Central Bank of Oman is seeking to recruit competent, committed, self-motivated and enthusiastic candidate to work as Executive IT Auditor.
Overall, Purpose of the Position:
- The Central Bank depends on resilient, secure and well-governed technology infrastructure to support critical operations and financial-sector responsibilities. Internal Audit therefore requires specialist capability across IT infrastructure, cybersecurity, information security and technology resilience.
- AI and emerging technology are treated as developing audit-risk areas. The role requires practical awareness of AI governance and technology risk, not deep AI engineering or model-development expertise.
- Responsible for conducting and supporting risk-based IT audits covering IT infrastructure, cybersecurity, information security, technology operations and related emerging technology risks. The role provides specialist assurance over key technology controls and supports practical assessment of AI-related governance and security risks where relevant.
Key Duties and Responsibilities :
- Plan and execute risk-based IT audits covering IT infrastructure, cybersecurity, information security and technology operations.
- Review controls over networks, servers, operating systems, databases, storage, data centers, cloud/on-premise platforms and critical technology services.
- Assess IT General Controls, identity and privileged access, change/configuration management, backup and recovery, patching and vulnerability management.
- Review cybersecurity governance, security monitoring, incident response, endpoint protection, resilience and disaster recovery arrangements.
- Evaluate network security, segmentation, firewall management, remote access and related infrastructure controls.
- Assess third-party and vendor technology risks, including managed services and outsourced infrastructure.
- Perform technical walkthroughs, configuration and log reviews, sample testing and other audit procedures and maintain appropriate evidence.
- Prepare clear audit observations, root cause analysis, risk implications and practical recommendations.
- Support review of work performed by other auditors and provide technical guidance and mentoring where assigned.
- Support audits of AI-enabled or emerging technologies by assessing governance, security, access, data protection, third-party use, logging and human oversight at a practical assurance level.
- Engage specialist internal or external resources where deeper AI or highly technical expertise is required.
- Provide technical guidance, mentoring and knowledge transfer to other auditors and support follow-up and thematic reviews.
- Any other responsibility allocated by the management from time to time by formal charters/ TORs or otherwise.
Minimum Qualifications and Experience :
- Bachelor's degree in information technology, Computer Science, Cybersecurity, Information Security, Computer Engineering, Information Systems, IT Audit, Technology Risk or a related discipline.
- Desirable Qualifications: CISA, CISSP, CISM, CRISC, CIA, ISO 27001 Lead Auditor/Implementer, CEH or relevant cloud/security certification.
- Training in AI governance, responsible AI or emerging technologies is an advantage.
- At least 8 years of relevant experience in IT Audit, cybersecurity, information security, IT infrastructure, technology risk or related areas, including meaningful IT Internal Audit or technology assurance experience.
- Experience in banking, central banking, financial services or another regulated environment.
- Practical exposure to infrastructure security, IAM/PAM, vulnerability management, SOC/SIEM, backup/DR, cloud and critical systems.
- Experience reviewing third-party technology arrangements and basic exposure to AI-enabled systems or AI governance is advantageous.
- Experience coordinating and managing specialist resources, secondments or co-sourced assignments.
Please Submit your application before 15th October 2026.