At a Glance
- Tasks: Conduct audits to identify IT security weaknesses and create action plans.
- Company: Join Rolls-Royce, a leader in innovation and safety for over a century.
- Benefits: Enjoy competitive salary, bonuses, employee support, and discounts.
- Why this job: Be part of a diverse team making a real impact in cyber security.
- Qualifications: Knowledge of information systems, cyber security frameworks, and cloud technologies required.
- Other info: We value diversity and welcome applications from all backgrounds.
The predicted salary is between 36000 - 60000 £ per year.
Rolls-Royce offers an excellent opportunity for an IT Security Auditor to join our Cyber Security, Risk and Compliance team. In this role you will be undertaking assessment activities to identify weaknesses and policy violations in our IT systems (and/or applications) and create action plans to correct any problems in order to prevent future cyber security breaches.
You will be working with other Security Auditors and Information Assurance Specialists to ensure a common approach to Security Audit across Rolls-Royce.
What we offer:
- Excellent development opportunities
- Competitive salary
- Exceptional benefits including bonus, employee support assistance, and employee discounts
What you will be doing:
- Support the Head of Cyber Security Policy & Compliance in identifying and planning cyber security audits across the IT Function, within business areas, of our IT supply chain, and 3rd party suppliers into the business.
- Undertaking those audits and providing timely reports.
- Creating corrective action plans, in conjunction with the target system owner, in order to improve the cyber security posture of that system.
- Analysis of the audit output to identify trends to inform the improvement of policy, process, procedure or technology.
- Presenting findings to a wider audience including senior management.
- Undertaking other tasks to support the wider cyber security team, such as work on the cyber culture programme.
- Assist the wider team in developing and defining Information Security policies, standards, guidelines, and procedures to an agreed framework (ISO27000).
Who we’re looking for:
At Rolls-Royce we put safety first, do the right thing, keep it simple and make a difference. These principles form the behaviours that guide us and are an essential component of our assessment process. They are the fundamental qualities that we seek for all roles. For this role you will need to demonstrate understanding of the applicable health and safety standards and we are looking for someone who is/has:
- Good overall knowledge of information systems practices and applications.
- Thorough understanding of Rolls-Royce management processes and practical knowledge of the principles of information security.
- Understanding of Cyber Security frameworks and benchmarks to which we have to demonstrate compliance (for example ISO27000, NIST & CIS).
- Communicates well and has the skill to influence through persuasion in a formal context.
- Broad knowledge of IT security demonstrated by attainment of appropriate qualifications.
- Experience/awareness of cloud technologies and capabilities in an enterprise environment.
- Willingness to learn and promote wider compliance requirements such as Product Safety, Data Privacy and Export Control.
We are an equal opportunities employer. We’re committed to developing a diverse workforce and an inclusive working environment. We believe that people from different backgrounds and cultures give us different perspectives. And the more perspectives we have, the more successful we’ll be. By building a culture of respect and appreciation, we give everyone who works here the opportunity to realise their full potential.
We welcome applications from people with a refugee background.
IT Security Auditor employer: Rolls-Royce
Contact Detail:
Rolls-Royce Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IT Security Auditor
✨Tip Number 1
Familiarise yourself with the specific cyber security frameworks mentioned in the job description, such as ISO27000, NIST, and CIS. Understanding these standards will not only help you in interviews but also demonstrate your commitment to the role.
✨Tip Number 2
Network with current or former employees of Rolls-Royce, especially those in the Cyber Security, Risk and Compliance team. They can provide valuable insights into the company culture and expectations, which can be beneficial during your application process.
✨Tip Number 3
Prepare to discuss your experience with cloud technologies and how they relate to IT security. Given the emphasis on cloud capabilities in the job description, showcasing relevant projects or knowledge can set you apart from other candidates.
✨Tip Number 4
Practice your communication skills, particularly in formal contexts. Since the role involves presenting findings to senior management, being able to convey complex information clearly and persuasively is crucial for success.
We think you need these skills to ace IT Security Auditor
Some tips for your application 🫡
Understand the Role: Before applying, make sure you fully understand the responsibilities and requirements of the IT Security Auditor position. Familiarise yourself with the key tasks mentioned in the job description, such as conducting audits and creating action plans.
Tailor Your CV: Customise your CV to highlight relevant experience and skills that align with the job description. Emphasise your knowledge of information systems, cyber security frameworks, and any qualifications you hold that are pertinent to the role.
Craft a Compelling Cover Letter: Write a cover letter that not only outlines your qualifications but also demonstrates your understanding of Rolls-Royce's values and culture. Mention how your background and skills can contribute to their mission of safety and innovation.
Proofread Your Application: Before submitting, carefully proofread your application materials for any spelling or grammatical errors. A polished application reflects your attention to detail, which is crucial for an IT Security Auditor.
How to prepare for a job interview at Rolls-Royce
✨Understand Cyber Security Frameworks
Familiarise yourself with key cyber security frameworks such as ISO27000, NIST, and CIS. Be prepared to discuss how these frameworks apply to the role and how you can ensure compliance within the organisation.
✨Showcase Your Communication Skills
As an IT Security Auditor, you'll need to present findings to senior management. Practice articulating complex information clearly and concisely, demonstrating your ability to influence and persuade in a formal context.
✨Demonstrate Knowledge of Information Systems
Brush up on your knowledge of information systems practices and applications. Be ready to discuss specific examples from your experience that highlight your understanding of IT security and risk management.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills. Think about past experiences where you've identified weaknesses or policy violations and how you created action plans to address them.