· CISA certification. · Proficiency in different ERP platforms. · Experience in ISMS ISO 27001 implementation and audits. · Candidate must have foundational experience with, and understanding of, IT general controls. Exposure to Service Organization Controls audits (SSAE 16/ ISAE 3402). · Proficiency with specialized audit software such as Audit Command Language (ACL) and / or Approva is required. · Knowledge and experience in the review of systems business processes and related controls, and continuous monitoring techniques. · Experience in IS security compliance audits. · Working experience and good knowledge in Data Mining and Data Analysis. · Knowledge of industry standards and industry frameworks (e.g., COBIT, COSO, CMMi, PCI/DSS, NIST) · Ability to handle multiple projects effectively and maintain the confidentiality of sensitive information. · Experience in information security risk assessments and gap analysis. · Able to assess, develop, and implement information security programs, including organizational design and key processes. · Knowledge of industry standards and industry frameworks. · Strong interpersonal and communication skills. · Strong PC skills for MS Word, Excel (MS Access and SharePoint are pluses). · Participation in the local Chapter of ISACA and other memberships are also encouraged. · Willingness and ability to travel (both domestic and global) 20 - 30% |
No comments:
Post a Comment