Your career compass awaits
Create a free account to unlock
- ✓ See how you match this role
- ✓ AI resume tailored to this specific job
- ✓ Inside Track Companion — find your insider contact
- ✓ Skills gap analysis and upskill plan
- ✓ Interview prep kit for this role
- ✓ Relocation concierge — salary, tax, cost of living
Free — no credit card required
Confirm Application
Are you applying to ?
We'll track this in your dashboard as Applied.
Manager - IT Audits
Accounting
Company shared salary
NA
Market rate
AED 30,000–AED 45,000/mo (AED 360,000–AED 540,000/yr)
Based on similar roles (title + domain + location).
About the Company
An IT Audit Manager plays a crucial role in ensuring that an organization's information technology systems and processes align with its objectives while meeting regulatory compliance and safeguarding against risks. The key responsibilities include: The above is to be carried out across all EGA sites (JA, AT, GAC, ATA and EGA Subsidiaries) in the following IT functions:
Responsibilities
- ● Embeds the ethical standards and the mandatory standards prescribed by The Institute of Internal Auditors (IIA) in the day-to-day operations. To that effect, he/she shall instruct/supervise/coach his team members about the aforesaid requirement
- ● For deviations brought to his/her attention, the job holder would take steps to resolve the issue. It shall be the responsibility of the position holder to keep the Director of Corporate & IT and Chief Internal Auditor (CIA) informed of the deviations reported and the steps undertaken to resolve the issue. Should it not be possible for the job holder to resolve the issue, he/she shall seek the guidance of the Director of Corporate and IT and CIA in this regard
- ● Responsible for implementing departmental policies, processes, and procedures in all audits/risk assessments / day-to-day work conducted. To that effect, he/she shall instruct/supervise/coach his/her team members with regard to requirements of the departmental policies and procedures as well as monitor adherence to such policy/procedure. Deviations if any shall be brought to the attention of the Director of Corporate and IT and Chief Internal Audit (CIA) for corrective action
- ● Develop and maintain effective working relationships with management of the assigned domain and act as the key point of contact. The Associate Manager shall ensure that he/she is aware of all changes in key personnel/processes/systems as well as emerging risks relevant to his/her domain arising out of changes in industry/market / legislation etc.
- ● Upon identifying such risk/changes, the Associate Manager shall inform the Director of Corporate and IT and assist in assessing the emerging risks and their potential impact on the audit plan and propose changes to the plan if required in order to prioritize the high-risk audit units.
- ● Lead the annual risk assessment process relating to the domain and assist the Director of Corporate and IT in prioritizing the high-risk audit units while preparing the audit plan.
- ● Assess the staffing requirements for planned and Adhoc audit assignments and advise the Director Corporate and IT on assigning personnel to audit assignments within the assigned domain. Should the skillset required to conduct an audit not be available in-house, the Associate Manager shall assist the Director Corporate and IT to plan and execute co-sourced / outsourced audit assignments
- ● Shall have overall responsibility for independently conducting audits within the domain. To that effect, the Associate Manager's responsibility shall include but not be limited to the following:
- ● Ensure that relevant portion of the audit plan approved by the ARC for the year is achieved and that audits are completed within the defined timeframe. Assist the Director Corporate and IT in analysing deviations beyond 10% of the allocated time and initiate corrective actions planned.
- ● Plan and scope audit assignments ensuring adequate audit coverage of audit units to most effectively utilize the resources in providing reasonable assurance regarding the control environment.
- ● Develop process flow charts, conduct the process level risk analysis, prepare the risk, and control matrix and assess the design of management's internal controls.
- ● Develop the audit programs including procedures / audit approaches / data analysis for auditing new processes or modifying existing approaches to further enhance the audit coverage / effectiveness.
- ● Execute audit procedures most critical to the audit assignment while conducting the work to ensure that the specified audit objectives are met.
- ● Assist the other auditors in evaluating the IT system controls for the business audits.
- ● Identify control weaknesses, process improvement and cost reduction opportunities; and
- ● Based on the work done and information and explanations obtained during the course of the audit assignment, conclude on the existence and adequacy of internal controls
- ● Document the test procedures carried out and review the work done by the team members / co-sourced consultants on an ongoing basis in TeamMate / GRC, to ensure that the quality of audit file documentation meets the standards set in the Internal Audit methodology and the IIA's standards
- ● Recommend to process owners suitable corrective/preventive actions in order to mitigate/remediate the observations made and risks highlighted ensuring that all accepted recommendations are given clear implementation deadlines or clearly identified as not being accepted.
