Summary
Overview
Work History
Education
Skills
Certification
Accomplishments
INTRESTS
Timeline
Generic
Amir RIAHI

Amir RIAHI

Senior IT Auditor and Consultant
Tunis,Tunisia

Summary

Senior IT Auditor and Consultant with a Master’s degree in Extended Enterprise Information Systems, Audit, and Consulting from the University of Paris Dauphine. Currently at PwC, where my attention to detail is a valuable asset to identify errors and defects in projects. Experienced with evaluating IT systems and controls for compliance. Utilizes analytical skills to identify potential risks and recommend improvements. Knowledge of industry standards and best practices for information security and audit processes.

Overview

3
3
years of professional experience
3
3

Certifications

Work History

Senior IT Auditor & Consultant

PricewaterhouseCoopers
08.2024 - Current
  • Participated in the 2024 Société Générale information system statutory audit mission, supporting the PwC Paris office. My responsibilities included reviewing IT General Controls (ITGCs), testing IT Application Controls (ITACs), and IT Dependent Controls (ITDs) within my assigned scope as a lead. Additionally, I led design and process understanding meetings in English with individuals from Spain, India, Portugal, and other locations.
  • Led an IT risk analysis mission that involved several critical steps, including an in-depth diagnostic of IT processes, the creation of detailed flow diagrams for existing processes, a risk analysis using the NIST methodology, and the development of a risk treatment plan.
  • Assessed compliance with regulatory requirements, ensuring timely remediation of identified issues and avoiding potential penalties.
  • Evaluated internal controls and processes, streamlining workflows for increased efficiency and risk mitigation.
  • Developed detailed reports to assist management in implementing appropriate measures for optimal risk management.

IT Auditor & Consultant

PricewaterhouseCoopers
07.2023 - 08.2024
  • Contributed in the 2023 BNP Paribas information system statutory audit mission, supporting the PwC Paris office. These engagements included reviewing IT General Controls (ITGCs) and testing IT Application Controls (ITACs) and IT Dependent Controls (ITDs) in accordance with PwC methodology and professional standards. Additionally, I conducted design and audit understanding meetings in English with individuals in the UK, India, Italy, and other locations.
  • Participated in an advisory project aimed at digitizing the business creation process for public entities in Tunisia. This engagement involved an analysis of the
    current 'As Is' state and the provision of recommendations necessary for digitization and
    centralization of these services.
  • Engaged in information system
    audit missions within Tunisia. These missions encompass the evaluation of IT General
    Controls ITGCs and the testing of IT Dependencies, all carried out in accordance with
    PwC's methodology and professional standards.
  • Development of an internal strategic project aimed at automating tasks within an audit process using the Alteryx tool.

IT Auditor & Consultant

Ernst & Young
08.2022 - 06.2023
  • Assisted in information system audit missions such as France TV, AVRIL Group and Martin Belaysoud as part of statutory auditor mandates in support of the EY Paris office. These engagements include reviewing IT General Controls ITGCs and testing IT Application Controls (ITACs) and IT Dependent Controls (ITDs).
  • Participated in a compliance advisory mission as part of the statutory consulting support for EY Saudi Arabia. This engagement involved analyzing and implementing a data management framework developed by Saudi Arabia, specifically for public entities or companies collaborating with them.

IT Auditor & Consultant Intern

Ernst & Young
03.2022 - 08.2022
  • Assisted in a compliance audit mission for the Saudi public sector, utilizing the national framework developed by the NDMO, titled "Data Management and Personal Data Protection Standards," which incorporates various ISO security standards.
  • Participated in an advisory project. This engagement
    entailed the establishment of administrative processes aimed at conducting a thorough risk assessment.

Education

Master's Degree - Extended Enterprise Information Systems

Université Paris Dauphine-PSL
Paris, France
06-2022

Bachelor's Degree - Management

Université Internationale De Tunis
Tunis, Tunisia
07-2020

Skills

  • Proficient in Microsoft Excel
  • Advanced knowledge of Alteryx
  • Expertise in risk assessment
  • Basic proficiency in Python
  • Self-motivated and professional
  • Excellent communication skills
  • Strong organizational skills
  • Continuous learning mindset
  • Excellent time management skills
  • Fluent in Arabic

Certification

  • PECB Certified ISO/IEC 27005 Risk Manager
  • PECB Certified ISO/IEC 27001 Lead Auditor
  • PECB Certified ISO 22301 Lead Implementer

Accomplishments

  • Provided coaching at the Paris-Dauphine Tunis Hackathon as a representative of PwC.
  • Contributed to the project focused on automating journal entry processing using the Alteryx tool.

INTRESTS

Sports

  • Handball
  • Football/Soccer
  • Fitness training


Volunteering

  • Founder and president of Enactus Université Internationale de Tunis
  • Head of international coordination Rotaract Université Paris Dauphine-PSL

Timeline

Senior IT Auditor & Consultant

PricewaterhouseCoopers
08.2024 - Current

IT Auditor & Consultant

PricewaterhouseCoopers
07.2023 - 08.2024

IT Auditor & Consultant

Ernst & Young
08.2022 - 06.2023

IT Auditor & Consultant Intern

Ernst & Young
03.2022 - 08.2022

Master's Degree - Extended Enterprise Information Systems

Université Paris Dauphine-PSL

Bachelor's Degree - Management

Université Internationale De Tunis
Amir RIAHISenior IT Auditor and Consultant