Get alerts for new jobs matching your selected skills, preferred locations, and experience range. Manage Job Alerts
4.0 - 8.0 years
6 - 10 Lacs
Mumbai
Work from Office
About Us: Tsaaro is dedicated to Data Privacy and Security as its core focus Our team comprises specialized data privacy consultants, information security experts, and penetration testers, all working to empower our clients with seamless and highly efficient security solutions Our approach is centered around customization, understanding the unique needs of each organization, and finding solutions that align with their budget and resource constraints At Tsaaro, we adopt a pragmatic, risk-based strategy to deliver practical and effective advice By providing real-world guidance, support, and actionable recommendations, we confidently equip our clients to address a broad spectrum of security and privacy challenges Responsibilities As a Senior Data Privacy Consultant, you will be entrusted with the following key responsibilities: Design and implement data protection and privacy programs that cater to our clients' specific business needs, ensuring their sensitive information is well safeguarded Evaluate and assess our clients' data protection and privacy practices, offering valuable insights and actionable recommendations for continual improvement Demonstrate expertise in various standards, such as ISO 27001/2, ISO 22301, ISO 27018, NIST standards on Cyber Security, HITRUST, ISO 27701, etc , to assist clients in compliance and governance Provide guidance and support to clients in adhering to a complex web of national and international laws and regulations, including the EU General Data Protection Regulation (GDPR) and other privacy laws Assist in preparing policies, reports, and schedules for clients and relevant stakeholders, ensuring clear communication and alignment with industry best practices Conduct thorough audits of Privacy controls to monitor program effectiveness and compliance, ensuring data protection is at its optimal level Utilize online tools to facilitate Incident Management and Data Subject Rights processes, ensuring efficient and timely responses to potential data incidents Foster and maintain productive working relationships with client personnel, promoting effective collaboration and understanding of their specific needs Demonstrate a strong commitment to adhering to workplace policies and procedures, maintaining the highest standards of professionalism and confidentiality Contribute to cybersecurity engagements, developing cybersecurity strategies, governance, risk, and compliance activities, and cybersecurity policies in line with ISO 27001 and ISO 27701 Perform Gap Assessments, Risk Assessments, ISMS Documentation, Internal Audits, and support during Certification Audits to strengthen overall security frameworks Requirements To be considered for this role, the candidate must meet the following requirements: Possess a sound knowledge of fundamentals of information security systems Have 2-3 years of relevant experience in the field Demonstrate proficiency in standards such as ISO 27001/2, ISO 22301, ISO 27018, NIST standards on Cyber Security, HITRUST, ISO 27701, etc Exhibit a good understanding of GDPR, CCPA, or other privacy laws Display competence in governance and reporting, as well as a strong grasp of cyber and privacy risks Hold relevant qualifications such as CIPM, CIPT, CIPP/E Showcase excellent communication skills, both written and verbal Benefits Competitive salary and performance-based bonuses Professional development opportunities, including training and certifications Flexible working hours Collaborative and inclusive work environment Opportunity to work with a passionate team dedicated to making a difference in data privacy and security check(event) ; career-website-detail-template-2 => apply(record id,meta)" mousedown="lyte-button => check(event)" final-style="background-color:#6875E2;border-color:#6875E2;color:white;" final-class="lyte-button lyteBackgroundColorBtn lyteSuccess" lyte-rendered="">
Posted 1 month ago
4.0 - 8.0 years
6 - 10 Lacs
Noida
Work from Office
About Us Tsaaros prime focus is on Data Privacy and Security Our team of specialist data privacy consultants, information security consultants, and penetration testers help and advise our clients to make running a secure business easier, with high efficiency Everything we do is tailored to the individual organizational requirements, aligned with their budget and resource challenges We take a pragmatic, risk-based approach to provide our clients with real-world, workable advice, guidance, and support that helps them to deal with a wide range of security and privacy-related challenges Responsibilities: As a Data Protection Consultant, you will be entrusted with the following key responsibilities: Design and implement data protection and privacy programs that cater to our clients' specific business needs, ensuring their sensitive information is well safeguarded Evaluate and assess our clients' data protection and privacy practices, offering valuable insights and actionable recommendations for continual improvement Demonstrate expertise in various standards, such as ISO 27001/2, ISO 22301, ISO 27018, NIST standards on Cyber Security, HITRUST, ISO 27701, etc , to assist clients in compliance and governance Provide guidance and support to clients in adhering to a complex web of national and international laws and regulations, including the EU General Data Protection Regulation (GDPR) and other privacy laws Assist in preparing policies, reports, and schedules for clients and relevant stakeholders, ensuring clear communication and alignment with industry best practices Conduct thorough audits of Privacy controls to monitor program effectiveness and compliance, ensuring data protection is at its optimal level Utilize online tools to facilitate Incident Management and Data Subject Rights processes, ensuring efficient and timely responses to potential data incidents Foster and maintain productive working relationships with client personnel, promoting effective collaboration and understanding of their specific needs Demonstrate a strong commitment to adhering to workplace policies and procedures, maintaining the highest standards of professionalism and confidentiality Contribute to cybersecurity engagements, developing cybersecurity strategies, governance, risk, and compliance activities, and cybersecurity policies in line with ISO 27001 and ISO 27701 Perform Gap Assessments, Risk Assessments, ISMS Documentation, Internal Audits, and support during Certification Audits to strengthen overall security frameworks Requirements To be considered for this role, the candidate must meet the following requirements: Possess a sound knowledge of fundamentals of information security systems Have 1-2 years of relevant experience in the field Demonstrate proficiency in standards such as ISO 27001/2, ISO 22301, ISO 27018, NIST standards on Cyber Security, HITRUST, ISO 27701, etc Exhibit a good understanding of GDPR, CCPA, or other privacy laws Display competence in governance and reporting, as well as a strong grasp of cyber and privacy risks Hold relevant qualifications such as CIPM, CIPT, CIPP/E Showcase excellent communication skills, both written and verbal Benefits Competitive salary and performance-based bonuses Professional development opportunities, including training and certifications Flexible working hours Collaborative and inclusive work environment Opportunity to work with a passionate team dedicated to making a difference in data privacy and security Join and hustle with the India's fastest privacy and information security consulting company
Posted 1 month ago
4.0 - 8.0 years
6 - 10 Lacs
Noida
Work from Office
