Job Description
ECCO Gulf Majorel Qatar is seeking an experienced IT Auditor Specialist to join our dynamic team in Qatar. As an IT Auditor Specialist, you will play a crucial role in ensuring the integrity and security of our IT systems and processes. You will be responsible for conducting thorough audits, identifying potential risks, and providing recommendations for improvements. This is a full-time, permanent appointment that requires a professional with a keen eye for detail and a strong understanding of IT systems and controls.
- Conduct comprehensive IT audits to evaluate the effectiveness of internal controls and compliance with regulations.
- Identify and assess potential risks in IT systems and processes.
- Lead and execute audits of IT systems, infrastructure, and business applications, particularly in relation to Trust Services Frameworks and similar control structures.
- Review the design and operational effectiveness of technical and administrative controls, including access management, encryption, incident response, and system logging.
- Evaluate Trust Service Providers (TSPs) or equivalent environments, ensuring compliance with defined audit criteria, regulatory requirements, and best practices.
- Perform risk assessments and gap analyses to identify vulnerabilities, misconfigurations, and control weaknesses within IT environments.
- Develop and maintain audit programs, test plans, and working papers in accordance with ISACA and IIA standards.
- Analyze complex audit data, identify root causes of non-compliance or control failures, and provide actionable recommendations to mitigate risks.
- Draft detailed audit reports, including findings, risk ratings, and remediation recommendations, tailored to technical and executive audiences.
- Collaborate with IT, cybersecurity, compliance, and business teams to track corrective action plans and validate their effectiveness.
- Provide guidance and contribute to the development of internal audit methodologies, policies, and control frameworks.
- Stay current with emerging technologies, audit methodologies, and regulatory changes affecting digital trust and IT compliance.
- Participate in external audit coordination, regulatory inquiries, and certification efforts, ensuring that internal practices align with third-party expectations.
- Support management in incident investigations, policy development, and the enhancement of internal control environments.
- Perform any other related duties or special projects as assigned by leadership.