ISO 27001 (ISMS) Lead Auditor
BH-310851
Posted: 12/08/2025
- Competitive
- Philippines Pasig City
- Permanent
-
IT
Job Summary
The ISMS Lead Auditor will take a leadership role in conducting audits and assessments of client organizations' Information Security Management Systems (ISMS). This role ensures compliance with ISO 27001 standards, provides expert guidance, and helps clients enhance their information security practices.
Key Responsibilities:
With over 90 years' combined experience, NES Fircroft (NES) is proud to be the world's leading engineering staffing provider spanning the Oil & Gas, Power & Renewables, Chemicals, Construction & Infrastructure, Life Sciences, Mining and Manufacturing sectors worldwide. With more than 80 offices in 45 countries, we are able to provide our clients with the engineering and technical expertise they need, wherever and whenever it is needed. We offer contractors far more than a traditional recruitment service, supporting with everything from securing visas and work permits, to providing market-leading benefits packages and accommodation, ensuring they are safely and compliantly able to support our clients.
The ISMS Lead Auditor will take a leadership role in conducting audits and assessments of client organizations' Information Security Management Systems (ISMS). This role ensures compliance with ISO 27001 standards, provides expert guidance, and helps clients enhance their information security practices.
Key Responsibilities:
- Develop comprehensive audit plans and schedules in collaboration with clients, taking into consideration their specific information security requirements and objectives.
- Conduct ISO 27001 audits, assessing the effectiveness of information security controls and practices within client organizations.
- Analyse and evaluate client documentation, policies, procedures, risk assessments, and records to ensure compliance with ISO 27001 standards.
- Perform on-site audits at client locations, including interviews with personnel and inspections of information security processes and systems.
- Document audit findings, non-conformities, and areas for improvement, and prepare detailed audit reports that provide actionable recommendations to clients.
- Offer expert recommendations to clients for strengthening their information security management systems and achieving ISO 27001 certification.
- Communicate audit results and recommendations clearly and effectively with client management and staff, addressing any inquiries or concerns.
- Stay abreast of changes to ISO 27001 standards and information security best practices, ensuring that audit processes align with the latest requirements.
- Identify opportunities to enhance the audit program and contribute to the development of best practices in information security auditing.
- Perform other tasks that may be assigned by the immediate superior and/or management from time to time.
- Bachelor's degree in a relevant field, such as Information Security, Cybersecurity, or IT Management.
- ISO 27001 Lead Auditor certification or equivalent.
- Proven experience as a Lead Auditor conducting ISO 27001 audits and assessments.
- Deep knowledge of ISO 27001 standards, information security controls, and regulatory requirements.
- Strong analytical and problem-solving skills, with meticulous attention to detail.
- Excellent communication skills, both written and verbal, for report writing and client interactions.
- Ability to work independently and collaboratively within a team, managing multiple audit projects concurrently.
- Willing to travel locally and internationally.
With over 90 years' combined experience, NES Fircroft (NES) is proud to be the world's leading engineering staffing provider spanning the Oil & Gas, Power & Renewables, Chemicals, Construction & Infrastructure, Life Sciences, Mining and Manufacturing sectors worldwide. With more than 80 offices in 45 countries, we are able to provide our clients with the engineering and technical expertise they need, wherever and whenever it is needed. We offer contractors far more than a traditional recruitment service, supporting with everything from securing visas and work permits, to providing market-leading benefits packages and accommodation, ensuring they are safely and compliantly able to support our clients.