Audit Portfolio Manager: IT Cyber at Nedbank

  • Information Technology Jobs in South Africa ,Accounting Jobs In South Africa
  • Full time
  • 4 months ago
  • South Africa
  • Salary Rand 30,000 / Monthly
  • Shift Full Time
  • Job Qualifications Bachelor’s Degree
  • Number of vacancies 2 openings
  • Job experience 4 years
  • Job level Manager

Job Description

Ongoing Job Vacancy at Nedbank for the position of Audit Portfolio Manager: IT Cyber for immediate employment.

Duties & Responsibilities

The successful applicant will be responsible for but not limited to the following job functions:

What you’ll do

  • Execute Cyber security audit assignment planning, fieldwork and reporting in line with the Group Internal Audit (GIA) methodology and Institute of Internal Auditors (IIA).
  • Provide independent assurance to the Group Audit Committee that business is adequately mitigating key strategic and operational risks.
  • Assess and understand business systems, processes, tools, methodologies and templates, within audit scope.
  • Identify and assess the design adequacy and operational effectiveness of controls within audit scope.
  • Be commercially minded and understand the broader business strategy in auditing approach.
  • Manage allocated billable hours in line with Audit plan.
  • Act as a trusted business advisor through providing audit insights in line with audit methodology.
  • Maintain stakeholder relationships through regular scheduled engagements.
  • Build sound professional relationships through addressing client concerns.
  • Influence stakeholders to address inefficiencies in resolving audit findings through utilising professional experience in demonstrating benefits of best audit practice.
  • Partner with stakeholders in providing regular audit progress updates and timeous reporting of key audit findings.
  • Ensure client centricity in audit engagements with stakeholders.
  • Ensure GIA policies and principles are maintained and applied through the audit process.
  • Identify and ensure compliance with relevant laws, regulations and guidelines in line with audit scope.
  • Ensure continuous improvement of the quality of audits through providing professional insights.
  • Prepare quality, relevant and commercially astute assignment and reports.
  • Analyse and interrogate client processes, evidence and verbal information independently.
  • Apply professional judgement in all audit interactions.
  • Apply experience and best practice into audit discussions and work performed.
  • Deal with complex verbal and documented information and data in the audit process.
  • Support the achievement of the business strategy, objectives and values.
  • Stay abreast of developments in field of expertise.
  • Ensure personal growth and enable effectiveness in performance of roles and responsibilities.
  • Contribute to the Nedbank Culture building initiatives (e.g. staff surveys etc.).
  • Participate and support corporate responsibility initiatives for the achievement of business strategy
  • Seek opportunities to improve business processes, models and systems though agile thinking.

 Required Knowledge and Experience

We pride ourselves with having the best people, which are our most important assets. Our company has been recognized for having the highest ethics and strives for excellence through distinctly higher standards than the norm.

We therefore urge only candidates with these unique requirements and experience to apply for this stimulating position.

Minimum Experience Level

  • 4-5 years Specialist Auditing

Essential Qualifications – NQF Level



  • Advanced Diplomas/National 1st Degrees

Preferred Qualification

  • Relevant BCom (Informatics/Information Systems) OR BSC (Computer Science or IT) Degree
  • Honours degree advantageous

Essential Certifications

  • Certified Information Systems Auditor (CISA) and optional Certified Internal Auditor (CIA)
  • Certified Internal Auditor (CIA) or Certified Information Systems Auditor (CISA) or Certified Financial Services Auditor (CFSA)

Preferred Certifications

  • Certified Information Systems Auditor (CISA) and optional Certified Internal Auditor (CIA)
  • Certified Internal Auditor (CIA) or Certified Information Systems Auditor (CISA) or Certified Financial Services Auditor (CFSA)
  • CISSP , CISM or relevant qualifications (this is essential certification )

Type of Exposure

  • Influencing stakeholders to obtain buy-in for concepts and ideas.
  • Conducting quality assurance reviews
  • Sharing information in different ways to increase stakeholders understanding
  • Building and maintaining effective relationships with internal and external stakeholders
  • Auditing
  • Interacting with diverse people
  • Analysing and interpreting qualitative and quantitative data
  • Financial services; preferable banking
  • Communicating standards to others
  • Consolidate data from various sources and identify/interpret trends
  • Technical / Professional Knowledge or Exposure
  • Technical exposure to infrastructure/network and multi-platform environments in diverse geographic and regulatory environments as required
  • Technical knowledge of Project security assurance reviews (pre and post implementation reviews) using Agile practices
  • Auditing IT general controls (such as DR, backups, physical access / data centres, change management)
  • Auditing Infrastructure environments: Hypervisor/ Virtual machines, virtual network and virtual storage Virtual machines, Network devices (firewalls, routers, switches, etc), Operating systems, Database & Endpoint Devices
  • Auditing experience of application security or web services, web or mobile applications, digital platforms, remote working
  • Infrastructure hardening reviews: Internal & external vulnerability & patch management, penetration testing/ assessments
  • Third party cyber security risk assessments or reviews
  • Cyber security awareness assessments or reviews
  • Information Security: Data Privacy & Data Leakage Prevention
  • Cyber resilience, Business Impact Assessments, Disaster Recovery
  • Cyber security exposure to new and emerging technologies: Cloud Computing, Artificial Intelligence (AI), Robotics, Machine Learning, APIs
  • Exposure to Cyber Security Standards/Frameworks: ISO 27001/2, CRRMF, NIST, ISF, COBIT, CIS, OWASP, etc
  • Cyber security incident reviews: Identification, Protection, Detection, Response, Recovery Processes
  • Financial Services experience (preferable)



How to apply: Interested and qualified? Visit South Africa

Job Alert: Join Us on Telegram Now !!
Skip to toolbar