer security questionnaire responses by leveraging your hands-on security background to provide detailed, accurate answers and collaborating with infrastructure, application security, and operations teams to gather technical evidence
  • Drive continuous improvement of our GRC program through technical security enhancements, meaningful security and compliance metrics, and process improvements that increase both control effectiveness and operational efficiency
What we offer
What we offer
  • health and welfare benefits
  • tuition assistance
  • 401K savings and other retirement programs
  • employee assistance programs
Read More
Arrow Right

Senior Information System Security Officer

Come join our growing team and make a difference every day! AnaVation is seeking...
Location
Location
United States , Washington
Salary
Salary:
Not provided
anavationllc.com Logo
AnaVation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Cybersecurity, Information Technology, or a related field
  • Minimum of six (6) years of hands-on experience in cybersecurity and expert knowledge of Governance Risk and Compliance
  • At least three (3) years supporting and maintaining system authorizations for complex systems
  • Demonstrated expertise in the Risk Management Framework (RMF), NIST SP 800-53 Rev 5, and related federal cybersecurity policies
  • Extensive experience managing ATO/ATT processes, security control assessments, POA&M lifecycle, vulnerability management, and audit response
  • Strong leadership experience mentoring junior and mid-level ISSOs and interfacing with senior government leadership
  • Must possess at least two of the following active certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Governance, Risk and Compliance (CGRC), Certified in Risk and Information Systems Control (CRISC), Information Systems Security Management Professional (ISSMP), Certified Information Systems Auditor (CISA), Certified Cloud Security Professional (CCSP), Certified Ethical Hacker (CEH), CompTIA Security+, Project Management Professional (PMP)
  • Proficiency in tools such as JCAM, Tenable Nessus, BigFix and Splunk
  • Ability to develop, review, and present high-level security documentation and briefings
  • Strong understanding of cloud platforms (IaaS, PaaS, SaaS), supply chain risk management, and incident response procedures
Job Responsibility
Job Responsibility
  • Support the maintenance of security documentation and support system ATO and ATT efforts
  • Conduct security control assessments and provide recommendations for remediation
  • Perform biweekly audit log and vulnerability scan reviews and track POA&M items
  • Collaborate with system owners and technical teams to manage risk and respond to incident
  • Support Ongoing Authorization (OA) and continuous monitoring activities
  • Prepare and brief senior leadership on system security posture and compliance metric
  • Ensure alignment with cybersecurity policies and NIST SP 800-53, 800-37, and 800-137
What we offer
What we offer
  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance
  • Fulltime
Read More
Arrow Right

Senior Auditor - Cyber & Infrastructure IA

The Senior Auditor is responsible for performing moderately complex audits and a...
Location
Location
Canada , Mississauga
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-8 years of relevant experience in Cyber or Information Security Risk or Audit Roles
  • Professional Certification preferred (CISA, CISSP, CIA, CPA, etc.)
  • Experience working with Excel, array formulas and integrating with external data sources
  • Experience with data in Access and integrating with external data sources and Excel tools
  • Effective verbal, written, and negotiation skills
  • Effective project management skills
  • Effective influencing and relationship management skills
  • Experience in data quality and governance analysis
  • Strong data analytics skills
  • Demonstrated ability to remain unbiased in a diverse working environment
Job Responsibility
Job Responsibility
  • Complete assigned audits within budgeted timeframes, and budgeted costs
  • Monitor, assess, and recommend solutions to emerging risks
  • Contribute to the development of audit process improvements, including the development of automated routines to help focus audit testing
  • Draft audit reports, and present issues to the business while discussing practical cross-functional solutions
  • Recommend appropriate and pragmatic solutions to risk and control issues
  • Apply understanding of internal audit standards, policies, and local regulations to provide timely audit assurance
  • Develop internal audit staff, and provide coaching to team members
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency, as well as effectively supervise the activity of others and create accountability with those who fail to maintain these standards
  • Fulltime
Read More
Arrow Right