About Us Tsaaros prime focus is on Data Privacy and Security Our team of specialist data privacy consultants, information security consultants, and penetration testers help and advise our clients to make running a secure business easier, with high efficiency Everything we do is tailored to the individual organizational requirements, aligned with their budget and resource challenges We take a pragmatic, risk-based approach to provide our clients with real-world, workable advice, guidance, and support that helps them to deal with a wide range of security and privacy-related challenges Responsibilities As a Senior Data Privacy Consultant, you will be entrusted with the following key responsibilities: Design and implement data protection and privacy programs that cater to our clients' specific business needs, ensuring their sensitive information is well safeguarded Evaluate and assess our clients' data protection and privacy practices, offering valuable insights and actionable recommendations for continual improvement Demonstrate expertise in various standards, such as ISO 27001/2, ISO 22301, ISO 27018, NIST standards on Cyber Security, HITRUST, ISO 27701, etc , to assist clients in compliance and governance Provide guidance and support to clients in adhering to a complex web of national and international laws and regulations, including the EU General Data Protection Regulation (GDPR) and other privacy laws Assist in preparing policies, reports, and schedules for clients and relevant stakeholders, ensuring clear communication and alignment with industry best practices Conduct thorough audits of Privacy controls to monitor program effectiveness and compliance, ensuring data protection is at its optimal level Utilize online tools to facilitate Incident Management and Data Subject Rights processes, ensuring efficient and timely responses to potential data incidents Foster and maintain productive working relationships with client personnel, promoting effective collaboration and understanding of their specific needs Demonstrate a strong commitment to adhering to workplace policies and procedures, maintaining the highest standards of professionalism and confidentiality Contribute to cybersecurity engagements, developing cybersecurity strategies, governance, risk, and compliance activities, and cybersecurity policies in line with ISO 27001 and ISO 27701 Perform Gap Assessments, Risk Assessments, ISMS Documentation, Internal Audits, and support during Certification Audits to strengthen overall security frameworks Requirements Possess a sound knowledge of fundamentals of information security systems Have 2-3 years of relevant experience in the field Demonstrate proficiency in standards such as ISO 27001/2, ISO 22301, ISO 27018, NIST standards on Cyber Security, HITRUST, ISO 27701, etc Exhibit a good understanding of GDPR, CCPA, or other privacy laws Display competence in governance and reporting, as well as a strong grasp of cyber and privacy risks Hold relevant qualifications such as CIPM, CIPT, CIPP/E Showcase excellent communication skills, both written and verbal Benefits Opportunity to work with a dynamic and innovative team Career growth and development opportunities Competitive salary and benefits package A supportive work environment that values creativity and initiative check(event) ; career-website-detail-template-2 => apply(record id,meta)" mousedown="lyte-button => check(event)" final-style="background-color:#6875E2;border-color:#6875E2;color:white;" final-class="lyte-button lyteBackgroundColorBtn lyteSuccess" lyte-rendered="">
Posted 1 month ago
4.0 - 8.0 years
6 - 10 Lacs
Bengaluru
Work from Office
About Us: Tsaaro is dedicated to Data Privacy and Security as its core focus Our team comprises specialized data privacy consultants, information security experts, and penetration testers, all working to empower our clients with seamless and highly efficient security solutions Our approach is centered around customization, understanding the unique needs of each organization, and finding solutions that align with their budget and resource constraints At Tsaaro, we adopt a pragmatic, risk-based strategy to deliver practical and effective advice By providing real-world guidance, support, and actionable recommendations, we confidently equip our clients to address a broad spectrum of security and privacy challenges Responsibilities As a Senior Data Privacy Consultant, you will be entrusted with the following key responsibilities: Design and implement data protection and privacy programs that cater to our clients' specific business needs, ensuring their sensitive information is well safeguarded Evaluate and assess our clients' data protection and privacy practices, offering valuable insights and actionable recommendations for continual improvement Demonstrate expertise in various standards, such as ISO 27001/2, ISO 22301, ISO 27018, NIST standards on Cyber Security, HITRUST, ISO 27701, etc , to assist clients in compliance and governance Provide guidance and support to clients in adhering to a complex web of national and international laws and regulations, including the EU General Data Protection Regulation (GDPR) and other privacy laws Assist in preparing policies, reports, and schedules for clients and relevant stakeholders, ensuring clear communication and alignment with industry best practices Conduct thorough audits of Privacy controls to monitor program effectiveness and compliance, ensuring data protection is at its optimal level Utilize online tools to facilitate Incident Management and Data Subject Rights processes, ensuring efficient and timely responses to potential data incidents Foster and maintain productive working relationships with client personnel, promoting effective collaboration and understanding of their specific needs Demonstrate a strong commitment to adhering to workplace policies and procedures, maintaining the highest standards of professionalism and confidentiality Contribute to cybersecurity engagements, developing cybersecurity strategies, governance, risk, and compliance activities, and cybersecurity policies in line with ISO 27001 and ISO 27701 Perform Gap Assessments, Risk Assessments, ISMS Documentation, Internal Audits, and support during Certification Audits to strengthen overall security frameworks Requirements To be considered for this role, the candidate must meet the following requirements: Possess a sound knowledge of fundamentals of information security systems Have 2-3 years of relevant experience in the field Demonstrate proficiency in standards such as ISO 27001/2, ISO 22301, ISO 27018, NIST standards on Cyber Security, HITRUST, ISO 27701, etc Exhibit a good understanding of GDPR, CCPA, or other privacy laws Display competence in governance and reporting, as well as a strong grasp of cyber and privacy risks Hold relevant qualifications such as CIPM, CIPT, CIPP/E Showcase excellent communication skills, both written and verbal Benefits Competitive salary and performance-based bonuses Professional development opportunities, including training and certifications Flexible working hours Collaborative and inclusive work environment Opportunity to work with a passionate team dedicated to making a difference in data privacy and security check(event) ; career-website-detail-template-2 => apply(record id,meta)" mousedown="lyte-button => check(event)" final-style="background-color:#6875E2;border-color:#6875E2;color:white;" final-class="lyte-button lyteBackgroundColorBtn lyteSuccess" lyte-rendered="">
Posted 1 month ago
4.0 - 8.0 years
6 - 10 Lacs
Noida
Work from Office
About Us Tsaaros prime focus is on Data Privacy and Security Our team of specialist data privacy consultants, information security consultants, and penetration testers help and advise our clients to make running a secure business easier, with high efficiency Everything we do is tailored to the individual organizational requirements, aligned with their budget and resource challenges We take a pragmatic, risk-based approach to provide our clients with real-world, workable advice, guidance, and support that helps them to deal with a wide range of security and privacy-related challenges We are seeking a talented and dynamic Senior Infosec Consultant to join our team who has a good exposure towards managing the projects relating to Information security domain and privacy protection from scratch Experience2+ years LocationNoida Key Objective And Responsibilities As an Assistant Manager, you will be entrusted with the following key responsibilities: Experience in leveraging industry standards and frameworks such as ISO 27001/2, ISO 22301, ISO 27018, NIST standards on Cyber Security, HITRUST, ISO 27701, etc , to assist clients in compliance and governance Design and implement data protection and privacy programs that cater to our clients' specific business needs, ensuring their sensitive information is well safeguarded Evaluate and assess our clients' data protection and privacy practices, offering valuable insights and actionable recommendations for continual improvement Provide guidance and support to clients in adhering to a complex web of national and international laws and regulations, including the EU General Data Protection Regulation (GDPR) and other privacy laws Data Audits and AssessmentsConducting regular data protection impact assessments (DPIAs) and audits to identify and mitigate privacy risks associated with data processing activities Conduct thorough audits of Privacy controls to monitor program effectiveness and compliance, ensuring data protection