ISMS Auditor
BH-310851-1
Posted: 17/11/2025
- Competitive
- Philippines Pasig City
- Permanent
-
IT
Job Title: ISMS Auditor
Location: Ortigas, Pasig City
Contract: Full time position
Summary
The ISMS Auditor will take a leadership role in conducting audits and assessments of client organizations' information security management systems. You will be responsible for evaluating and ensuring compliance with ISO 27001 standards, providing expert guidance, and helping clients enhance their information security practices. Your expertise in auditing and information security will be instrumental in strengthening our clients' security postures.
Key Responsibilities:
Key Requirements:
With over 90 years' combined experience, NES Fircroft (NES) is proud to be the world's leading engineering staffing provider spanning the Oil & Gas, Power & Renewables, Chemicals, Construction & Infrastructure, Life Sciences, Mining and Manufacturing sectors worldwide. With more than 80 offices in 45 countries, we are able to provide our clients with the engineering and technical expertise they need, wherever and whenever it is needed. We offer contractors far more than a traditional recruitment service, supporting with everything from securing visas and work permits, to providing market-leading benefits packages and accommodation, ensuring they are safely and compliantly able to support our clients.
Location: Ortigas, Pasig City
Contract: Full time position
Summary
The ISMS Auditor will take a leadership role in conducting audits and assessments of client organizations' information security management systems. You will be responsible for evaluating and ensuring compliance with ISO 27001 standards, providing expert guidance, and helping clients enhance their information security practices. Your expertise in auditing and information security will be instrumental in strengthening our clients' security postures.
Key Responsibilities:
- Develop comprehensive audit plans and schedules in collaboration with clients, taking into consideration their specific information security requirements and objectives.
- Conduct ISO 27001 audits, assessing the effectiveness of information security controls and practices within client organizations.
- Analyse and evaluate client documentation, policies, procedures, risk assessments, and records to ensure compliance with ISO 27001 standards.
- Perform on-site audits at client locations, including interviews with personnel and inspections of information security processes and systems.
- Document audit findings, non-conformities, and areas for improvement, and prepare detailed audit reports that provide actionable recommendations to clients.
- Offer expert recommendations to clients for strengthening their information security management systems and achieving ISO 27001 certification.
- Communicate audit results and recommendations clearly and effectively with client management and staff, addressing any inquiries or concerns.
- Stay abreast of changes to ISO 27001 standards and information security best practices, ensuring that audit processes align with the latest requirements.
- Identify opportunities to enhance the audit program and contribute to the development of best practices in information security auditing.
- Perform other tasks that may be assigned by the immediate superior and/or management from time-to-time.
Key Requirements:
- Bachelor's degree in a relevant field, such as Information Security, Cybersecurity, or IT Management.
- At least 4-5 years of experience in implementation of Information Security, Cybersecurity, Data Governance, Risk Assessment and Compliance evaluation.
- ISO 27001 Lead Auditor certification or equivalent is a plus.
- Experience as a Lead Auditor conducting ISO 27001 audits and assessments is a plus.
- Deep knowledge of ISO 27001 standards, information security controls, and regulatory requirements.
- Strong analytical and problem-solving skills, with meticulous attention to detail.
- Excellent communication skills, both written and verbal, for report writing and client interactions.
- Ability to work independently and collaboratively within a team, managing multiple audit projects concurrently.
- Amenable to do 80-90% of fieldwork
With over 90 years' combined experience, NES Fircroft (NES) is proud to be the world's leading engineering staffing provider spanning the Oil & Gas, Power & Renewables, Chemicals, Construction & Infrastructure, Life Sciences, Mining and Manufacturing sectors worldwide. With more than 80 offices in 45 countries, we are able to provide our clients with the engineering and technical expertise they need, wherever and whenever it is needed. We offer contractors far more than a traditional recruitment service, supporting with everything from securing visas and work permits, to providing market-leading benefits packages and accommodation, ensuring they are safely and compliantly able to support our clients.