14 sep
|
Sita - Société Internationale De Télécommunications
|
Barcelona
14 sep
Sita - Société Internationale De Télécommunications
Barcelona
Overview
In this role you perform cyber security, IT and privacy audits across SITA’s global procedures, processes, and sites. You’ll prepare factual reports that inform management of risk areas and issues. You work with cross-functional teams to evaluate security controls and governance, driving remediation and assurance across the organization. This is a chance to contribute to risk management at scale within a globally connected aviation ecosystem.
Compensaciones / Beneficios
- Flex Week: work from home up to 2 days/week
- Flex Day: adaptable work arrangements
- Flex-Location: up to 30 days/year location flexibility
- Employee Wellbeing programs (EAP, Champion Health)
- Professional Development and learning platforms
- Competitive benefits
Responsabilidades
- Plan and execute end-to-end cyber security, IT and privacy audits (planning, fieldwork, testing, reporting)
- Apply data-driven and technical audit techniques (configuration reviews, log analysis, vulnerability assessments)
- Assess design, implementation and operating effectiveness of cybersecurity, IT and privacy controls
- Evaluate alignment with frameworks and standards (NIST CSF, ISO 27001, CIS, COBIT,
GDPR, NIS2)
- Identify control gaps and root causes; assess remediation plans
- Ensure compliance with internal policies, regulatory and contractual cyber requirements
- Provide assurance over third-party and supply-chain cyber risk management
- Present audit results to senior management and EMT; track remediation actions with follow-up testing
Requisitos principales
- 3 years of external/internal cyber, IT, and privacy auditing experience
- Experience performing end-to-end audits independently
- Strong understanding of cybersecurity and IT controls
- Experience with technical audit techniques
- Familiarity with ISO 27001, NIST, CIS, COBIT, GDPR, NIS2
- Audit environment background
- Effective communication with senior stakeholders
- effective communication with senior stakeholders
- technical audit techniques (configuration reviews, log analysis, vulnerability assessment)
- Identity & access management (IAM)
- Network and infrastructure security
- Cloud security
- Application security and SDLC
📌 Senior Cyber Security Internal Auditor (Barcelona)
🏢 Sita - Société Internationale De Télécommunications
📍 Barcelona