is at its optimal level Foster and maintain productive working relationships with client personnel, promoting effective collaboration and understanding of their specific needs Assist in preparing policies, reports, and schedules for clients and relevant stakeholders, ensuring clear communication and alignment with industry best practices Contribute to cybersecurity engagements, developing cybersecurity strategies, governance, risk, and compliance activities, and cybersecurity policies in line with ISO 27001 and ISO 27701 Perform Gap Assessments, Risk Assessments, ISMS Documentation, Internal Audits, and support during Certification Audits to strengthen overall security frameworks Utilize online tools to facilitate Incident Management and Data Subject Rights processes, ensuring efficient and timely responses to potential data incidents Demonstrate a strong commitment to adhering to workplace policies and procedures, maintaining the highest standards of professionalism and confidentiality Requirements To be considered for this role, the candidate must meet the following requirements: Hold relevant qualifications such as CIPP/E, CIPM, FIP, DCPLA, CDPO/IN, CDPO/P, ISO 27001 LA/LI, ISO 27701 LApreferred Minimum 2 years of related work experience; or a masters or MBA degree in business, computer science, information systems, engineering and/or data protection Possess a sound knowledge of fundamentals of information security systems Exhibit a good understanding of GDPR, CCPA, or other privacy laws Display competence in governance and reporting, as well as a strong grasp of cyber and privacy risks Showcase excellent communication skills, both written and verbal Proficiency in Microsoft Office Suite (Word, Excel, Power point) Benefits Opportunity to work with a dynamic and innovative team Career growth and development opportunities Competitive salary and benefits package A supportive work environment that values creativity and initiative Join and hustle with the India's fastest privacy and information security consulting company check(event) ; career-website-detail-template-2 => apply(record id,meta)" mousedown="lyte-button => check(event)" final-style="background-color:#6875E2;border-color:#6875E2;color:white;" final-class="lyte-button lyteBackgroundColorBtn lyteSuccess" lyte-rendered="">
Posted 1 month ago
4.0 - 9.0 years
6 - 9 Lacs
Chennai
Work from Office
SOX Auditor Chennai - Guindy, India Information Technology 17132 Overview The SOX ITGC Auditor is responsible for ensuring that the SOX processes support compliance of the internal controls for financial reporting. The SOX ITGC Auditor will perform assurance procedures to assess the design and effectiveness of ITGC, perform quality assurance over existing control, and help prepare reporting for business leadership. Responsibilities Duties and Responsibilities Preform detail-oriented, quality assurance over existing quarterly controls. Execute testing of end of year ITGC and application controls in accordance with defined test attributes and guidance (Tests of Effectiveness) Monitor, follow up on the status of corrective action plans, and test the remediation of identified deficiencies before end of year. Work with external auditors to ensure inquires and requests are addressed. Work with Enterprise Risk Management (ERM), SOX control performers, SOX control evaluators, and control owners to perform end of year tasks. Problem solve and step in to complete work to meet critical deadlines. Education and Experience Bachelors degree or higher in Computer Science, Information Technology, finance or accounting, similar field, or equivalent experience. 4+ years large public company internal and external auditing, with emphasis on IT auditing in large public companies with complex IT hybrid environments and/or large accounting firms with experience auditing a complex IT client base. Strong IT audit program and practices experience. Big 4 IT Audit experience required. Strong understanding of the general computer control areas and IT governance frameworks (e.g., COBIT), Sarbanes Oxley, and COSO framework. Strong ability to understand, assess and prioritize risks across the components of the IT environment (application, operating system, and database). Ability to work independently Strong analytical, interpersonal, and leadership skills with orientation toward process improvement Requirements Duties and Responsibilities Preform detail-oriented, quality assurance over existing quarterly controls. Execute testing of end of year ITGC and application controls in accordance with defined test attributes and guidance (Tests of Effectiveness) Monitor, follow up on the status of corrective action plans, and test the remediation of identified deficiencies before end of year. Work with external auditors to ensure inquires and requests are addressed. Work with Enterprise Risk Management (ERM), SOX control performers, SOX control evaluators, and control owners to perform end of year tasks. Problem solve and step in to complete work to meet critical deadlines. Education and Experience Bachelors degree or higher in Computer Science, Information Technology, finance or accounting, similar field, or equivalent experience. 4+ years large public company internal and external auditing, with emphasis on IT auditing in large public companies with complex IT hybrid environments and/or large accounting firms with experience auditing a complex IT client base. Strong IT audit program and practices experience. Big 4 IT Audit experience required. Strong understanding of the general computer control areas and IT governance frameworks (e.g., COBIT), Sarbanes Oxley, and COSO framework. Strong ability to understand, assess and prioritize risks across the components of the IT environment (application, operating system, and database). Ability to work independently Strong analytical, interpersonal, and leadership skills with orientation toward process improvement
Posted 1 month ago
6.0 - 8.0 years
27 - 32 Lacs
Mumbai
Work from Office
: In Scope of Position based Promotions (INTERNAL only) Job Title Control Testing & Assurance Testing Specialist Corporate TitleAssistant Vice President LocationMumbai, India Role Description Deutsche Bank AG (the Bank) has established the Controls Testing & Assurance department (CT&A) as an independent function, reporting to the Chief Administrative Officer (CAO). The Compliance Testing (CT) team within CT&A is responsible for providing assurance testing on the design and operating effectiveness of the businesses control environment and adherence to applicable regulations and the Banks policies. CT develops and executes an annual, risk-based testing plan that covers the risk categories owned by Compliance, across all businesses in the region. The role involves Compliance Testing Reviewer for DB AG Mumba Branch reporting to Compliance Testing team lead in Mumbai. The key relevant businesses are International Private Bank (IPB) Retail banking and Wealth Management business Investment Bank (IB) Fixed Income and Currencies, Origination and Advisory, Research Corporate Bank (CB) Cash Management, Trade Finance & Lending and Security Services What we offer you As part of our flexible scheme, here are just some of the benefits that you will enjoy. Best in class leave policy Gender neutral parental leaves 100% reimbursement under childcare assistance benefit (gender neutral) Flexible working arrangements Sponsorship for Industry relevant certifications and education Employee Assistance Program for you and your family members Comprehensive Hospitalization Insurance for you and your dependents Accident and Term life Insurance Complementary Health screening for 35 yrs. and above Your Key Responsibilities Support development of a plan for the location of coverage based on the Controls Testing & Assurance planning methodology. This will also involve collaboration with various Compliance stakeholders to ensure the implementation of adequate and effective testing program that meet local regulatory requirements. Execute testing program for controls including branch visits across India. Perform control testing based on requirements prescribed by RBI including annual review of Risk Based Supervision (RBS) Tranche III Ensure that all issues raised in CT have adequate remediation plans that are tracked and escalated promptly and appropriately. Develop relationships with the relevant Business Management offices, Divisional Control teams and Infrastructure functions. Sharing best practice and learnings with CT colleagues locally/regionally/globally. Assisting in the development and maintenance of appropriate Management Information to inform