IT Security Audit and Compliance Specialist
Confidential Company
Multiple VacanciesEmployer Active
Posted 6 hrs ago
Send me Jobs like this
Experience
10 - 16 Years
Education
Bachelor of Technology/Engineering(Computers)
Nationality
Any Arab National, Any GCC National, Any European National
Gender
Any
Vacancy
4 Vacancies
Job Description
Roles & Responsibilities
Job Summary.
The IT Security Audit and Compliance Specialist plays a critical role in maintaining the organization’s cybersecurity and data protection posture. This role involves developing, executing, and maintaining robust audit programs to ensure compliance with internal policies, regulatory requirements, and industry standards, particularly within the healthcare sector.
Job Responsibilities-
Develop and manage a comprehensive security audit program to ensure thorough coverage across all business units.
Oversee cybersecurity, data protection, and privacy compliance across healthcare entities, insurance providers, and partners.
Conduct regular compliance maturity assessments and reviews to track progress and posture improvement.
Plan, coordinate, and execute security audit activities across departments.
Define audit scopes, objectives, and develop tailored audit work plans and test procedures.
Conduct audits on critical systems and applications to validate security and compliance effectiveness.
Ensure alignment with legal, regulatory, and contractual compliance obligations.
Build and maintain a comprehensive controls matrix mapped to relevant frameworks such as ISO, NIST, HIPAA, etc.
Prepare detailed audit findings, compliance reports, and progress updates for senior management.
Identify compliance risks related to key business initiatives and recommend mitigation measures.
Monitor internal compliance efforts, including IT system reviews, vulnerability scans, and mandatory training programs.
Prepare and submit timely audit documentation, findings, and evidence.
Schedule and conduct periodic audits across systems, networks, and applications, including Azure Cloud, O365, IAM, and PAM environments.
Monitor Data Loss Prevention (DLP) compliance and follow up with responsible teams for remediation.
Collaborate with IT operations and business units to ensure timely resolution of non-compliance issues and vulnerabilities.
Provide recommendations to address and mitigate identified critical risks.
Liaise with external and internal audit teams and ensure all evidence and documentation are prepared and submitted promptly.
Work with business units (Finance, HR, Projects, etc.) to gather inputs necessary for audits.
Track and ensure timely closure of audit findings and implementation of recommendations.
Monitor the resolution of prior audit issues to ensure continuous improvement.
Desired Candidate Profile
Job Requirements-
Bachelor’s degree in Information Technology, Cybersecurity, or a related field; with continued professional development in auditing or compliance.
10+ years of experience in IT security audits, risk assessment, and regulatory compliance.
Strong knowledge of cybersecurity standards and frameworks (e.g., ISO 27001, NIST, GDPR, HIPAA, etc.).
Experience conducting audits in cloud environments (e.g., Azure), and enterprise systems such as IAM, PAM, and Office 365.
Skilled in compliance monitoring tools, audit planning, and reporting.
Strong analytical, problem-solving, and communication skills.
Experience working in or auditing healthcare environments is preferred.
Employment Type
- Full Time
Company Industry
- Pharma
- Biotech
- Clinical Research
Department / Functional Area
- IT Software
Keywords
- IT Security
- Risk Assessment
- Risk Management
- GRC
- GDPR
- ISO 27001
- HIPAA
- NIST
- Azure
- Cyber Security
- IAM
- PAM
Disclaimer: Naukrigulf.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@naukrigulf.com
Confidential Company
Similar Jobs
Security Analyst
Dicetek LLC
- 5 - 10 Years
- Dubai - United Arab Emirates (UAE)
Information Security Data Protection Consultant
Dicetek LLC
- 5 - 10 Years
- Sharjah - United Arab Emirates (UAE)
Information Security Engineer
SUNDUS MANAGEMENT CONSULTANCY & STUDIES BUREAUL.L.C
- 3 - 6 Years
- Dubai - United Arab Emirates (UAE)
Governance Risk and Compliance Specialist
SUNDUS MANAGEMENT CONSULTANCY & STUDIES BUREAUL.L.C
- 5 - 10 Years
- Abu Dhabi , Ajman - United Arab Emirates (UAE)
Security Operations Officer
Starlink WLL
- 8 - 15 Years
- Doha - Qatar