Job Description
The role of the IT Risk and Audit Manager is to analyze if sufficient controls have been appropriately designed and implemented effectively in order to reach management’s objectives.
Within the Group Assets and Risks department, you will be part of the IT Risk and Audit team, covering the management of risks for IT Management, Infrastructure, Operations, Development, Cyber and Information Security activities for the North and South American regions.
Your primary area of expertise will be to contribute local risks assessments in these areas.
Essential Duties and Responsibilities :
Build the Regional Group Service Centre for IT Risk and Audit.
Preparing work programs (audit scope or risk assessments) in relation to the specific areas to be evaluated,
Executing risk and audit assessments in accordance with professional standards, at all levels of the Organization : Central Services, Regional Infrastructure, Laboratories within the assigned region
Perform penetration testing.
Making relevant recommendations to initiate improvements in the Eurofins governance, process control, and risk reduction
Verbally communicating results in a clear and problem-solving manner,
Producing clear and quality reports to formally communicate audit results to management,
Follow-up the implementation of agreed action plans
Maintain professional relationship with internal stakeholder and partners (IT and business)
Qualifications
Required Professional Expertise :
Master’s degree in Information Technology or any other relevant
Proven experience of at least 6 to 10 years in performing roles in Information security and / or in related Control Functions or carrying out Information systems and security audits, either as an internal or external auditor.
Professional certification or commitment to obtain one CISA, CISM, CISSP etc)
This position requires a structured candidate with self-confidence and negotiation skills, having the ability to challenge established processes and practices.
Results oriented
High level of energy, drive and passion to succeed
Very structured with strong organizational skills
Able to build relationships in a constructive manner
Can influence, constructively challenge and negotiate at all levels
Ability to work in an autonomous manner
Excellent writing skills in English
International profile, open to travel within his / her region
Technical Skills :
Very good knowledge and understanding of the Risk Management and / or Audit processes
Very good knowledge and understanding of IT processes, IT development and / or cyber / information security controls