Senior Management of pertinent matters, in line with global Deutsche Bank/Compliance/CT standards and Assisting in any ad-hoc projects and tasks as necessary. Your Skills and Experience CA/MBA or other professional qualifications. CFA or FRM or partial qualification would be an advantage. Minimum of 8 to 10 years experience in compliance/ internal audit / control testing within a Financial Institution. Good experience of interpretation of RBI guidelines and applying them for control testing Good combination of performing risk-based reviews along with mandatory RBI regulatory reviews Prior experience of working with banking franchise in India along with Big 4 firms Good understanding of banking business in India, regulatory framework and various product offerings Proven investigative and analytical mindset & skills enquiry, analysis, interviewing, testing; well versed with technology and applications that can be utilized for assurance testing. Good drafting skills, including the ability to record and describe complex issues clearly and succinctly, in a way that are easily understandable by any recipient of the relevant reports. Strong attention to detail and ability to identify changes and impact of any changes to documents, systems, and processes in the context of compliance risks, remediation required, etc. The drive, discipline and enthusiasm to work independently under pressure. Ability to quickly understand complex issues and set a course of action (that others are prepared to follow) to meet specific goals. Strong verbal, written and presentation skills. Proactive seek to find the right solution and options to issues within and outside their specific remit, without being prompted and within an appropriate matrix management framework. Assertive and engaging and able to quickly build and maintain effective working relationships. Strong collaborative team player receptive to exchange of ideas and constructive criticism. Multi-cultural awareness and sensitivity. Proficient in the use of Microsoft Outlook, Excel (i.e., organizing data sets), Word, and PowerPoint. How we'll support you Training and development to help you excel in your career Coaching and support from experts in your team A culture of continuous learning to aid progression. A range of flexible benefits that you can tailor to suit your needs. About us and our teams Please visit our company website for further information https://www.db.com/company/company.htm We strive for a culture in which we are empowered to excel together every day. This includes acting responsibly, thinking commercially, taking initiative and working collaboratively. Together we share and celebrate the successes of our people. Together we are Deutsche Bank Group. We welcome applications from all people and promote a positive, fair and inclusive work environment.
Posted 1 month ago
1.0 - 6.0 years
9 - 18 Lacs
Noida, Gurugram, Delhi / NCR
Hybrid
Key Responsibilities: Conduct comprehensive audits of IT systems, networks, and applications to assess their security, integrity, and compliance with regulatory requirements. Candidate should have experience in IT audits of ERP applications, interfaces, Access controls, Segregation of Duties analysis, ITGC, ITAC and audit trail review of various applications as part of IT audit support for statutory audits / external clients. Candidate should have good understanding of audit methodology and legal / regulatory requirements from statutory perspective. Evaluate IT policies, procedures, and controls to identify weaknesses, gaps, and areas for improvement. Perform risk assessments and vulnerability scans to identify potential security threats and vulnerabilities. Analyze audit findings and data to develop recommendations for mitigating risks and improving IT processes and controls. Prepare detailed audit reports documenting findings, recommendations, and corrective actions. Communicate audit results and recommendations to management and stakeholders, including technical and non-technical audiences. Collaborate with IT and business stakeholders to implement corrective actions and remediation plans. Stay current with industry best practices, emerging technologies, and regulatory requirements related to IT security and compliance Qualifications: Required: CA/ Btech 1-8 years of experience in the same domain Preferred: CISA/ DISA certified Experience with using data techniques such as IDEA or ACL, Tableau, Qlik, Power BI, SAS or similar SAP certification, reviews of OS (Linux,etc) and database (Oracle,SQL, etc) Good communication skills (Verbal & Written) Skills and Competencies: Need to have extensive experience in Statutory IT Audit / External IT Audit, as an IT auditor support for Financial Statement Audit. Have deep knowledge and experience of testing ITGCs, ITACs (IT Automated) include control testing of domains such as change management, program development, logical access and computer operations Should have relevant experience of working with ERP accounting systems such as SAP, Oracle and other home grown systems Experience in SOC 1 & 2 testing and reporting as well as worked on SoX 404 engagements Should have experience in handling large engagements (private/listed) in India or other geographies with overseeing work of 2 or more people. Monitor time and manage timelines as you would be expected to work on multiple projects at a point of time Good communication skills (Verbal & Written) Flexibility to adapt to a variety of engagement types, working hours and work environments
Posted 1 month ago
6.0 - 11.0 years
2 - 7 Lacs
Gurugram
Work from Office
SUMMARY SOX Audit ITGC Testing Team Lead We are in search of a highly skilled and experienced individual to fill the position of SOX Audit ITGC Testing Team Lead for our client's dynamic team in Gurgaon. The ideal candidate should possess a robust technical background and a minimum of 6-8 years of experience in ITGC testing. This role will involve leading and executing ITGC testing activities to ensure compliance with Sarbanes-Oxley (SOX) standards. Key Responsibilities ITGC Testing: Develop and implement comprehensive ITGC test plans and procedures. Identify and evaluate key risks and controls associated with financial reporting. Create and execute test cases to assess control effectiveness. Document test results and deliver detailed reports to management. SOX Compliance: Ensure adherence to SOX requirements and best practices. Contribute to the development and upkeep of SOX documentation. Stay informed about industry trends and regulatory changes. Stakeholder Management: Collaborate with internal and external stakeholders, including auditors and management, to address testing requirements and provide timely updates. Risk Assessment: Identify and evaluate potential risks and vulnerabilities that could impact financial reporting. Recommend mitigation strategies to address identified risks. Continuous Improvement: Identify opportunities for process enhancement and implement best practices to improve testing efficiency and effectiveness. Qualifications and Experience Bachelor's degree in Computer Science, Information Systems, or a related field. Minimum of 6-8 years of experience in ITGC testing. Strong technical background, including knowledge of IT general controls, application controls, and data integrity. Experience with SOX compliance and auditing standards. Excellent analytical and problem-solving skills. Strong communication and interpersonal skills. Ability to work independently and as part of a team. Requirements Qualifications and Experience: Bachelor's degree in Computer Science, Information Systems, or a related field. Minimum of 6-8 years of experience in ITGC testing. Strong technical background, including knowledge of IT general controls, application controls, and data integrity. Experience with SOX compliance and auditing standards. Excellent analytical and problem-solving skills. Strong communication and interpersonal skills. Ability to work independently and as part of a team.
Posted 1 month ago
5.0 - 8.0 years
13 - 20 Lacs
Bengaluru
Hybrid
We seek a professional with 5-7 years of postgraduate experience in IT General Controls, SOX 404, GRC,SOC & ITAC, preferably CISA certified. Apply now at heena@yeslandmark.com or call 7019111984
Posted 1 month ago
2.0 - 6.0 years
4 - 8 Lacs
Hyderabad
Work from Office
The Control Testing with Banking Domain Knowledge role involves working with relevant technologies, ensuring smooth operations, and contributing to business objectives. Responsibilities include analysis, development, implementation, and troubleshooting within the Control Testing with Banking Domain Knowledge domain.
