IT / IS and Cybersecurity Audit Officer at AIICO Insurance
AIICO Insurance
Lagos, Nigeria
Permanent
Published 1 month ago · Expires 3 weeks from now
Job description
## Title: IT/IS and Cybersecurity Audit Officer
About the Role
AIICO Insurance is recruiting an IT/IS and Cybersecurity Audit Officer to strengthen its information security and IT governance framework across the parent and subsidiary companies.
Cybersecurity Audit Responsibilities
- Review and investigate system-related customer complaints and fraud cases to prevent reoccurrence and improve system security
- Conduct proactive and continuous research into the latest IT and system-related vulnerabilities and threats, recommending appropriate countermeasures promptly
- Perform security assessments for newly developed applications
- Conduct periodic penetration testing of the parent and subsidiary companies' information assets
IT/IS Audit Responsibilities
- Support the development of a robust internal audit framework and policies by benchmarking industry best practices and consolidating technical and non-technical risks
- Continuously monitor and evaluate the parent and subsidiary companies' enterprise information systems for risks, IT infrastructure, new vulnerabilities, and control weaknesses that may lead to system disruption
- Participate in periodic audits of information technology to improve the parent and subsidiary companies' risk, governance, and control requirements
- Evaluate the efficiency and effectiveness of system and other controls, specifically as they relate to IT risk management and the definition, design, and execution of the company's IT initiatives
- Appraise the effectiveness and independence of system program change controls, system and security administration, monitoring and incident response activities, and general information system controls across various applications
- Appraise the effectiveness of web-based application system architecture, including communication protocols on system security and performance
- Appraise the effectiveness of client-server-based LAN account architecture
- Audit software deployment, access controls, and information technology systems and infrastructure
- Support the development and execution of the company's IT audit initiatives