A staffing solutions provider is seeking an experienced ISO 27001 Lead Auditor based in Pasig City. This role involves collaborating with clients to develop detailed audit plans, conducting ISO 27001 audits, and reviewing documentation to ensure compliance to standards. Candidates should have a Bachelor's degree in a related field, a minimum of three years of auditing experience, and a solid background in Information Security. The position requires full onsite work and some travel for client audits within the ASEAN region.
Qualifications
Minimum of 3 years experience as a lead IT auditor, with at least 3 years specifically in ISO 27001 audits.
4 to 5 years of experience in Information Security.
ISO 27001 Lead Auditor certification is preferred.
On-site Pasig work with travel within the Philippines/ASEAN region.
Responsibilities
Collaborate with clients to develop detailed audit plans and schedules.
Conduct ISO 27001 audits to evaluate effectiveness of security controls.
Review client documentation to ensure compliance with ISO 27001 standards.
Perform on-site audits, including inspections of security processes.
Document audit findings and prepare reports with recommendations.
Provide expert advice on enhancing information security management systems.
Communicate audit results clearly to client management.
Skills
Information Security
ISO 27001 Audits
Risk Assessment
Client Communication
Education
Bachelor degree in Information Security, Cybersecurity, IT Management or related field
Job description
About the job ISO 27001 (ISMS) Lead Auditor - Pasig City
About the Role:
Additional allowance of 6,000 PHP covering rice, laundry, uniforms, and personal transportation
15 days of vacation leave (VL)
15 days of sick leave (SL)
Birthday leave
HMO coverage with a maximum benefit limit of 205,000 PHP
Actual cost reimbursement for business travel expenses
Accommodation provided during projects or out-of-base visits
Retirement benefits available for employees with at least 10 years of service
Responsibilities
Collaborate with clients to develop detailed audit plans and schedules, aligning with their specific information security goals and needs.
Conduct ISO 27001 audits to evaluate the effectiveness of information security controls and practices within client organizations.
Review client documentation, including policies, procedures, risk assessments, and records, to ensure compliance with ISO 27001 standards.
Perform on-site audits at client locations, including interviews with staff and inspections of security processes and systems.
Document audit findings, identify non-conformities, and highlight areas for improvement, then prepare comprehensive reports with actionable recommendations.
Provide expert advice to clients on enhancing their information security management systems and attaining ISO 27001 certification.
Communicate audit results and recommendations clearly to client management and staff, addressing any questions or concerns.
Requirements
Bachelor degree in Information Security, Cybersecurity, IT Management, or a related field
Minimum of 3 years experience as a lead IT auditor, with at least 3 years specifically in ISO 27001 audits
4 to 5 years of experience in Information Security
Consideration will be given to accounting graduates with at least 5 years of IT audit experience plus ISO 27001 Lead Auditor certification
Full onsite work in Pasig, with willingness to travel for client audits within the Philippines and the ASEAN region