Group IT Audit Manager (m/f)
Join us as a Group IT Audit Manager and take a leading role in shaping and strengthening the IT audit function across the organization. You will oversee risk-based IT audits, regulatory compliance assessments (including DORA and NIS2), and manage a team of IT auditors. This is a strategic position for an experienced audit professional who combines strong technical expertise with leadership and stakeholder management skills.
Your responsibilities:
Developing IT audit function and its’ methodologies.
Conducting IT risks assessment for internal audit planning.
Conducting IT risk-based audits including DORA, NIS 2 and other relevant acts compliance verifications.
Managing a team of IT auditors.
Execution and documentation of all audit process steps including: planning, scheduling, preparation of working papers, reporting of initial results to management and drafting high quality audit reports.
Formulating clear, objective and relevant conclusions and practicable recommendations.
Reporting of IT audits results to management and obtaining their sing-off.
Following-up on action plans to ensure timely mitigation.
Building and maintaining internal relationships with key stakeholders.
Our requirements:
Education: Degree in Information Systems, Computer Science, or related areas.
5+ years IT audit experience with a risk-based and process-oriented focus, including Internal Audit experience in a regulated environment.
2 + years team management experience.
Meeting all formal UKSC requirements / criteria for IT auditors in a light of NIS2 auditing.
Financial services, especially insurance, and health care provision experience are advantageous.
Relevant certifications such as CIA, CISA, CISM, CISSP, ITIL are highly desirable.
Experience in: managing a small project team, working independently with own initiative as well as with coordinating with outsourcing services partners.
Knowledge of IT frameworks including COBIT, ITIL, NIST and ISO standards.
Understanding of DORA, NIS2 requirements.
Language Skills: Apart from Polish, advanced English is required.
Work model: Hybrid (4 days per month working at Warsaw office).
International travel might be required (max 15-20%).
What we offer:
A real opportunity to influence the development of IT infrastructure and security standards across the organization.
Opportunities to expand your expertise and grow your professional skills.
A friendly work culture and collaboration with experienced professionals in Cybersecurity, Cloud, and Network domains.
Participation in a strategic Medicover project based on the latest cloud technologies and solutions.
An international work environment with colleagues located across Germany, Bulgaria, Romania, Norway, Sweden, and India.
Support in acquiring new knowledge and continuous development through dedicated learning and development programs.
Private healthcare coverage for you and your family.
Access to and co-funding of the Medicover Benefits platform, including cinema and theatre tickets, sports memberships, and more.
Discounts on services and products offered by Medicover companies.
Group personal accident insurance.
Engaging initiatives as part of our year-round well-being program, "Health All Year Round".
The opportunity to participate in employee volunteering activities through the Medicover Foundation.
Location:
Head Office, Al. Jerozolimskie 96, Warsaw, Poland.