Posted 1 month ago
2.0 - 7.0 years
7 - 9 Lacs
Navi Mumbai
Work from Office
We are looking at compliance professionals having ITGC experience. Experience - 3 years. Location - Navi Mumbai Managed and led multiple audit engagements, starting from the planning, execution, and testing of IT General Controls (ITGCs) • Collaborated with cross-functional teams to discuss audit findings, providing insights and recommendations for enhancing control mechanisms and reducing risk exposure. • Discussed issues and observations with the client and counterparts, highlighting issues along with the suggestions for process improvement/ strengthening the internal controls. • Prepared and presented detailed audit findings and impact table to senior management, highlighting key findings, risk areas, and recommendations for strengthening IT controls • Conducted follow-up reviews to verify that corrective actions and improvements were effectively implemented in response to previous audit findings.
Posted 1 month ago
3.0 - 8.0 years
0 Lacs
Hyderabad, Bengaluru, Delhi / NCR
Hybrid
Job description You'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And were counting on your unique voice and perspective to help become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. Technology Risk As part of our Technology Risk team you'll contribute technically to IT Risk and Assurance client engagements and internal projects. An important part of your role will be to actively establish, maintain and strengthen internal and external relationships. Youll also identify potential business opportunities for within existing engagements and escalate these as appropriate. Similarly, youll anticipate and identify risks within engagements and share any issues with senior members of the team. The Opportunity Were looking for Manager level to join the leadership group of our Assurance- Technology Risk Team. This is a fantastic opportunity to be part of a leading firm whilst being instrumental in the growth of a new service offering. Your key responsibilities are to Manage and lead a team of SAP staff and seniors on SAP projects, ensuring adherence to project timelines and quality standards. Counselling the team members with the SAP related queries, latest updates on relevant applicable standards. Preparing and sharing the proposal & pursuits for SAP engagements. Performing budget vs actual analysis and ensure complete utilisation of the team members throughout the engagement. Regular connects with onshore counterparts to ensure the deliverables are meeting expectations & standards, creating opportunities basis skill sets. Managing schedules of the team members based on the project requirements, skills, scope of work. Participate in designing, developing, and implementing SAP solutions to meet business requirements effectively and effectively. Contribute to the SAP CoE team as a key member and assist with facilitating practice wide training (SAP ITGC/ SAP ITAC /SAP Pre & Post Implementation) curriculum. Work closely with onshore, cross-functional teams and develop strong relationships as project manager across the organisation. Stay updated with and promote awareness of updated ERP versions & its functionalities, industry best practices. Active team member executing project management/ stakeholders management (Client, Assurance, onshore) Provide quality deliverables with value addition on the engagements and is known as SMR across organization. Skills and attributes for success Excellent project management, time management, managerial and leadership skills. Experience in reviewing and testing of SAP S4 Hana / SAP ECC IT general controls (ITGC) for key domains such as access management, change management, computer operations, SDLC (System Development Life Cycle) Experience in reviewing and testing SAP S4 Hana / SAP ECC security & configurations such as debugging, client settings, etc. Experience in performing pre & post implementation reviews in SAP S4 Hana / SAP ECC environment and have been through S4 Hana/ ECC lifecycle & performing migration testing. Knowledge and understanding of the TCode, tables used to extract the data from SAP S4 Hana / SAP ECC with relation to ITGC and ITAC testing. Knowledge and understanding of SAP S4 Hana / SAP ECC user access security architecture (Roles, profiles, Authorisation objects) Experience in testing of firefighter controls in SAP S4 Hana / SAP ECC and GRC. Experience in reviewing and testing the Operating System (OS) and Hana Database (DB) controls in SAP S4 Hana / SAP ECC environment. Experience of working with other SAP applications such as GRC, Fiori, BW, BI, Ariba, Concur, Success Factor, VIM, Vistex. Experience in evaluation and testing of sensitive access and SOD (Segregation of Duties) across key business and IT process in SAP S4 Hana / SAP ECC and GRC environment. Experience in SAP GRC access control (AC) & process control (PC), financial compliance management (FCM). Experience in performing the walkthrough (Test of design) directly with the client, Operating Effectiveness and have knowledge of the financial statements assertions. Knowledge and understanding of the auditing methodology. Experience in reviewing and interpretation the ABAP codes with relation to the control testing for ITGCs and ITACs in SAP S4 Hana / SAP ECC environment. Experience in reviewing and testing the key reports ensuring the risks (completeness & accuracy) related to IPEs (Information Produced by Entity) are addressed. Knowledge and experience of industry specific SAP S4 Hana / SAP ECC modules. Knowledge of SAP S4 Hana / SAP ECC standard functionalities in relation to business and IT controls. Experience in reviewing and testing the key business process configurations (ITACs) in SAP S4 Hana / SAP ECC environment. Having strong knowledge of SAP S4 Hana / SAP ECC configurations (e.g., 3-way match, copy controls) is must. Experience in testing of interface controls between multiple systems and middleware controls. Experience in IT audit in the context of a financial audit & related regulations, auditing standards and guidelines. Knowledge and understanding of control frameworks such as COSO, internal control principles and related regulations including SOX and J-SOX. Knowledge and understanding of common IT governance, control, and assurance industry frameworks, including COBIT and ISACA best practices. Knowledge and understanding of third-party attestation standards (particularly SSAE16/18), other reporting and industry specific standards. To qualify for the role, you must have B.E/B.Tech (CS/ IT)/MBA, CA with at least 1+ years of experience. SAP S4 Hana / SAP ECC functional modules/ ABAP/ Security Certification (Preferred) CISA certified (Preferred) ISO 27001:2013 certified (Preferred) Any other relevant certification (Preferred) What we look for A Team of people with commercial acumen, technical experience and enthusiasm to learn new things in this fast-moving environment. Opportunities to work with technology risk practices globally with leading businesses across a range of industries. What we offer Were dedicated to helping our clients, from startups to Fortune 500 companies. You get to work with inspiring and meaningful projects. Our focus is education and coaching alongside practical experience to ensure your personal development. We value our employees, and you will be able to control your own development with an individual progression plan. You will quickly grow into a responsible role with challenging and stimulating assignments. Moreover, you will be part of an interdisciplinary environment that emphasizes high quality and knowledge exchange. Support, coaching and feedback from some of the most engaging colleagues around Opportunities to develop new skills and progress your career. The freedom and flexibility to handle your role in a way thats right for you.
