Our client is seeking a meticulous and experienced Senior Cloud Auditor to play a critical role in maintaining the integrity, security, and compliance of their cloud infrastructure and applications. As a Senior Cloud Auditor, you will be responsible for conducting independent assessments of the organisation's cloud environments (e.g., AWS, Azure, GCP), evaluating adherence to internal policies, industry best practices, and relevant regulatory requirements.
You will analyse cloud configurations, access controls, data security measures, and operational processes to identify potential vulnerabilities, inefficiencies, and compliance gaps. This role requires a strong understanding of cloud technologies, security principles, and audit methodologies. You will be expected to document findings clearly, communicate effectively with technical and non-technical stakeholders, and recommend actionable remediation plans.
Responsibilities:
- Plan, execute, and document cloud audits in accordance with established standards and methodologies.
- Assess the design and effectiveness of cloud security controls, including identity and access management, network security, data encryption, and logging/monitoring.
- Evaluate compliance with relevant industry standards and regulatory frameworks.
- Identify and analyze potential risks and vulnerabilities within the cloud environment.
- Develop clear and concise audit reports outlining findings, risks, and recommendations.
- Collaborate with cloud engineering, security, and compliance teams to discuss audit results and track remediation efforts.
- Stay up-to-date on the latest cloud technologies, security trends, and audit best practices.
- Assist in the development and maintenance of cloud security policies and procedures.
Qualifications:
- More than 10 years of experience in IT audit, information security audit, or a related field, with a focus on cloud environments.
- Strong understanding of cloud computing platforms (e.g., AWS, Azure, GCP) and their security services.
- Experience with audit methodologies, risk assessment, and control evaluation.
- Excellent analytical, problem-solving, and communication (both written and verbal) skills.
- Candidates who are strong in cloud infrastructure with strong risk mindset can be considered.
If you are a proactive and detail-oriented professional with a passion for cloud security and compliance, we encourage you to apply.
EA Licence: 16S8091
EA Reg No.: R1656500