Reporting to the Technical Manager, you will be responsible for conducting 3rd party audits in areas of ISO 27001:2013 Information Security Management System. We welcome candidates who are keen to take up regional exposure and the following key responsibilities.
Key Responsibilities:
Responsible for planning, performing and complete client audits for Information Security management system certification schemes – ISO 27001:2013.
Coordinate internal and external communication regarding client management needs such as audit planning, and amendments to client database information.
Apply knowledge of business improvement techniques, when auditing client organization
Provide customer focus and value-added auditing to the clients
Actively maintain and monitor to ensure achieving relevant audit performance indicators (including lead time, rejection rate and competence development).
Qualifications
Key Requirements:
Minimum a Diploma / Bachelor’s Degree in any Engineering discipline. IT / computer science related background is preferable.
At least 4 years full-time work experience in the area of information technology (thereof at least 2 years in information security).
Good written and spoken English, and good communication skills in reporting and professional presentation.
Confidence in dealing and communicating with all levels of a business from Executives to operational levels.
Excellent time management and prioritization skills. In-depth experience across a broad range of industries will also be seen as a definite advantage.
Has attended and passed ISO 9001:2015 or ISO 27001:2013 Lead Auditor course (IRCA/CQI approved training or similar).
Has qualification as Lead Auditor in ISO 27001 or ISO 9001 from recognized Certification Body would be an added advantage.
Frequent travel for audit is required, including at remote areas or overseas.