Posted 1 month ago
3.0 - 7.0 years
7 - 13 Lacs
Pune, Bengaluru, Delhi / NCR
Hybrid
EYGDS is actively seeking seasoned ITGC SAP professionals to join our team. Experience required - 3 to7 years Locations - Gurgaon, Bangalore, Pune, Chennai, Noida, Pune, Kochi, Trivandrum & Kolkata Required Skills: Experience in reviewing and controls testing of SAP S4 Hana / SAP ECC including IT general controls (ITGC) and IT Application Controls (ITAC) pre & post implementation reviews migration testing. Security & configurations such as debugging, client settings, etc. Understanding of the TCode, tables used to extract the data from SAP S4 Hana / SAP ECC with relation to ITGC and ITAC testing. Understanding of SAP S4 Hana / SAP ECC user access security architecture (Roles, profiles, Authorization objects). Good to have certifications on SAP S4Hana/ SAP ECC security or business modules, CISA, CISSP
Posted 1 month ago
6.0 - 11.0 years
6 - 15 Lacs
Thane, Navi Mumbai, Mumbai (All Areas)
Work from Office
FISERV Location: Thane What does a successful Internal Audit- IT professional do at FISERV? • Efficiently conduct the audit projects as per The Institute of Internal Auditors standards and in accordance with Fiserv global Internal Audit framework and methodologies. What will you do: • Should be able to direct/execute audit project independently (covering planning, fieldwork and reporting stages of audits) • Lead a variety of moderately complex to complex IT focused audits including IT governance, service and project delivery, audits of IT technical domains such as networks, infrastructure, and applications. • Audit Co-ordination & Facilitation - Meetings with key personnel of various work areas • Planning, conducting walkthroughs, drafting process understanding and relevant controls. • Preparing planning memos, risk assessment matrix, risk assessment control matrix (RACM) and Internal controls • Documenting and Reviewing Test of Designs and Test of Effectiveness controls. • Perform analytical procedures/analysis to test the effectiveness of controls. • Document audit procedures and cross reference working papers. • Create management representation letter comments and recommendations and draft audit reports for management review. • Expected to assign variety of audits including operational, compliance or IT focused under a variety of financial or info-security/cyber security regulations in the US and other international locations in APAC, EMEA, LATAM, etc., • Validations of audit issues. • Conducting special reviews. What will you need to know: • Desired qualification: Computer Services engineering/ BSc/MSc-IT / BCA/MCA degree [with an emphasis in information technology or equivalent degree] • Experience: at least 6 to 8 years of IT Audit experience in assessing technology/IT controls and have experience in Internal Audit, Compliance & Risk Advisory services preferably in Banking and Financial services domain. • Experience in auditing IT Internal controls, IT risk mitigation and technology related processes reviews. • Good experience in IT General controls (ITGC) reviews, Cyber security controls, Infrastructure audits, application security audits, Network security control risk reviews. • Good client interfacing skills, drafting skills, communication, and interpersonal skills. • Computer proficiency, specifically Microsoft Office products (Word, Excel, PowerPoint, etc.) What would be great to have: • Desired certifications: CISA / CISSP / CISM / CCNA certified professionals
Posted 1 month ago
4.0 - 7.0 years
9 - 13 Lacs
Bengaluru
Work from Office
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by diversity and inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health equity on a global scale. Join us to start Caring. Connecting. Growing together. As an IT Security Risk Manager, you would support information security policies, standards, and procedures to secure and protect data. Work directly with user departments to implement procedures and systems for the protection, conservation, and accountability of proprietary, personal, or privileged electronic data. Primary Responsibilities Perform audits to identify control gaps and implement corrective action plans Ensure alignment of security policies/standards with IT infrastructure frameworks (e.g., ISO 2700x, NIST, ITIL) Monitor compliance with corrective action plans, and address non-compliance issues appropriately Demonstrate understanding of discovery technologies to identify system vulnerabilities (e.g. scanning tools) Establish appropriate security controls based on defined data classifications to align with applicable laws/regulations/standards Facilitate/lead security incident investigation Analyse business requirements and ensure that solutions meet established security policies and controls Maintain metrics and report them. Maintain current knowledge on information security topics and their applicability program requirements Communicate professionally with stakeholders/end users through multiple communication Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regards to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so Required Qualifications Bachelor's degree or higher level of education 4+ years of Information security experience Experience with ISO27001 (ISMS), ISO31000 (Risk management), HITRUST CSF, NIST Cybersecurity Framework, SOC Type1/2 Proven auditing skills and the ability to manage risk assessments / projects independently Proven excellent communication skills both verbal and written Proven good presentation skills particularly ability to present technology elements in manner personnel can follow and act Preferred Qualification CISSP, CISA or ISO27001 Lead Implementer or Lead Auditor certification At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes — an enterprise priority reflected in our mission.
Posted 1 month ago
5.0 - 8.0 years
15 - 25 Lacs
Hyderabad, Pune
Work from Office
IT SOX Compliance Analyst (Second Shift) Job Title: IT SOX Compliance Analyst (Second Shift) Job Description: We are seeking a motivated and detail-oriented IT SOX Compliance Analyst to support our Sarbanes-Oxley (SOX) compliance initiatives, with a focus on IT General Controls (ITGCs) and IT application controls. This role requires collaboration with internal audit teams and IT control owners to ensure effective control design, implementation, and remediation. The position is aligned to support global teams, requiring availability during the 2 PM to 11 PM IST shift. Key Responsibilities: Support the assessment, design, and implementation of IT General Controls (ITGCs) and IT application controls across key systems. Collaborate with internal audit and IT control owners to evaluate risks, discuss control deficiencies, and support audit-related activities. Assist in the preparation of documentation, including control deficiency memos and remediation plans. Oversee and facilitate end-to-end IT control walkthroughs to ensure proper documentation and understanding of control processes. Skills & Qualifications: Solid understanding of the Sarbanes-Oxley (SOX) Act, specifically ITGC and IT application control requirements. Experience in internal audit, IT risk management, and control testing. Strong communication and documentation skills, with the ability to work cross-functionally. Must be available to work during the 2 PM to 11 PM IST shift to support global operations. Job Description Job Title: IT SOX Compliance Analyst (Second Shift) Job Description: We are seeking a motivated and detail-oriented IT SOX Compliance Analyst to support our Sarbanes-Oxley (SOX) compliance initiatives, with a focus on IT General Controls (ITGCs) and IT application controls. This role requires collaboration with internal audit teams and IT control owners to ensure effective control design, implementation, and remediation. The position is aligned to support global teams, requiring availability during the 2 PM to 11 PM IST shift. Key Responsibilities: Support the assessment, design, and implementation of IT General Controls (ITGCs) and IT application controls across key systems. Collaborate with internal audit and IT control owners to evaluate risks, discuss control deficiencies, and support audit-related activities. Assist in the preparation of documentation, including control deficiency memos and remediation plans. Oversee and facilitate end-to-end IT control walkthroughs to ensure proper documentation and understanding of control processes. Skills & Qualifications: Solid understanding of the Sarbanes-Oxley (SOX) Act, specifically ITGC and IT application control requirements. Experience in internal audit, IT risk management, and control testing. Strong communication and documentation skills, with the ability to work cross-functionally. Must be available to work during the 2 PM to 11 PM IST shift to support global operations
