IT Auditor
Join a team that thrives on growth, purpose, and collaboration.
At Zampa Partners, we believe in going further together. We’re an advisory firm where curious minds grow with purpose and where your impact matters from day one.
We are seeking an experienced and dynamic IT Auditor. As part of our Internal Audit Department Cybersecurity, Risk and Technology Advisory team, you will support clients across various industries in strengthening their cybersecurity governance, regulatory compliance and operational resilience.
What you’ll be doing:
• Conducting IT and cybersecurity audits and assessments, including:
o User Access Management (UAM) reviews
o Information Security assessments
o ICT Risk Management assessments
o Business Continuity and Disaster Recovery (BCP/DR) reviews
o Third-Party Risk assessments
o Cybersecurity maturity assessments
o Regulatory gap analyses
• Supporting vCISO engagements by assisting with:
o Information security policy development and maintenance
o Risk identification, assessment and treatment
o Incident management and post-incident reviews
o Security governance and reporting
o Control design and implementation
o Security awareness initiatives
What you’ll bring to the role:
We are looking for a cybersecurity governance professional with a strong understanding of technology risks, regulatory requirements and information security best practices:
• 2-4 years of experience in cybersecurity governance, IT audit, risk management or information security.
• Experience performing IT audits or cybersecurity assessments in one or more of the following areas:
o User Access Management (UAM)
o Information Security
o ICT Risk Management
o Business Continuity and Disaster Recovery
o Third-Party Risk Management
o Cloud Security
• Good understanding of cybersecurity regulations and frameworks, including:
o DORA
o NIS2
o MiCA
o ISO/IEC 27001
o NIST Cybersecurity Framework
o CIS Controls
• Experience in one or more of the following domains:
o Cybersecurity governance
o Risk management
o Vulnerability management
o Network security
o Security operations
o Compliance and regulatory assessments
Technical Skills:
• Strong Microsoft Office skills, particularly Excel, Word and PowerPoint.
• Familiarity with GRC tools and security management platforms is considered an asset.
• Understanding of networking concepts, security controls and enterprise IT environments.
• Professional Certifications are an advantage:
o CISM
o CISSP
o CRISC
o ISO/IEC 27001 Lead Auditor or Lead Implementer
o Security+
o SSCP
o CISA
Personal Attributes:
• Strong communication and stakeholder management skills.
• Ability to work independently and manage multiple projects simultaneously.
• Attention to detail and a risk-based mindset.
• Curiosity and willingness to continuously learn in the evolving cybersecurity landscape.
• Team player with the ability to collaborate across functions.
What we offer:
We care about your growth, your wellbeing, and your future. Here’s what to expect when you join us:
Personal Growth
• CPE training and continuous development opportunities
• Monthly mentoring check-ins and regular appraisals
Perks
• Monthly Wolt Credits
• Discounts on gym memberships and other services
Health & Wellbeing
• Comprehensive health insurance
• Employee Assistance Programme (EAP)
• Beneficial loan rates through our partnership with a local bank
We’re proud to be recognised with both the HR Quality Mark by FHRD and the Equality Mark certification, reflecting our commitment to outstanding HR practices, a culture of inclusion, and the wellbeing and growth of every team member.
If this sounds like the next step in your career, we’d love to hear from you. Let’s build something meaningful together.
Kindly note that only shortlisted candidates will be contacted.