Role Overview:
The IT Audit Manager for Cybersecurity, Vulnerability Assessment and Penetration Testing is a senior individual contributor and team lead responsible for driving a risk-based technology audit programme. The role provides independent assurance over our client’s cybersecurity posture, information security controls, vulnerability management lifecycle, and compliance with ISO/IEC 27001:2022 and applicable regulatory frameworks.
Key Responsibilities:
- Develop and execute a risk-based annual IT Audit Plan covering cybersecurity domains, emerging threats, and regulatory requirements.
- Lead end-to-end audit engagements from planning through to reporting, including scoping, fieldwork, evidence collection, and remediation tracking.
- Perform technical reviews of security architectures, network configurations, access controls, cloud environments, and third-party integrations.
- Assess the organisation's cybersecurity programme against frameworks such as NIST CSF, CIS Controls, and ISO/IEC 27001.
- Plan, execute and oversee VAPT engagements covering network infrastructure, web applications, mobile applications, and cloud environments.
Requirements:
- Bachelor’s or Master’s degree in Computer Science, Information Technology, Cybersecurity, Information Systems, or a related field.
- Possess related professional certifications such as CISA, CEH, OSCP, CISM, CISSP, etc.
- Minimum of 6 years of progressive experience in IT audit, cybersecurity, or information security assurance, including at least 3 years in a supervisory or managerial role leading IT audit or security teams.
- Demonstrated hands-on experience in conducting or overseeing VAPT engagements (network, web application, and cloud).
- Experience in financial services, banking, telecommunications, or regulated industries is preferred.
- Proficiency with penetration testing tools such as Metasploit, Nmap, Burp Suite, Nessus, Qualys, OpenVAS, Nikto, OWASP ZAP.
About the Company
Crowe Malaysia
Crowe Malaysia PLT
Crowe Malaysia PLT is the 5th largest accounting firm in Malaysia and an independent member of Crowe Global, which is the top 10 largest global accounting network. Internationally associated to more than 200 member firms operating from 765 offices around the world, Crowe Malaysia PLT is well positioned to help growing entrepreneurs succeed. Tapping on its global resources and strategic competencies in audit, tax and advisory, Crowe Malaysia PLT has helped elevate clients to their next-phase growth stages as well as achieve global reach.
Represented in 12 locations across Malaysia, there are over 1,200 staff serving more than 10,000 clients nationwide. Clients comprise mid to large private, publicly listed and multinational companies in various industries.
Crowe Malaysia PLT is registered with Malaysia's Accounting Oversight Board (AOB) and the Public Company Accounting Oversight Board (PCAOB), US. Since 2005, it has been a top 4 accounting firm involved in the highest number of initial public offerings (IPOs).
What We Do
At Crowe Malaysia PLT, our core expertise lies in audit, tax, corporate advisory, risk advisory and wealth management. As part of our team, you’ll find an emphasis on developing solutions to meet client needs and collaborate cross-functionally across other offices and business units to hone your skills and develop valuable professional knowledge.
Offices in Malaysia
Kuala Lumpur • Klang • Ipoh • Penang • Johor Bahru • Muar • Melaka • Kuching • Sibu • Bintulu • Miri • Kota Kinabalu