ISO auditing
Author
Discussion

CoupeKid

Original Poster:

927 posts

87 months

Wednesday 29th September 2021
quotequote all
I’m between jobs at the moment.

I’ve got experience with ISO27001 and I’m being approached about qualifying as an auditor.

The money’s ok and I quite like travelling around asking people about their jobs but I’ve been audited several times and it just seems a bit repetitive and dead end. I’m not sure the travelling is compatible with having school age kids either.

Has anyone done it for a while and used it as a stepping stone to another job or can convince me it’s a fulfilling way to spend the next 10 years?

mostlyharmless

37 posts

143 months

Thursday 30th September 2021
quotequote all
I'm a trained auditor for ISO 27001. I would sooner repeatedly slam my old chap in a cash register than go auditing day in day out.

From my experience of driving the implementation of an ISMS at a small company the consultants had a reasonably interesting and varied job, the auditors did the same stuff day in day out and it showed.

Definitely do the auditor training as it will help you implement the standard but there are much more exciting ways to earning a living in this sphere.

On the travel front, all the engagements I had with consultants and auditors were remote (pre Covid) except from the external audit and this seemed to be driven purely on a cost basis.

sociopath

3,433 posts

88 months

Thursday 30th September 2021
quotequote all
Do you want to be hated on a day to day basis?

If so become an auditor.


BigRuts

2,081 posts

228 months

Thursday 30th September 2021
quotequote all
As an Infosec officer appointed not through choice I couldn't think of a worse job than to be an auditor.

Countdown

47,000 posts

218 months

Friday 1st October 2021
quotequote all
If it's anything like normal auditing it's as much fun as using a nail gun on your testicles.

CoupeKid

Original Poster:

927 posts

87 months

Friday 1st October 2021
quotequote all
I’m not getting a warm feeling about auditing as a job!

I have done the ISO27001 Lead Auditor trading course and it was ok.

The ISO 27001 and ISO9001 auditors I’ve met didn’t seem too bad or too unhappy. It does suit the ex-military and pedantic anoraks, of which I’m neither.

My concerns are that I get bored easily and a job that’s pretty repetitive and repeats annually could drive me nuts after a while and that auditors get sent all over the place, do a full day’s investigation and have to write it up in their evenings.

I’m told that this company would keep me in one geographic area and build in write up days. They also have a consultancy.

I’ll ask about career progression. That’ll either answer my concerns or mark me down as likely to move on which would sabotage my prospects, a win win either way.