Assisting with performing ITGC audit procedures, conducting client interviews, and reviewing documents;
Performing audits of information security for compliance with corporate requirements and standards;
Participation in information security diagnostics, maturity assessments, benchmarking, information security strategy, and architecture development, designing and delivering on information security improvement program. Establishing security management systems (e.g., ISO 2700x/NIST/CIS) and industry compliance programs
Analyzing the security of business applications, and infrastructure systems (including operating system, database, web server, firewall, and router, etc.);
Assisting with communicating the results of projects to management via oral presentations and written reports
Continuously research and follow up on IT and information security challenges and technologies.
Developing and maintaining positive relationships with clients.
The diverse nature of projects will enable you to build your career path in information security.
A competitive salary and extensive social benefits.
Support for a professional qualification (e.g., CISA, CISM, CEH, CISSP, etc.)
Opportunity to attend global training of PwC
Opportunity to work with foreign PwC offices.
Namizədə tələblər
Degree in computer science, information security, information systems, and other related fields;
Understanding of network security (Firewall/VPN), systems (Windows, Linux, etc.) and databases (SQL, Oracle, DB2, etc.) security, mobile technologies
Not required but would be a plus:
Working experience in information security operations or information security compliance
Knowledge of technology risk and information security management framework and standards (NIST, ISO2700x, etc.)
Knowledge of at least one of the programming languages (Java, Python or another
Basic knowledge of security processes, data privacy, project management methodology, and system development methodology
Strong interest or curiosity to develop Information Security expertise;
Written and verbal communication skills in English and Azerbaijani (Russian is an advantage) and excellent soft skills;
Strong and highly adaptable problem-solving skills and to manage multiple tasks, projects at the same time;
Ability to work under pressure to meet deadlines and to work with minimal guidance.
Not required but would be a plus: Working experience in information security operations or information security compliance
Knowledge of technology risk and information security management framework and standards (NIST, ISO2700x, etc.)
Knowledge of at least one of the programming languages (Java, Python, or another)
Invite and give in the moment feedback in a constructive manner.
Share and collaborate effectively with others.
Identify and make suggestions for improvements when problems and/or opportunities arise.
Handle, manipulate and analyse data and information responsibly.
Follow risk management and compliance procedures.
Keep up-to-date with developments in area of specialism.
Communicate confidently in a clear, concise and articulate manner - verbally and in the materials I produce.
Build and maintain an internal and external network.
Seek opportunities to learn about how PwC works as a global network of firms.
Uphold the firm's code of ethics and business conduct.