Job Summary
Key Responsibilities
Depth knowledge in doing Audit/Control Testing for SAP applications
o Be part of an international IT GRC team including other control testers
o Carry out tests of IT security controls against Henkel’s control framework which is closely aligned to ISO27000
o Review evidence provided via GRC tool to demonstrate control effectiveness and check for further evidence together with IT and business colleagues in documentation, applications
o Support of IT and business colleagues in understanding security control objectives
o Work with Henkel’s GRC Platform ServiceNow GRC/IRM
Skill Requirements
o Several years of experience in relevant positions
o Seniority to come to decisions on effectiveness / ineffectiveness of IT controls independently, based on Henkel’s control framework and evidences provided as input to the control monitoring and testing.
o Good background on IT Security Frameworks, esp. ISO 27000 and NIST
o Good understanding of current cloud environments and its security challenges
o Willingness to learn about Henkels security tool landscape and how it interacts with the applications which are tested
o Strong communication skills to address both security experts and people with little to non security knowledge appropriately.
o Very good English language skills, spoken and in writing
o Having an IT Auditor background would help
Other Requirements
2. CISSP, CISM, or CISA certifications (optional but valuable)