We’re looking for a Risk & Controls Specialist
to join our Risk team on a 6-month contract.
Sydney ONLY
This role will focus on second-line technology controls testing, with particular emphasis on ITGCs, IAM/access management, change management and IT operations controls.
Duties
Deliver 2nd line IT controls testing
across ITGC and security controls.
Test access management, change management and IT operations
controls.
Assess control design and operating effectiveness
and challenge management where required.
Perform testing aligned to NIST security domains
and relevant technology risk frameworks.
Document test procedures, evidence, results and issues
in line with governance standards.
Support business and finance controls testing
and audit requests.
Work with Technology, Information Security, Risk, Compliance and Audit stakeholders.
Provide control and policy interpretation
and support remediation activities.
Contribute to risk governance activities and continuous improvement.
Profile
2–3 years’ Big Four IT audit or controls testing experience
Hands-on experience testing IT general controls and security controls
Knowledge of frameworks such as NIST, COBIT or ISO 27001
Experience in financial services/insurance and APRA controls is desirable
Strong documentation, stakeholder management and communication skills
This is a great opportunity for someone with solid controls testing experience who can work independently and deliver high-quality testing outcomes.
Technical Experience
Experience across the following areas is preferred / Cloud security governance (Azure/AWS) / Third-party assurance and controls testing. / Data governance / Automated controls testing.
MUST have PR/Citizenship OR Visa with no sponsorship requirements for a year.
Please email
me your resume rupinderk@ethosbc.com.au or apply using link IF you have the relevant experience.





