
Key Responsibilities :
- Plan and execute end-to-end IT, cybersecurity, and information security audits.
- Assess IT governance, cyber risk management, and security frameworks.
- Review the design and effectiveness of controls across :
i. Identity & Access Management (IAM)
ii. Network, Endpoint, Cloud & Application Security
iii. Data Protection
iv. Patch & Vulnerability Management
v. Change Management
vi. Logging, Monitoring & Incident Management
vii. Backup & Recovery
viii. Configuration, Asset & Physical Security
- Perform IT General Controls (ITGC) reviews and third-party/vendor security assessments.
- Evaluate compliance with standards such as ISO 27001, NIST, COBIT, SOX/ICFR, GDPR, DPDP, and CERT-In.
- Identify high-risk areas, validate remediation, and monitor audit findings to closure.
- Prepare audit reports and present key findings to senior management and Audit Committees.
- Support continuous monitoring, analytics, and capability building for internal audit teams.
Qualifications :
- B.Tech (IT/CS) with MBA or Master's in Cyber Security, Information Security, Computer Science, or related field.
- Preferred certifications: CISA, CISSP, CISM, CRISC.
- 8+ years of experience in IT Audit, Cybersecurity, ISMS, Technology Risk, or Risk Assurance.
- Strong knowledge of ISO 27001, IAM, SOC, ITGC, cloud security, and enterprise technology environments.
Didn’t find the job appropriate? Report this Job