- As part of our Risk Consulting, you will be joining the Digital Risk Consulting Team. Audit team to perform assessments and framework implementations around Operation Security, Business Continuity, IT Application controls, Information Security, Cloud Security, Third Party Risk Management, IT/OT/Cyber/BCM Regulatory Reviews, IT Internal Audit for various clients across the MENA region.
- Working with Digital Risk team, you will also perform IT/IS/OT Risk assessment, IT/IS Governance, ERP reviews and conduct maturity assessment on the client s current IT/IS/OT posture.
- The client base spans across various sectors and includes collaboration with other teams within Consulting services.
- we're looking for Senior Consultant with expertise in IT/IS/OT/BCM Assessments/Framework Implementation to join the Digital Risk team. This is a fantastic opportunity to be part of a leading firm whilst being instrumental in the growth of our service offering.
Your key responsibilities
- Responsible for working with multiple client engagements and teams at a Senior level within the MENA region.
- You can expect to work with high level client personnel to address Information security, IT/OT Security and Business continuity risks.
- You are also expected to perform internal control testing, develop control frameworks, and provide internal audit services in IT/OT/InfoSec space for the MENA stakeholders.
- You will assess the client s current state of internal controls and identify risks and subsequent recommendations.
- Working with client personnel to analyse, evaluate and enhance systems facilitating the business internal control process, and assisting clients and other technology professionals in performing IT/OT control audits, IT/OT security framework development engagements
Skills and attributes for success
- Strong knowledge of industrial control systems (ICS), SCADA systems, and other OT technologies.
- Good understanding of how OT and IT devices interact with each other and how OT devices work.
- Good to have knowledge of regulatory requirements and standards related to ICS/OT security (eg, NIST, IEC 62443) but not mandatory.
- Experience with network security solutions, including firewalls, intrusion detection systems (IDS) etc
- Analytical skills to screen through data and logs to identify the patterns indicative of cyber threats or threat actor methods.
- Effective communication skills for interacting with technical and non-technical colleagues and stakeholders.
- Demonstrating and applying strong project management skills, inspiring teamwork, and responsibility with engagement team members
- Relevant certifications are desirable.
To qualify for the role, you must have
- A bachelors or masters degree
- A minimum of 6-12 years of experience working as Information security professional with IT/IS/OT internal audit background in a professional services firm.
- Excellent communication skills with consulting experience preferred
- A valid passport for travel.
Ideally, you'll also have
- A bachelors or masters degree in B. Tech/ B.E. / B.Sc. / M. Sc. in Computer Applications / Engineering, or a related discipline.
- ISO27001 LA, ISO 22301 LA, ISA 62443 expert, CISA, CISSP, GICSP (anyone certification is desired)