operational areas may be required. PERSON SPECIFICATION Knowledge: A Levels or equivalent. Recognised qualification ininformation security, data protection, or risk (e.g. CISM, CISSP, CRISC, BCS DPO, etc.). In-depth understanding of ISO 27001, NIST, or other relevant security frameworks. Up-to-date knowledge of data protection legislation andMore ❯
leadership and key committees. Ability to summarise and highlight key program risks, findings and recommendations. What we need from you Professional qualification in CISA, CRISC or equivalent. Proven experience in IT compliance, IT risk management, or IT auditing. SME knowledge of ITGC and ITAC concepts and requirements. In-depth knowledge More ❯
audit, compliance, and security processes (ISO27001, GDPR, Cyber Essentials and PCI DSS). Microsoft accreditation or other recognised certifications (e.g. Microsoft Learning, CISA, CISM, CRISC, CCSP) would be very beneficial. Benefits: £25,000 - £35,000 salary depending on experience. 32 days holiday rising with service to 37 max including bank More ❯
matters. Your professional development should include A recognised information security, data protection or informationrisk qualification (e.g CertifiedInformation Security Manager (CISM), CISSP, GCRC, CRISC, DP PDP, BCS etc) Practical knowledge of current Information Security Cyber and Assurance Management standards and best practice (including ISO 27001/NIST Framework). More ❯
matters. Your professional development should include A recognised information security, data protection or informationrisk qualification (e.g CertifiedInformation Security Manager (CISM), CISSP, GCRC, CRISC, DP PDP, BCS etc) Practical knowledge of current Information Security Cyber and Assurance Management standards and best practice (including ISO 27001/NIST Framework). More ❯
Ability to perform to tight deadlines. Relevant riskand/or security industry certification(s) such as CertifiedinRiskandInformationSystemsControl (CRISC), CertifiedInformation Security Manager (CISM), CertifiedInformationSystems Security Professional (CISSP), Certified Ethical Hacker (CEH). Must possess the ability to follow and/or More ❯
bring about improvements to both processes and controls to mitigate risk. About you: Required - Technology audit/risk industry certifications e.g., CISA, CCAK, CISM, CRISC, etc. Required - Proven ability to perform a wide range of IT audit work inclusive of knowledge and experience of IT audits relating to Financial Services More ❯
plans on technology with IT General Controls and Automated Controls, including adequacy and effectiveness of technology controls. A professional certification such as CISA or CRISC would be advantageous. You’ll also have: Audit experience within a financial services or large accounting firm The ability to identify risks associated with use More ❯