SENIOR IT INTERNAL AUDITOR | IT AUDIT | SENIOR IT AUDITOR

1 giorno fa

Torino, Provincia di Torino; Piemonte, Italia MAIRE Tempo pieno
MAIRE S.p.
A. is a leading engineering group providing technology solutions and project execution in the downstream segment of energy services, as well as in the chemicals and fertilizers industries. Integrated E&C Solutions and Sustainable Technology Solutions, the latter active in sustainable fertilizers, low carbon energy vectors, and innovative materials and circular solutions. With operations in around 50 countries, MAIRE employs approximately 10,800 people. MAIRE S.p.
A. is seeking a Group IT Senior Internal Auditor to join the Group Internal Audit Function. As part of the Function, the Group IT Senior Internal Auditor contributes to the independent evaluation of the Group’s IT governance, risk management, and control framework across a complex and international environment. The role supports the organization in managing technology-related risks by assessing systems, infrastructure, and digital processes, while promoting best practices in cybersecurity, data governance, and regulatory compliance. The position requires strong business acumen and the ability to translate complex technical risks into clear insights for senior management and stakeholders, to help strengthen decision-making, and ensure IT capabilities effectively support the Group’s strategic objectives and operational excellence. Execute IT audit engagements in strict coordination with the senior roles and in accordance with the International Professional Practices Framework of the Institute of Internal Auditors and with the Group Document Management System; Analyze policies, procedures, organizational chart and the Group Document Management System, to develop a thorough understanding of business processes in scope for assigned engagements (e.g., cybersecurity, access management, change management, data integrity, and incident response); Prepare and execute work programs to evaluate the design and the implementation of controls over the processes under review; Assess IT governance frameworks and ensure alignment with business objectives, industry standards and regulatory requirements (e.g., Directive NIS2, AI Act, ISO/IEC 27001:2022, NIST Cybersecurity Framework, COBIT); Support the execution of the IT General Controls (ITGCs) and application controls; Participate in developing internal audit reports, identifying observations and suitable recommendations; Execute, in close coordination with the senior roles and the Responsible, follow-up audits to monitor management’s interventions, where necessary; Contribute to the evolution of the audit approach, supporting the development of data analytics, automation tools and continuous auditing procedures. Bachelor’s or Master’s degree in Information Technology, Computer Science, Engineering, Business Administration or any related field; ~7+ years of experience in IT audit, IT risk consulting, cybersecurity or similar roles; ~ Strong knowledge of IT General Controls (ITGCs) and application controls, IT risk management and cybersecurity processes; ~ Good knowledge of key IT and information security regulations and frameworks, such as Directive NIS2, AI Act, ISO/IEC 27001:2022, NIST Cybersecurity Framework, and COBIT; ~ Knowledge of CAATs / data analytics tools (e.g., ACL, SQL, advanced Excel) and familiarity with continuous auditing procedures; ~ Fluency in English; ~ Excellent command of Microsoft Office package; ~ Professional certifications (CISA or CIA strongly preferred, CISSP, CISM, CRISC as a plus). Contract Type and Classification Contract type: Permanent; Middle Managers, consistent with job requirements and applicable Collective Agreement. The initial gross annual salary for this position, paid over 14 monthly installments, will be € 55.000. The compensation package will include the applicable elements of the Collective Agreement as well as benefits provided under company agreements, including flexible benefits and a participation bonus. Any additional variable components and/or benefits, regulated by Standards, Policies and/or company agreements, will be illustrated during the selection process. At the end of the selection process, the Company reserves the right to make an offer with a job level and/or gross annual salary different from what is indicated in this job posting, consistently with the candidate’s professional experience and technical and soft skills. Professional experience significantly higher/lower than the target profile; Scope and complexity of responsibilities assigned in the final job configuration; Alignment with internal grading system and consistency with comparable roles; taken in compliance with the principle of equal pay for equal work or work of equal value pursuant to Legislative Decree 96/2026 and EU Directive 2023/960; complies with the values and principles set out in the Group Code of Ethics and in the Diversity, Equity & Inclusion Policy.