Key purpose:
CIS18 analysis gap analysis against and implementation of relevant data sources to meet control requirements within Africa. There are 12 countries that are applicable within the scope.
This information will be further displayed on a dashboard as a barometer of how well the security controls are being satisfied.
Duties and responsibilities:
- Collaboration facilitation and coordination of Technology Operation teams Compliance team and Solution Managers within the 12 countries
- Identifying the relevant IT tools and applications required to satisfy data requirements
- Identify specifically which data within the tools are required to meet the control requirements
- Gap analysis between the existing Minimum Internal Controls (MICS) framework and that of the CIS18 controls
- Incorporate improvements where there are no gaps
- Prioritize the gaps using a riskbased approach
- Data analysis of source data to ensure control requirements are satisfied
Qualifications and experience:
- Bachelors degree in Computer Science Information Systems or a related field required
- 5 years Internal Audit/External Audit experience
- 3 years controls implementation experience
- 2 years of CIS Critical Security Controls experience
- 3 years project management experience
- Cybersecurity Certifications and CISA Certification preferred
- Expert level Excel experience for data analysis
- IT Controls experience (mandatory)