job description
Join our dynamic team as an IT Auditor and play a pivotal role in safeguarding our digital infrastructure. In this position, you will lead comprehensive IT audits, assess risks, and enhance internal controls to ensure compliance with industry standards and regulatory requirements. Your expertise will directly contribute to strengthening our IT security framework and governance, fostering a culture of continuous improvement and risk mitigation.
Based in the vibrant regions of Bali, including Canggu, Ubud, and Denpasar, this role offers a unique opportunity to work in a collaborative environment while enjoying the island's inspiring work-life balance. If you are passionate about cybersecurity, risk management, and driving operational excellence, we invite you to apply and be part of our mission to secure and optimize our IT landscape.
Responsibility
- Conduct thorough IT audits to evaluate the effectiveness of security controls, compliance with policies, and adherence to regulatory standards.
- Identify and assess IT risks, vulnerabilities, and gaps in internal controls, providing actionable recommendations for mitigation.
- Develop and implement audit plans, methodologies, and procedures to ensure comprehensive coverage of IT systems and processes.
- Collaborate with cross-functional teams to communicate audit findings, facilitate remediation efforts, and monitor progress.
- Evaluate the design and operational effectiveness of IT governance frameworks, including access controls, data protection, and incident response protocols.
- Prepare detailed audit reports and presentations for senior management, highlighting key findings, risks, and improvement opportunities.
- Stay abreast of emerging threats, industry trends, and best practices in IT security and governance to enhance audit methodologies.
- Support continuous improvement initiatives by providing insights and recommendations to strengthen IT policies, procedures, and controls.
Qualifications
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field. Advanced degrees or certifications (e.g., CISA, CISSP, CISM) are a plus.
- Proven experience (3+ years) in IT auditing, risk management, or cybersecurity, preferably in a corporate or consulting environment.
- Strong understanding of IT governance frameworks (e.g., COBIT, ISO 27001, NIST) and regulatory requirements (e.g., GDPR, SOX).
- Proficiency in conducting vulnerability assessments, penetration testing, and compliance audits.
- Excellent analytical, problem-solving, and communication skills, with the ability to present complex technical concepts to non-technical stakeholders.
- Experience with audit tools and methodologies, as well as familiarity with IT infrastructure, networks, and applications.
- Ability to work independently and collaboratively in a fast-paced environment, managing multiple priorities and deadlines.
- Strong ethical standards and a commitment to maintaining confidentiality and integrity in all audit activities.