2024.11 JD - IT GRC and CyberSecurity Consultant-3

Download as docx, pdf, or txt
Download as docx, pdf, or txt
You are on page 1of 4

Position Title : IT GRC AUDITOR AND CYBERSECURITY

CONSULTANT
Position Type : Full Time Employment
Schedule : US Eastern Standard Time
Arrangement : Remote work set-up, Dedicated to 1 client

ABOUT THE CLIENT:

Our client is a US-based consulting & staffing firm specializing in AI


Governance, AI Risk Management, Cyber Security, IT Compliance and
Privacy. They have been in the industry for more than 15 years and has been
providing consulting services to different big industries in United States.

ABOUT THE ROLE:

They are seeking for an experienced and detailed-oriented Audit and Cyber
Security Consultants to work along-side their US-based Client Service
Delivery Team and their US Based clients: IT Executives and Security
Professionals. This role will work closely with the clients to conduct
information security assessments, IT GRC audits and IT security and advisory
projects.

In addition, we encourage and will support you if you want to put the time in
to learn about AI risk management and AI governance would be ideal
candidate as well. You will play a pivotal role in our organization’s efforts to
enhance clients’ cybersecurity resilience and compliance efforts.

WHAT YOU’LL DO:

 Support our US-based Client Service Delivery team by conducting


information security assessments, IT GRC audits and IT security and
advisory projects
 Engage and communicate with our US-based clients via video
conference calls, emails and written reports and client deliverables. A
strong command of the English language (both written and spoken) is
a must
 Reporting action items, roadblocks, and other tasks during projects to
managers and clients – must possess the ability to articulate complex
issues in a simple and easy to understand manner
 Effective time management skills, proactively communicate tasks you
are working on by updating your task list
 Proactively communication with your manager when tasks are taking
longer than budgeted, ask clarifying questions and be proactive to
ensure you understand the tasks assigned to you and you feel
confident you can get things done in the assigned budget
 Assist in developing client deliverables, including information security
policies, client request lists, designing audit test plan, documenting
audit test results, identifying, articulating and tracking findings and
preparing final audit reports
 Use problem solving and critical thinking skills to quickly identify
internal control deficiencies, evaluate their risk implications, and draw
the appropriate conclusions
 Conduct specialized IT GRC frameworks audits and assessments (e.g.
ISO 27001, HITRUST, HIPAA, NIST etc.)
 Identify and communicate findings, recommendations and apply
critical thinking to provide creative and pragmatic solutions that drive
project progress effectively
 Conduct comprehensive cyber security audits and risk assessments by
evaluating information security policies, procedures, and controls
 Utilize industry and security knowledge to help clients identify
vulnerabilities, weaknesses, gaps in controls and potential threats in
order to translate into language understandable to the client and
actionable for remediation
 Participate in project planning by collaborating with clients and our
teams to refine cyber security solutions and implement governance
and compliance frameworks
 Demonstrate professional client management skills by building and
maintaining relationships with US based clients
 Build and nurture positive working relationships with clients and
coworkers, by providing high quality deliverables and communications
 Exercise professional skepticism, judgment and adhere to the code of
ethics while on engagements
 This role will report directly to the respective Client Service Delivery
Manager

WHAT YOU NEED TO GET HIRED:


 2-4 years of experience working with IT internal audit, risk and/or IT
departments and performing readiness assessments or audits of
business and IT functions
 Experience performing IT frameworks audits and IT risk assessments
(e.g. ISO 27001, HITRUST, HIPAA, NIST, etc.)
 Demonstrated experience in one or more areas of cybersecurity such
as network security, identity and access management, threat
intelligence, cloud security, GRC.
 Demonstrated ability to manage multiple projects simultaneously and
experience scoping, planning, and executing projects autonomously.
 Strong experience with regulatory and compliance standards (e.g.,
NIST, ISO 27001/2/17/18/ 27701, SOC 1, SOC 2, SOX, HITRUST, HIPAA,
PCI etc.)
 Awareness of or demonstrated willingness to learn about AI
Governance frameworks, specifically ISO 42001, is a plus
 Ability to work during U.S. business, time zones (9-6PM)
 Experience working for a U.S. based IT consulting firm (preferred)
 Education and professional credentials
 Bachelor's degree (in Management Information Systems,
Information Technology, Computer Science, Accounting, Business
Administration).

Preferred but not required:


 “Big 4” consulting experience in various industries
 Certification as CISSP, CCSK, CISA, and/or CISM preferred
 Familiarity with the following technologies (and demonstrated ability to
learn):
 All Microsoft O365 products – including Teams & Sharepoint
 Use of AI search engines to expedite tasks
 Project Management tools like Monday, Base Camp, etc.
 Experience working with or demonstrated willingness to learn how
to use compliance management tools (Control Map, Drata, Vanta,
etc.

WHAT WE CAN OFFER:

 Basic Salary Range: 100,000 PHP – 110,000 PHP


 Fixed Allowance: 5,000 PHP
 Night Shift Differentials: 20% for works schedule within 10PM-6AM
PhT
 Government Benefits:
 SSS
 Philhealth
 Pag-ibig
 Other Benefits:
 13th Month Pay
 15 PTO Credits upon regularization with 5 convertible to cash
 HMO coverage with 200K MBL per illness per year and 2 free
dependents

ABOUT OUR COMPANY

Global ZenTech is a vibrant and innovative B2B solutions and service


provider, specializing in end-to-end talent sourcing, employee management,
and staffing solutions. We are dedicated to delivering comprehensive HR
services tailored to the unique needs of each business we partner with. Our
diverse range of offerings is designed to help organizations meet their talent
acquisition goals, optimize staffing strategies, and provide insightful HR
consulting.

At Global ZenTech, we pride ourselves on creating a dynamic work


environment that fosters growth and innovation. We believe in empowering
our employees to excel and contribute to our mission of providing
exceptional talent solutions. Join us and be a part of a team that values
collaboration, creativity, and professional development, while making a
tangible impact on businesses worldwide.

You might also like