IT & Cybersecurity Consultant - Internal Audit Dicetek LLC

Posted on 23 Feb

Experience

10 - 15 Years

Education

Bachelor of Business Administration(Management), MBA/PG Diploma in Business Mgmt(Information Technology)

Nationality

Any Nationality

Gender

Any

Vacancy

1 Vacancy

Job Description

Roles & Responsibilities

  • IT & Cybersecurity Audit Planning

  • Contribute to the development of risk-based audit plans covering IT and cybersecurity domains.

  • Perform technology risk assessments across infrastructure, applications, data, cloud environments, and third parties.

  • Identify priority areas such as SOC operations, identity and access management, data protection, and business continuity.

  • Audit Execution & Fieldwork

  • Conduct IT systems and cybersecurity audits in line with approved methodologies and best practices.

  • Evaluate the effectiveness of IT General Controls (ITGC) and application controls.

  • Review cybersecurity controls including access management, encryption, monitoring, vulnerability management, and incident response.

  • Assess cloud environments, managed services, and outsourced SOC arrangements.

  • Regulatory & Standards Compliance

  • Verify compliance with national regulations and government policies

  • Assess alignment with international standards such as ISO/IEC 27001, ISO/IEC 27035, and ISO 22301.

  • Review organizational readiness for external audits and certifications.

  • Third-Party & Service Provider Assurance

  • Audit outsourcing arrangements including SOC-as-a-Service, data centers, and cloud providers.

  • Review SLAs, confidentiality obligations, and independent assurance reports (SOC 1/2).

  • Validate service providers’ compliance with contractual and regulatory requirements.

  • Incident Management & Business Continuity

  • Review cybersecurity incident management, response, and investigation processes.

  • Evaluate integration between incident response, business continuity, and disaster recovery plans.

  • Participate in or assess readiness through tabletop exercises and simulations.

  • Reporting & Communication

  • Prepare clear and actionable IT audit reports with technical observations, root cause analysis, risk ratings, and recommendations.

  • Discuss findings with IT, cybersecurity teams, and senior management.

  • Escalate critical issues to Internal Audit management and Audit Committees as required.

  • Follow-up & Control Improvement

  • Track remediation actions and validate the effectiveness of corrective measures.

Provide practical recommendations to enhance cybersecurity maturity and IT governance.

  • Support continuous improvement of control environments.

  1. Advisory Services

  2. Provide advisory input for digital transformation initiatives, cloud adoption, and smart government systems.

  3. Review risks and controls during design and implementation phases of major IT projects.

  4. Support data governance and AI governance initiatives from an assurance perspective.

  5. Professionalism & Independence

  6. Adhere to approved professional conduct and government ethics requirements.

  7. Maintain confidentiality, independence, and objectivity in all engagements.

  8. Keep abreast of evolving cyber threats, technologies, and regulatory developments.

Desired Candidate Profile

  • Possess a Bachelor's or Master's degree in Information Technology, Cybersecurity, or a related field.
  • Hold relevant certifications such as CISSP, CISA, CISM, or CRISC, demonstrating a commitment to professional development and expertise.
  • Have at least 5 years of experience in IT audit, cybersecurity consulting, or a related role, with a focus on internal audit.
  • Demonstrate a strong understanding of industry-standard security frameworks, such as NIST, ISO 27001, and COBIT.

Employment Type

    Full Time

Department / Functional Area

Keywords

  • IT Audit
  • Internal Audit
  • Risk Assessment
  • Compliance
  • Cybersecurity Audit Consultant
  • Cybersecurity
  • Control Testing
  • Vulnerability Assessment

Dicetek LLC

Dicetek is a global IT Solutions and Services Company established in 2006 with its corporate headquarters in Singapore. We continue to expand our global network while providing value-added cost-effective consulting services to our clients. DICETEK has operational offices in India, UAE, Singapore & USA. As a world-class company with a regional focus, we primarily concentrate on providing Information Technology Solutions and Professional Consulting Services, across different verticals like Banking & Financial Services, Telecom, Government, Oil & Gas, Logistics, Supply Chain, Real Estate & Manufacturing. We have a solid reputation in the technology industry for providing excellent services to our clients. Our values are represented by our integrity, thought leadership, and commitment to maintaining a high-level of excellence in the constantly evolving world of Information Technology.

Read More

Rizwana Ashfaq Ashfaq - Manager- Talent Acquisition

Office No. 307 - 3rd Floor, New Century Tower, Port Saeed Road,Opp. Deira City Centre, Dubai - United Arab Emirates., Dubai, United Arab Emirates (UAE)

https://www.dicetek.net