Job Description
Manager/ Senior Manager IT Audit

Job Summary:

  • The successful candidate will play a key role in assessing and enhancing the effectiveness of IT governance, cybersecurity controls, technology risk management and digital resilience across the Group.
  • This role will provide independent assurance and practical insights into key technology and cyber risks, while working closely with stakeholders across the business and IT functions. The position will also contribute to the continuous enhancement of IT audit practices through the use of data analytics, AI, automation and continuous auditing techniques.
  • The ideal candidate is a strong technology and cybersecurity professional with sound audit and risk management experience, excellent analytical capabilities, and the ability to translate complex technology risks into practical recommendations for management.

 

Responsibilities:

  • Lead and execute IT and cybersecurity audits across the Group, including planning, fieldwork, evaluation of controls and reporting.
  • Assess the effectiveness of cybersecurity controls, IT governance, cloud security, ERP systems, IT infrastructure and operational technology (OT).
  • Evaluate key technology and cybersecurity areas, including identity and access management, network security, endpoint protection, vulnerability management, incident response, disaster recovery and third-party cyber risk.
  • Provide assurance on compliance with internal policies, regulatory requirements and recognised cybersecurity frameworks and standards.
  • Leverage data analytics, AI, automation and continuous auditing techniques to enhance audit coverage, efficiency and effectiveness.
  • Develop and continuously enhance IT audit methodologies, audit programmes, risk assessment approaches and cybersecurity assurance practices.
  • Prepare clear and insightful audit reports, highlighting key risks and providing practical and value-adding recommendations to strengthen cybersecurity, IT governance and technology risk management.
  • Monitor emerging cyber threats, AI developments and evolving technology risks to support risk-based audit planning and identify emerging areas of concern.
  • Engage and collaborate with key stakeholders across the Group and provide advisory insights on cybersecurity, technology and digital risk initiatives.
  • Support the continuous improvement of the Group’s technology risk and cybersecurity assurance framework.

 

 

Requirements:

  • Bachelor’s Degree in Information Technology, Computer Science, Cybersecurity, Information Systems or a related discipline.
  • Minimum 10 years of relevant experience for the Senior Manager position or 6 years for the Manager position in IT Audit, Cybersecurity, IT Risk, IT Consulting or Information Technology.
  • Professional certification such as CISA is preferred. Other relevant cybersecurity, IT risk or audit certifications will be an added advantage.
  • Strong knowledge and practical understanding of cybersecurity, cloud computing, IT governance and technology risk management.
  • Experience in data analytics, AI, audit automation or continuous auditing will be an added advantage.
  • Strong analytical, problem-solving, communication and stakeholder management skills.
  • Self-motivated, proactive and able to work independently as well as collaboratively across different functions and levels.
  • Willingness to travel within Malaysia and Indonesia when required.
Apply Now

Have Questions In Mind?
Contact us