
Cybersecurity Auditor
Posted Sep 29

Posted Sep 29
This is a fully remote position, open to applicants in Brazil.
• Conduct risk-oriented audits by establishing objectives and assessing processes along with associated risks.
• Create and execute control testing procedures.
• Evaluate the effectiveness of controls in mitigating risks.
• Convey impacts on objectives clearly.
• Formulate actionable recommendations.
• Generate final reports detailing control effectiveness for each identified risk.
• Share issues, risks, and technical details to both technical and non-technical audiences.
• Lead teams of IT auditors during assigned audit projects.
• Perform or assist with cybersecurity audits, security evaluations, risk assessments, and compliance tasks.
• Collaborate with controls, processes, and security settings across various areas including change management, incident response, access control, patch management, API security, inventory, vulnerability management, operational security, database security, and risk oversight.
• Evaluate authentication and authorization mechanisms, secure configurations, data integrity and protection measures, business continuity strategies, and disaster recovery plans.
• Over 5 years of professional experience in Information Technology, Cybersecurity, Information Security, Technology Risk, IT Operations, Application Development, Cloud Technologies, or a similar technical domain.
• Proven experience in Cybersecurity, SOX compliance, Risk Management, or IT auditing.
• In-depth understanding of Cybersecurity laws, regulations, and standards.
• Knowledge of COBIT, ISO 27001/27002, NIST, COSO, and general security practices.
• Capability to perform risk-based audits and effectively report on control effectiveness.
• Strong expertise in cybersecurity processes and concepts, including incident response strategies, secure software development, security governance, cloud computing, SDLC, third-party risk management, penetration testing, vulnerability management, disaster recovery, segregation of duties, audit logging, physical security, access management, and configuration management.
• Experience in conducting or assisting with cybersecurity audits, security assessments, risk evaluations, or compliance activities within a large or global organization.
• Exceptional time management abilities.
• Proficient in articulating issues, risks, and technical information clearly and professionally in English to both technical and non-technical stakeholders.
• At least one relevant professional certification, such as CISA, CISM, CISSP, or PCIP.
• Preferred: Over 7 years of professional experience in relevant technology governance and assurance roles.
• A bachelor’s or master’s degree in information security, Information Systems, Computer Science, or a related discipline is preferred.
• Preferred additional professional certifications, such as CISA, CISM, CISSP, PCIP, Security+, or CC.
• Flexible and supportive work environment.
• Well-being assistance through Be Well programs.
• Comprehensive financial, mental, physical, and social health initiatives.
• Customized development objectives and ongoing feedback.
• Opportunities for certifications with Microsoft, Google, and Amazon.
• Coaching and practical learning experiences.
• Access to state-of-the-art learning opportunities.
• Employee referral program.
Integrity360
Rackspace Technology
Efficient Computer
Presidio
Get handpicked remote jobs straight to your inbox weekly.