Posted 1 month ago
5.0 - 7.0 years
9 - 15 Lacs
Hosur
Work from Office
Job Purpose: Internal auditing is an independent, objective assurance and consulting activity designed to add value and improve an organization's operations. It helps to accomplish organization objectives by bringing a systematic, disciplined approach to evaluate and improve the effectiveness of risk management, internal controls, and governance processes. Auditor / Lead auditor is responsible for conducting and reporting on IT systems & IT process related & cyber security related audits. Job Summary: We seek a passionate, dynamic, and experienced Audit Manager to manage the end-to-end IT Audits of TVSM & its subsidiaries The ideal candidate will possess strong IT audit & Governance skills, IT Technical skills, and the ability to effectively communicate and collaborate with various stakeholders and open to travel based on business needs. He / She will play a critical role in ensuring the quality, effectiveness and efficiency of our IT systems & processes through comprehensive audit. Key Responsibilities: Functional Responsibilities: Planning, Executing and Managingthe IT audits assigned as per the approved annual audit plan (Few examples of IT Audits - IT Governance, ITGC, IT Application Controls, IT infrastructure/database, IT Asset management/device management, Information Security, Cyber Security, IT Projects, BCP/DR, Data Privacy, Enterprise Architecture, System migration process and controls, etc) Carry out systems & process walkthroughs and drawing up the Risk & Control matrix Ensure compliance with established internal control procedures by examining records, reports, operating practices, and documentation Identify control gaps and opportunities for improvement Communicates & discuss audit findings with stakeholders, timely preparation & presentation of Audit reports, including recommendations. Document the results of audit work in accordance with SOP End to end management of co-sourced IT audit partners & audits where ever deployed Collaborating with relevant stakeholders to develop and implement risk management strategies, action plan to audit observations Travelling to different sites / offices for audit purposes based on requirement Regular interaction/liaising with other functions/process owners; keeping abreast with all the developments happening in the Company; keeping abreast with all the regulatory and technological changes/developments happening in the industry and in the internal audit space Data Analytics Working with the internal audit team & IT Team to co-ordinate development of data analytics for IA, development of continuous control monitoring scenarios. Job Requirements: Qualifications: Bachelor’s degree in IT/Computer Science; In addition, CISA would be preferred Min 5-6 years of IT Audit experience including IT Security audits; IT Audit experience in the automobile / manufacturing sector would be preferred; Prior experience of risk-based IT audits is mandatory Must possess relevant certifications related to Information Technology Systems Audit Functional Competencies: Knowledge & experience of IT environment and the key risks embedded in different IT processes and technology. Good command over both IT process audits and technical audits. Experience of conducting complex IT Security audits – Information Security Audits, Cyber Security Audits, Network security, etc Knowledge of risks embedded in emerging technologies such as Cloud Computing, AI, IOT, RPA, Data privacy tools, etc and auditing the same High attention to detail and excellent analytical skills. Behavioral Competencies: Team player & good Interpersonal skills Passion & dedication to work Detail oriented and fast learner Excellent analytical, problem-solving and critical-thinking skills Excellent verbal and written communication skills Strong ethical standards and a commitment to maintaining confidentiality
Posted 1 month ago
1.0 - 6.0 years
6 - 15 Lacs
Bengaluru
Work from Office
Role & responsibilities Strong understanding of ITGC, ITAC, SOC reports, and working knowledge of Audit tools & ServiceNow (SNOW) • Exposure to SOX, NIST 800-53, ISO 27000 series standards. Ability to support and document audit findings including action plans, remediation timelines, and closure tracking. Comfortable working from office/client location and in shift-based schedules Strong communication, stakeholder management, and project management skills Candidates holding CISA, CISM, ISO 27001 certifications will have an added advantage Preferred candidate profile Educational Background: Graduation / B.E. / B. Tech in any specialization Required Experience: 1-8 years in IT Audits, including ITGC, SOX / ICFR / IFC / SAS 70 / SSAE / SOC. Experience with IT Financial Audit, Business Automated Controls, and IT Risk Consulting or other compliance/regulatory audits. Perks and benefits How you'll grow At Deloitte, our professional development plan focuses on helping people at every level of their career to identify and use their strengths to do their best work every day. From entry-level employees to senior leaders, we believe there is always room to learn. We offer opportunities to help build world-class skills in addition to hands-on experience in the global, fast-changing business world. From on-the-job learning experiences to formal development programs at Deloitte University, our professionals have a variety of opportunities to continue to grow throughout their careers Explore Deloitte University, The Leadership Center. Benefits At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you
Posted 1 month ago
5.0 - 7.0 years
14 - 18 Lacs
Noida
Work from Office
Role Overview: We are seeking an experienced Audit and IT Control Compliance Professional to join our team in Chennai. In this role, you will be responsible for ensuring that the organization's financial operations and IT systems comply with internal and external audit standards and regulatory requirements. You will also manage compliance with IT controls, including security processes, vulnerability management, patching, and ensuring adherence to industry best practices.Key Responsibilities:- Perform audits and assessments of financial systems and IT operations, identifying compliance gaps and proposing effective solutions.- Coordinate internal and external audits related to IT controls, ensuring timely completion and addressing audit queries effectively.- Review financial data and IT systems to ensure compliance with established audit standards and best practices.- Ensure compliance with regulatory requirements such as SOX, GDPR, ISO 27001, and other relevant standards.- Conduct assessments and reviews of IT controls, including access controls, change management, patch management, and vulnerability management.- Identify areas of improvement in security processes such as patching, security vulnerabilities, and risk mitigation.- Monitor and report on the status of compliance with internal IT policies and external regulatory requirements.- Implement and maintain IT control frameworks and ensure that IT policies, procedures, and practices align with corporate governance.- Collaborate with IT and security teams to assess, test, and validate security controls related to patch management, vulnerability remediation, and risk management.- Participate in security audits, ensuring compliance with security standards and protocols.- Develop and maintain documentation and records for audits, ensuring a traceable and transparent process.- Recommend improvements and assist in the implementation of security measures to minimize risk and protect business-critical data.- Communicate audit findings, issues, and concerns effectively with senior management and relevant stakeholders.- Create clear and concise audit reports detailing findings, recommendations, and required actions to maintain compliance.- Provide expert advice to business units on the implementation of best practices for IT controls and security measures.- Assist in the development of compliance and audit strategies to improve overall business operations.- Stay current with industry trends, regulatory changes, and audit methodologies to ensure continuous improvement in compliance efforts.- Recommend and support the implementation of best practices to improve overall audit and IT control processes.- Support the ongoing training of staff and stakeholders on compliance procedures and security measures.- 5+ years of experience in audit and IT control compliance in a corporate or consultancy environment.- Experience conducting audits in areas such as financial systems, IT controls, and security operations.- Familiarity with regulatory frameworks, including SOX, GDPR, ISO 27001, and NIST.- Experience in identifying, managing, and mitigating security vulnerabilities and ensuring compliance with security processes like patching and risk management.- Strong communication skills, both written and verbal, with the ability to interact with senior management and stakeholders effectively.- Excellent problem-solving abilities and analytical thinking skills.- Detail-oriented and able to maintain accuracy while working with large datasets and complex systems.- Ability to work independently and as part of a team in a fast-paced environment.- Strong organizational skills with the ability to manage multiple priorities and deadlines effectively
