
Cloud Security Audit VP
Workday
full-time
Posted on:
Location Type: Hybrid
Location: Knutsford • 🇬🇧 United Kingdom
Visit company websiteJob Level
Lead
Tech Stack
AWSAzureCloudCyber SecurityDockerKubernetes
About the role
- Support the development of audits aligned to the bank’s standards and objectives.
- Collaborate with colleagues, providing accurate information and recommendations.
- Communicate key findings and recommendations to stakeholders, including the Audit Owner, senior managers and directors.
- Identify regulatory news and industry trends/developments to provide timely insight and recommendations for best practice.
- Advise key stakeholders, including functional leadership teams and senior management on functional and cross-functional areas of impact and alignment.
- Manage and mitigate risks through assessment, in support of the control and governance agenda.
Requirements
- Risk and control assessment experience (within an audit or control function responsible for testing driven assurance) covering Cyber Security.
- Expertise in major cloud platforms (AWS, Azure) misconfigurations, vulnerable serverless functions, container escapes (Kubernetes/Docker), cloud storage.
- Experience in developing and executing assurance testing approaches for cloud environments in some of the following areas: data security (including cryptography), security configuration, network security, cyber incident response, vulnerability management, cyber threat management, information risk management, data leakage protection, identity & access management, cyber resilience.
- Exposure to and background knowledge of IT Architecture and a wide range of technology environments including traditional on-premise enterprise environments, cloud and hybrid environments.
- Knowledge of new and emerging technology, cyber security, and cyber resilience risks.
- Relevant professional qualifications (e.g. CISA, CISM, CISSP or other relevant technical qualification; and/or relevant graduate degree).
- Practical understanding of relevant regulatory environment.
- Working knowledge of cyber security frameworks or standards (e.g. NIST, CIS, ISO).
Benefits
- Health insurance
- Flexible working arrangements
- Professional development opportunities
- Employee recognition programs
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
risk assessmentcontrol assessmentcloud securitydata securitycyber incident responsevulnerability managementidentity & access managementcyber resilienceIT architectureassurance testing
Soft skills
collaborationcommunicationstakeholder managementrecommendation developmentrisk management
Certifications
CISACISMCISSPrelevant graduate degree