Senior IT Auditor

Assurit is currently seeking an experienced Senior IT Auditor to support one of ...
Location
Location
United States
Salary
Salary:
Not provided
assurit.com Logo
Assurit
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Systems, Computer Science, Accounting, Business, or related field
  • or equivalent professional experience
  • 7+ years of hands-on experience conducting IT audits in enterprise, government, or regulated environments
  • Strong knowledge of generally accepted IT audit standards, principles, and practices (e.g., GAO FISCAM, NIST, COBIT, ISO, FISMA)
  • Proficiency evaluating IT security and control practices, including access management, configuration management, change management, and incident response
  • Experience auditing diverse technology platforms such as Windows, Linux, databases, and enterprise applications
  • Strong analytical and problem-solving skills with the ability to assess complex environments and translate findings into actionable insights
  • Exceptional written and verbal communication skills, including the ability to produce clear audit documentation
  • Strong organizational abilities, attention to detail, and experience preparing structured audit workpapers
Job Responsibility
Job Responsibility
  • Evaluate IT controls across diverse systems and platforms, identifying gaps and recommending risk-based improvements
  • Review security configurations, installation procedures, and control environments for operating systems, databases, applications, and supporting technologies
  • Identify process or technical problems and propose effective remediation strategies
  • Develop audit plans, prepare audit test procedures, and perform audit testing aligned with established methodologies
  • Analyze audit results, determine control effectiveness, and document findings with clarity and precision
  • Produce structured audit workpapers, findings, and supporting documentation to ensure efficient, repeatable, and compliant reviews
  • Collaborate with stakeholders to explain audit observations, discuss risk implications, and validate corrective actions
  • Apply recognized IT audit, security, and control frameworks to support audit execution and reporting
  • Assist in the continuous enhancement of audit strategies, methodologies, and tools
What we offer
What we offer
  • medical and dental coverage
  • paid time off
Read More
Arrow Right

Senior Cybersecurity Engineer

As a Senior Cybersecurity Engineer, you will be at the forefront of driving secu...
Location
Location
United States , Bellevue; Overland Park; Frisco; Herndon
Salary
Salary:
103400.00 - 186400.00 USD / Year
https://www.t-mobile.com Logo
T-Mobile
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree Computer Science or Information Technology or equivalent work experience
  • 4-7 years Experience in info security technology or related field
  • Experience with incident handling for Security breaches
  • Expert in security subject areas
  • 2-4 years Technical Project Management
  • Experience with high level design architecture, security technologies, Networking, web services and SOA
  • Understanding of encryption, obfuscation, tokenization technologies
  • Medium to advance knowledge of Scripting tools (Python/Perl/Shell/HTML/PHP)
  • Knowledge of federal & compliance regulations e.g. SOX, PCI & CPNI
  • Familiarity with load balancers (ex – A10, F5), firewalls (ex – CheckPoint), Venafi, MDM (ex - Mobile Iron), Cloud (ex - AWS, Azure), Malware Protection (ex -FireEye), Advanced Persistent Threats (ex - Damballa), Privileged Accounts (ex – CyberArk), SIEM (ex – ArcSight), Log & Event (ex – Splunk), Intrusion IDS/IPS (ex – Symantec) , Cloud Platform (ex – PCF, Docker), Scanning (ex – Qualys), AppSec (ex - Veracode)
Job Responsibility
Job Responsibility
  • Leads security, compliance, and risk assessments on projects throughout project lifecycle
  • Improves process efficiency by creating and implementing creative and sustainable changes to existing deployment methodologies
  • Leads the identification of security needs & recommends plans/resolutions
  • Implements, tests & monitors info security improvements
  • Maintains transparency inside & outside of information security at the People management level
  • Communicate with groups such as application support, engineering ops, finance, privacy, risk management, etc
  • Leads information security policy lifecycle throughout, including intake, creation, review, approval, implementation, publishing, communication & maintenance
  • Implements security projects driven by groups both internal and external to info security
  • Mentors peers and junior team members in security technologies, enterprise solution design and facilitation and effective customer interaction
  • Experience with implementation of various threat modeling approaches pertaining to one or more of the following STRIDE, PASTA, TRIKE, ATTACK TREE, DREAD, KILL CHAIN, CAPEC, Mobile Application threat model, Cyber Threat Tree, and data flow diagram
What we offer
What we offer
  • Competitive base salary and compensation package
  • Annual stock grant
  • Employee stock purchase plan
  • 401(k)
  • Access to free, year-round money coaches
  • Medical, dental and vision insurance
  • Flexible spending account
  • Paid time off
  • Up to 12 paid holidays
  • Paid parental and family leave
  • Fulltime
Read More
Arrow Right