Posted 1 month ago
5.0 - 8.0 years
12 - 16 Lacs
Bengaluru
Work from Office
Security Risk and Compliance Expert will be instrumental in shaping the global Information Security Management System (ISMS) within our Group Security team. This role involves engaging with various Business Groups and Corporate Functions to identify and manage information security risks, ensuring compliance and enhancing our security posture. Facilitate risk assessments, develop training, and contribute to the continuous improvement of security policies and tools. Enhance the overall security and compliance of services provided to our customers. You have: Master's or bachelor's degree in computer science, security engineering, or equivalent 5+ years of experience in information security in a multinational organization. Solid understanding of information security processes and technologies Practical knowledge of ISO/IEC 27001:2022 standard implementation Excellent documentation and communication skills It would be nice if you also had: Knowledge of security standards like CSA CCM, NIST CSF, NIS2, and SOC2 Experience delivering information security training Familiarity with RSA Archer and Microsoft Power BI or other GRC tools Certifications in information security (e.g., CRISC, CISSP and ISO 27001 LI/LA) Implement and operate the global Information Security Management System (ISMS) to enhance overall security and compliance Conduct risk assessments with global stakeholders to evaluate and report information security risks Develop and maintain the information security risk register, tracking mitigation progress and presenting reports to stakeholders Provide recommendations for security risk mitigation strategies tailored to different business groups Create, update, and maintain ISMS documentation and a repository of reports and audit records Facilitate training sessions to educate employees on ISMS practices and promote a strong security culture Collaborate with cross-functional teams to identify evolving security trends and compliance requirements Contribute to the continuous improvement of Nokia ISMS and related tools, utilizing KPIs to measure effectiveness
Posted 1 month ago
0.0 - 5.0 years
0 - 3 Lacs
Bengaluru
Hybrid
Perform testing of IT Application Controls(ITAC), IPE, and Interface Controls through code reviews, IT General Controls(ITGC) review covering areas such as Change Management, Access Management, Backup Management, Incident and Problem Management, SDLC, Data Migration, Batch Job scheduling/monitoring and Business Continuity and Disaster Recovery Perform Risk Assessment, identification, and Evaluation of Controls, prepare process flow diagrams and document the same in Risk & Control Matrix. Perform business process walkthrough and controls testing for IT Audits. Performing planning and executing audits, including: Information Security reviews Information Technology Infrastructure reviews Application reviews Use extensive knowledge of the client's business/industry to identify technological developments and evaluate impacts on the work to be performed Risk Based IT Internal Audit for Financial Services Entities IT SOX 404 Controls Testing, Quality Assurance Internal Financial Controls related to IT General Controls as part of Financial Statements Audits Business Systems Controls / IT Application Controls Auditing Emerging Technologies such as Cloud Security, Intelligent Automation, RPA, IoT etc. Working knowledge of programming languages(C/C++/Java/SQL)
Posted 1 month ago
1.0 - 2.0 years
3 - 4 Lacs
Gurgaon / Gurugram, Haryana, India
On-site
BNC has been exclusively mandated to recruit for an experienced SOX ITGC Consultant for one of our prestigious Big 4 clients, based at Gurgaon office. This is a permanent opportunity and we are looking for immediate joiners. Key Responsibilities : Conduct IT General Controls (ITGC) assessments as per SOX 404 requirements. Review and test key controls related to IT processes, including access management, change management, and operations. Coordinate with internal and external audit teams to support control testing and remediation efforts. Assist in preparing reports and documentation in line with client and regulatory requirements. Provide recommendations for control improvements and risk mitigation. Collaborate with business and IT stakeholders to understand control environment and assist in enhancing compliance. Key Requirements : CA or Non-CA candidates are preferred. 2 years of experience in SOX Testing, ITGC audits, and IT risk assessments. Ability to work independently and in a team, with strong analytical and communication skills. Open to candidates from Big 4 or relevant consulting/audit backgrounds. Immediate joiners are preferred and join within 15 days. If interested please share your resume at [HIDDEN TEXT]
Posted 1 month ago
3.0 - 6.0 years
10 - 15 Lacs
Bengaluru
Work from Office
Manage IT audits (SOX, ITGC), ensure quality delivery, review testing docs, identify process gaps, prepare reports, handle clients, guide juniors, support proposals, and improve engagement productivity.. Required Candidate profile Looking for 3–5 yrs exp in IT audits (SOX, ITGC), risk assessment, SOC1/2, with strong MS Office skills, good communication, and CISA/BE/B.Tech/MBA/MCA background. Big 4 experience preferred.
Posted 1 month ago
10.0 - 20.0 years
15 - 25 Lacs
Nagpur, Pune
Work from Office
Job Title: ITGC and SAP Security Consultant Location: Pune / Nagpur Job Type: Full-Time Work Hours: US EST Business Hours Availability : Immediate joiners preferred (within 12 weeks). About the Role: We are seeking a skilled and experienced ITGC and SAP Security Consultant to join our team in Pune or Nagpur . This full-time position requires supporting US EST business hours and is ideal for professionals with a strong foundation in IT General Controls (ITGC) and SAP Security. Key Responsibilities: Implement and manage IT General Controls (ITGC) to ensure compliance with internal and external audit requirements. Design, implement, and maintain SAP security roles and authorizations. Work closely with audit teams to support ITGC testing and remediation activities. Monitor and respond to SAP security incidents and perform regular access reviews. Conduct risk assessments, identify control gaps, and implement remediation strategies. Collaborate with cross-functional teams to improve SAP security controls and compliance. Requirements: Experience: 6 to 8 years in ITGC and SAP Security. Certification: CISP certified (Mandatory). Availability: Immediate joiners preferred (within 12 weeks). Proven experience in managing SOX compliance and SAP security audits. Strong understanding of SAP GRC, SAP roles, profiles, authorization objects, and user management. Familiarity with audit tools and methodologies. Preferred Attributes: Excellent analytical and problem-solving skills. Strong verbal and written communication skills. Ability to work independently with minimal supervision. Experience in supporting clients from the US or working in EST time zones is a plus. Why Join Us? Opportunity to work on global projects with a talented team. Competitive compensation and benefits. Flexible work environment with a focus on continuous learning and development. Interested candidates are encouraged to apply immediately. Please ensure your availability aligns with US EST business hours before applying. Interested candidates can share updated resume to Jagannath.Gaddam@quantumintegrators.com
Posted 1 month ago
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.
We have sent an OTP to your contact. Please enter it below to verify.
Accenture
31458 Jobs | Dublin
Wipro
16542 Jobs | Bengaluru
EY
10788 Jobs | London
Accenture in India
10711 Jobs | Dublin 2
Amazon
8660 Jobs | Seattle,WA
Uplers
8559 Jobs | Ahmedabad
IBM
7988 Jobs | Armonk
Oracle
7535 Jobs | Redwood City
Muthoot FinCorp (MFL)
6170 Jobs | New Delhi
Capgemini
6091 Jobs | Paris,France