Language Requirements: Fluency in Arabic & English (written and spoken).
We are seeking a highly skilled Cybersecurity Auditor for a 6-week engagement to conduct a comprehensive cybersecurity audit aimed at evaluating and strengthening existing security controls and frameworks. The audit will focus on key areas such as access controls, incident response readiness, data protection, network security, third-party risk management, and cloud security. A core objective is to assess compliance with ISO 27001 and enhance cyber resilience in preparation for future certifications and compliance requirements.
Key Requirements
Proven experience in cybersecurity audits, vulnerability assessments, and penetration testing.
Strong expertise in ISO 27001 standards, with a track record of assessing and enhancing compliance frameworks.
Deep knowledge of cybersecurity frameworks such as NIST and other industry best practices.
Experience in identifying security gaps, assessing risks, and providing actionable remediation plans.
Strong analytical and reporting skills, with the ability to deliver comprehensive audit findings and strategic recommendations.
Preferred Qualifications
Previous experience in the Oil & Gas industry.
Other Qualifications
Excellent communication skills to engage with IT, security teams, and executive leadership.
Ability to work independently and lead structured audits within tight deadlines.
Strong problem-solving skills with a proactive approach to cyber risk mitigation.
Experience in preparing and presenting audit reports, compliance documentation, and risk assessments.
Key Responsibilities
Conduct a cybersecurity audit focusing on access controls, data protection, network security, and third-party risk management.
Assess the organization's compliance with ISO 27001 standards, identifying gaps and areas for improvement.
Evaluate cybersecurity frameworks and controls using NIST, CIS Controls, and other industry best practices.
Test security vulnerabilities through penetration testing and vulnerability assessments, providing remediation strategies.
Review cloud security and remote access policies to ensure robust protection against cyber threats.
Deliver a comprehensive audit report, including findings, risk assessments, and strategic recommendations for enhancing cyber resilience.