- ● Leads closing meetings with line and top management to obtain their buy in regarding the recommendations / corrective actions.
- ● Ensure that area managers and the Director Corporate and IT are informed in a timely manner regarding critical issues to enable quick correction and mitigation of further occurrences.
- ● Conduct monthly follow-up of audit recommendations and report on status of their implementation to the Director Corporate and IT.
- ● Review draft reports drafted by team members / co-sourced consultants to ensure that draft reports meet the quality standards required by IA Methodology.
- ● Deliver final versions of draft reports to the Director Corporate and IT after discussing with management and obtaining their buy-ins with regard to the observations and recommendations made.
- ● The audits conducted/led and carried out by the Associate Manager IA shall be subject to peer reviews and quality assessments on a periodic basis. The Associate Manager would be responsible for implementing the recommendations made in the aforesaid assessments.
- ● The Associate Manager would assist the Director Corporate and IT and Chief Internal Auditor in achieving the periodic external quality certification.
- ● Should the CIA in consultation with the Director Corporate and IT approve that an audit assignment in the Associate Manager's domain be co-sourced/outsourced either due to unavailability of skillset in-house or resource constraints, the Associate Manager shall have the following responsibilities:
- ● Prepare the request for proposal including technical specifications, areas / scope to be covered, deliverables, manpower required etc.
- ● Assist the Director Corporate and IT in carrying out the technical evaluation of the proposals received.
- ● Liaison with the external team and monitor the day-to-day progress of the audit assignment;
- ● Assess the work done and the deliverables to ensure that the audit objectives are met.
- ● Lead the closeout meeting with management to agree on the action plans; and
- ● Document the observations in GRC so that these can be followed up later
- ● Conducts ad-hoc reviews based on management requests as directed by the CIA.
- ● Participates in the fraud investigations as and when called upon to do so by the CIA.
- ● Complies with all relevant safety, quality and environmental management policies, procedures and controls to ensure a healthy and safe work environment.
- ● The Associate Manager shall have autonomy over the day-to-day audit work in the assigned domain of responsibility. However, he/she shall remain answerable to the Director Corporate and IT with regard to the quality of audit work, audit coverage, utilization of resources, achievement of audit plan etc.
- ● The Associate Manager shall have direct and unrestricted access to all information / documents and personnel for the domain.
Requirements
- ● University degree in Computer Science.
- ● Holding relevant professional certifications can be beneficial, such as:
- ● CISA (Certified Information Systems Auditor)
- ● CISSP (Certified Information Systems Security Professional)
- ● CISM (Certified Information Security Manager)
- ● Keep up-to-date with the latest IT trends, risks, and technologies, as well as developments in auditing standards and regulatory requirements.
- ● At least 4 years experience in managing IT audits, and
- ● At least 5 years experience in Internal Audit.
- ● Understanding of IT Infrastructure and Operations: Comprehensive knowledge of IT systems, including SAP ERP, networks, databases, cloud computing, and cybersecurity. This includes an understanding of how these systems are designed, implemented, and maintained.
- ● Cybersecurity Knowledge: With increasing threats to information security, understanding cybersecurity principles, practices, and technologies is crucial for identifying vulnerabilities and assessing risks.
- ● Regulatory Knowledge and Compliance: Familiarity with relevant regulatory and compliance standards such as GDPR, ISO27001, ISR, SOX, HIPAA. This entails not just understanding the regulations but also knowing how to ensure IT systems comply with them.
- ● Audit Methodologies and Standards: Proficiency in audit methodologies and standards such as ISACA's ITAF (IT Assurance Framework) and frameworks like COBIT (Control Objectives for Information and Related Technologies) is essential for planning, executing, and reporting IT audits.
- ● Analytical and Critical Thinking Skills: The ability to analyze complex IT systems, data analysis techniques, identify risks and vulnerabilities, and provide rational recommendations is critical. He/She must also be adept at interpreting data from various sources to support their assessments.
- ● Project Management Skills: Skill in managing audits as projects, including planning, executing, monitoring, and closing audit projects successfully. This also involves managing resources, timelines, and budgets effectively.
- ● Interpersonal and Communication Skills: Strong verbal and written communication skills (English) and ability to explain technical issues and audit findings to non-technical stakeholders. This also includes the ability to lead and manage an audit team, requiring good leadership and team-building skills. Should be able to demonstrate negotiation skills and obtain the buy-in from management regarding the issues/recommendations.
- ● Given the rapid pace of technological advancements, IT audit managers must be adaptable and committed to continuous learning to stay ahead in their field.
⚡ Full Resume Sandbox Canvas