drjobs
GRC Consultant
drjobs GRC Consultant English

صاحب العمل نشط

1 وظيفة شاغرة
drjobs

حالة تأهب وظيفة

سيتم تحديثك بأحدث تنبيهات الوظائف عبر البريد الإلكتروني
Valid email field required
أرسل الوظائف
drjobs drjobs drjobs
drjobs drjobs
drjobs

حالة تأهب وظيفة

سيتم تحديثك بأحدث تنبيهات الوظائف عبر البريد الإلكتروني

Valid email field required
أرسل الوظائف

موقع الوظيفة

drjobs

المنامة - البحرين

الراتب الشهري

drjobs

لم يكشف

drjobs

لم يتم الكشف عن الراتب

عدد الوظائف الشاغرة

1 وظيفة شاغرة

الوصف الوظيفي

Job Number: GRC#

Job Type: Full Time

Location: Bahrain

Category: Technology Advisory

Grant Thornton Bahrain is expanding their IT GRC practice and look to hire candidates at Senior Consultant and Consultant levels. As an integral member of the IT Advisory team reporting to the responsibility of the GRC team is to carry out the engagements related to policy compliance security requirements governance as well as risk management.

The ideal candidate will have knowledge of risk management security and privacy practices and be an effective communicator both written and verbal.

Responsibilities include:

  • Lead and/or execute GRC engagements and IT audits.
  • Review and/or prepare project deliverables.
  • Point of contact for the client during the engagement execution.
  • Develop and participate in implementation of client initiatives focused on the reduction of technology risk governance and compliance to policies and external regulatory compliance.
  • Evaluate business and IT risks.
  • Audit IT organizations IT processes and IT systems against regulations standards and good practices such as COBIT and ITIL.
  • Develop IT security standards procedures and controls to manage risks. Improve clients security positioning through process improvement policy automation and the continuous evolution of capabilities.
  • Evaluation information security threats and their impact clients IT environment.
  • Support the senior team members assist with the analysis of requirements and design of clients information security posture as well as Legal Regulatory and Scheme security requirements.
  • Support the senior team members in delivery of work streams for clients in compliance standards such as PCI DSS ISO27001 EU GDPR and Bahrain PDPL and incident management disciplines.
  • Perform and investigate internal and external information security risk and exceptions assessments.
  • Assessing incidents vulnerability management scans patching status secure baselines penetration test result phishing and social engineering tests and attacks.
  • Document and reporting control failures and gaps to stakeholders. Provides remediation guidance and prepares management reports to track remediation activities.
  • Stay current on best practices and technological advancements and acts as a technical resource for security assessment and regulatory compliance.
  • Perform other related duties as assigned from time to time based on the business requirements.
  • Knowledge of virtualization and cloud computing would be essential.

Skills:

  • Understanding of ISO 27001 PCI DSS ITIL ITSM COBIT ISO 3100 NIST standards and frameworks preferred.
  • For GRC role hands on experience on VA tools e.g. Nessus Qualys etc would be an advantage.
  • Experience of risk management principles and associated methodologies
  • Ideally will have a CEH/ ISO 27001 ISMS/ ISO 22301 BCMS/ CISA/ COBIT/ CISM qualification.
  • Proven ability to make sound pragmatic decisions and judgements under tight timelines.
  • Strong interpersonal and influencing skills with the ability to influence and drive change in a collaborative way both internally and externally.

Essential requirements:

  • Senior Consultant: 3 years experience in IT Governance Risk & Compliance.
  • Consultant: 12 years experience in IT Governance Risk & Compliance.
  • Ability to work in a fastpaced highpressure atmosphere by being attentive and having a strong eye for details.
  • Strong leadership and personnel management skills.
  • Exceptional client service along with the ability to develop excellent client relationships.
  • Good at meeting deadlines and solving problems.
  • Good communication skills both verbal and written (English is a must; Arabic will be a plus.

Remote Work :

No

نوع التوظيف

دوام كامل

نبذة عن الشركة

الإبلاغ عن هذه الوظيفة
إخلاء المسؤولية: د.جوب هو مجرد منصة تربط بين الباحثين عن عمل وأصحاب العمل. ننصح المتقدمين بإجراء بحث مستقل خاص بهم في أوراق اعتماد صاحب العمل المحتمل. نحن نحرص على ألا يتم طلب أي مدفوعات مالية من قبل عملائنا، وبالتالي فإننا ننصح بعدم مشاركة أي معلومات شخصية أو متعلقة بالحسابات المصرفية مع أي طرف ثالث. إذا كنت تشك في وقوع أي احتيال أو سوء تصرف، فيرجى التواصل معنا من خلال تعبئة النموذج الموجود على الصفحة اتصل بنا