Information Security Auditor
ASSA ABLOY Global Solutions is strengthening its internal security assurance capability to support global business operations. This role focuses on conducting information security audits, assessing control effectiveness, and supporting compliance with key standards such as ISO/IEC 27001:2022 and regulatory requirements including NIS2.
PRIMARY JOB PURPOSE
The Security Auditor is responsible for leading and executing information security audits across systems, infrastructure, business processes, and third-party services. The role aims to strengthen internal audit capability, improve control effectiveness, and ensure compliance with internal and external security requirements in a global environment.
KEY POSITION ACCOUNTABILITIES
- Conduct internal information security audits across business applications, infrastructure, and operational processes.
- Assess control design and operating effectiveness, identifying gaps and opportunities for improvement.
- Prepare audit reports, executive summaries, findings, and actionable recommendations.
- Perform third-party and supplier security audits.
- Support ISO/IEC 27001:2022 internal audits and external audit readiness activities.
- Assess compliance with frameworks including ISO 27001, ISO 27002 and NIS2.
- Track audit findings and support remediation and closure.
- Contribute to risk assessments and risk registers.
- Review security documentation and control evidence.
- Identify control gaps and suggest remediation.
- Improve audit frameworks and methodologies.
SELECTION CRITERIA
Essential:
- 5–7 years of experience in information security, IT audit, or compliance.
- ISO/IEC 27001:2022 Lead Auditor certification.
- Strong knowledge of ISO frameworks and risk/control standards.
- Experience in audit execution and reporting.
- Experience in third-party risk and supplier security.
- Strong analytical and communication skills.
Preferred:
- Certifications such as CISA, CISSP, CISM or CRISC.
- Experience with NIS2 or similar regulations.
- Experience in global environments.
- Knowledge of cloud security and IAM.
WORK ENVIRONMENT FACTORS
- Hybrid model.
- Global exposure across business units.
- Limited travel may be required.
We are the ASSA ABLOY Group
Our people have made us the global leader in access solutions. In return, we open doors for them wherever they go. With nearly 63,000 colleagues in more than 70 different countries, we help billions of people experience a more open world. Our innovations make all sorts of spaces – physical and virtual – safer, more secure, and easier to access.
As an employer, we value results – not titles, or backgrounds. We empower our people to build their career around their aspirations and our ambitions – supporting them with regular feedback, training, and development opportunities. Our colleagues think broadly about where they can make the most impact, and we encourage them to grow their role locally, regionally, or even internationally.
As we welcome new people on board, it’s important to us to have diverse, inclusive teams, and we value different perspectives and experiences.
Chennai, IN, 600 032