Information Technology (IT) Sr Auditor

The Information Technology (IT) Senior Auditor is an intermediate level role res...
Location
Location
Mexico , Ciudad De Mexico
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-8 years of relevant experience
  • Related certifications (CPA, ACA, CFA, CIA, CISA or similar) preferred
  • Effective verbal and written communication and negotiation skills in English
  • Subject matter expertise regarding audit technology’s application
  • Effective project management skills
  • Effective influencing and relationship management skills
  • Demonstrated ability to remain unbiased in a diverse working environment
  • Effective presentation skills to leading meetings and present to executive leaderships
  • Effective problem-solving skillset
Job Responsibility
Job Responsibility
  • Perform moderately complex audits including drafting audit reports, presenting issues to the business, and discussing practical solutions
  • Draft audit reports and present issues to the business while discussing practical cross-functional solutions
  • Complete assigned audits within budgeted timeframes, and budgeted costs
  • Monitor, assess, and recommend solutions to emerging risks
  • Contribute to the development of audit processes improvements, including the development of automated routines
  • Apply internal audit standards, policies, and regulations to provide timely audit assurance and influence audit scope
  • Develop effective line management relationships to ensure strong understanding of the business
  • Experience in testing access security controls, change management controls, computer operations, automated controls, and IT dependencies (such as system interfaces, key reports)
  • Has the ability to operate with a limited level of direct supervision
  • Can exercise independence of judgement and autonomy
What we offer
What we offer
  • Equal opportunity employer
  • Global benefits
  • Accessibility support
  • Fulltime
Read More
Arrow Right

Security Compliance Officer

As an IT compliance manager, you are part of the information security team. This...
Location
Location
Netherlands , Diemen
Salary
Salary:
Not provided
https://www.randstad.com Logo
Randstad
Expiration Date
February 28, 2026
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Information Technology, Cybersecurity, or a related field
  • Certified Lead Auditor in ISO 27001:2013 or 2022 standard
  • At least 5 years of experience in conducting internal audits and implementing information security best practices
  • Strong understanding of information security principles, controls, and frameworks
  • Basic understanding and some experience in Third-Party Risk Management (TPRM) is preferred but not mandatory
  • Excellent communication and interpersonal skills, with the ability to collaborate effectively with diverse teams
  • Able to prepare concise reports for senior management, including C-level
  • Proficiency in relevant tools and technologies related to information security auditing
  • Good command of the English language
  • Excellent analytical skills
Job Responsibility
Job Responsibility
  • Improve Information security 2nd line of defense role at Randstad Global, in overseeing risk and monitoring of IT and IS related first-line-of-defense controls in our Operating Companies/markets
  • Conduct periodic internal compliance reviews / audits to assess and enhance the effectiveness of the information security management system of operating companies/markets , adhering to ISO 27001 standard
  • Ensure compliance with regulatory requirements and industry best practices
  • Perform gap analysis to evaluate the effectiveness and compliance of operational processes with our corporate security policies and guidelines
  • and provide recommendations to identify areas for improvement, with proposed remediation
  • Provide guidance to our colleagues located globally in becoming compliant with our control frameworks
  • Prepare comprehensive audit reports, highlighting findings and recommendations for improvement
  • Fulltime
Read More
Arrow Right