IT Auditors (Senior/ AM/ Manager), Riyadh Saudi Arabia.


Senior / Assistant Manager / Manager for IT Auditor and Advisor.
Preferably Saudi national.
Preferably can speak Arabic
BS / MS in Computer Science or relevant field.
Relevant certifications preferably CISA, CISSP, CISM, CRISC, ISO 27001, CEH, etc.
Minimum 4 to 8 years of experience.
Preferably in Big4 and/or client facing environment.
The responsibilities of the candidate will include performing moderately complex audits, drafting audit programs,
performing tests using established techniques, methodologies and analyzing control to provide management with
recommendations for improvement. The candidate must have a sound knowledge of IT General Controls,
Application Controls for large ERPs, Business Continuity Management and IT Governance. The candidate should
also be familiar with the leading information security and penetration tools (like nipper, nessus, nmap, metasploit
& etc) and able to understand and evaluate the outputs of the tool.
Other responsibilities will include:
 Defining the scope of the advisory engagements / audits and planning the projects.
 Able to understand different business processes and identify the potential risk.
 Classify and prioritize the risks as per the latest trends and client environment.
 Clear understanding of controls to mitigate the potential risks.
 Executing and performing the test of design and operating effectiveness of the controls.
 Identifying the technical vulnerabilities and weaknesses.
 Develop audit procedures to assess the accuracy of information, the effectiveness of internal controls and
compliance with policies and external regulations.
 Document audit work according to accepted standards and provide the reports to the senior
 Perform reviews of information systems in the areas of general IT controls, application controls, and
information security.
 Sound knowledge of IT governance, risk and compliance.
 Familiar with international standards and guidelines like ISO 27001, ISO 22301, COBIT, ITIL, PCI DSS, NIST,
SANs & etc.
 Other duties as assigned.
