Top

IT Audit Risk Assessment

Bengaluru, Karnataka, India

126 Days ago

Job Description


IT Advisory Risk ConsultingIT Audit & Assurance

Our client's IT Advisory Risk Consulting team is looking for Associate Consultants/ Consultants/ Assistant Managers to join their IT Audit & Assurance team in Bengaluru. Team provides Independent assurance on controls in place across client's IT environment and ways to mitigate Technology risks.

Following are some of our key solution offerings

  • Risk Based IT Internal Audit
  • IT SOX 404 Controls Testing, Quality Assurance
  • Internal Financial Controls related to IT General Controls
  • IT General Controls as part of Financial Statements Audits
  • IT Risk & Control Self-Assessment
  • Business Systems Controls / IT Application Controls
  • Auditing Emerging Technologies such as Cloud Security, Intelligent Automation, RPA, IoT etc.
  • IT Attestation (SOC1/SOC2/ISAE 3402, ISAE 3000 etc.)
  • Third Party/Vendor Risk Assessments

Position: Associate Consultants/ Consultants/ Assistant Managers

Location: Bengaluru

Requirements

Industry Experience:

  • Plan, budget and execute the day-to-day activities of infrastructure audit engagements for clients
  • Assess client's security landscape, assess, evaluate and recommend most suitable security solution, tools & techniques to create a threat resilient landscape using our client's differentiated approach and methodologies. Provide security concept, framework & standards for development & support client teams for the solution design, customization build and roll out to end users.
  • Perform a holistic security risk assessment of the client's IT landscape taking various assets, threats, vulnerabilities, business impact & legal aspects into consideration. Designing and implementing controls to mitigate identified risks by lucid communication to client stakeholders. Effective persuasive/convincing abilities while communicating gaps detected during audits, risk assessments, attestation engagements.
  • Collaborate with other practice groups to review the effects of new threats and vulnerabilities in the security space to assess, remediate, test and protect client application artefacts, data and enterprise ecosystems from threat vectors as they emerge.
  • Work with other technology groups to provide cohesive solutions in Risk assessments, Financial statement audits, Attestation engagements encompassing network architecture, application, database, , standards and implementation related mandates for development, deployment and maintenance.
  • Manage teams delivering co-working discovery workshops & support delivery teams to provide assessment, remediation, testing and standards refresh for the application security practice.
  • Present and distill complex Security solutions into simple, easy to understand concepts for both technical and non-technical audiences especially in the context of opportunity pursuit.
  • Drive Innovation through Offerings: Drive profitable growth through the execution of the strategy and the strengthening of the audit and assurance practice
  • Building innovative & collaborative solutions to bring combined offerings such as security related combinations with J2C, API, Data security as advisory & execution footprint to capture opportunities & illustrate convergence
  • Bring the audit and assurance practice to life to achieve sales and commercial opportunities in a collaborative ecosystem and follow through with support for cost effective high quality execution.

Additional Responsibilities for Assistant Managers:

  • Supervise associates and interns on engagements
  • Serve as a liaison between financial services clients and upper management
  • Establish and sustain long-term profitable client relationships that drive value creation, delivery excellence and a positive client work environment
  • Works with the client to minimize delivery disruptions and effectively manages client urgencies.
    Qualifications
    • Engineering / MBAs with atleast 6+ years of experience
    • 3+ years of experience with hands on exposure to Infrastructure / Mobile/ Web application security spanning across various technologies.
    • Working level familiarity of advanced security assessment concepts, including but not limited to , Malware analysis, OT/ICS security, Cloud security, security in IoT, Blockchain, RPA and emerging technologies, etc.
    • Working level familiarity with Static and Dynamic Analysis tools (SAST, DAST, IAST). Ability to manage deployment & use of OWASP tools and methodologies.
    • Ability to elucidate vulnerabilities and weaknesses in the OWASP Top10,WASCTCv2, SANS Top-25 and CWE25 to client IT/ISO audiences and discuss effective defensive techniques.
    • Comprehensive understanding and previous oversight of IT hardware, software, networking, databases, API services, J2C storage, licensing and related hosting needs.
    • Infrastructural configuration reviews to identify the security related gaps within the IT environment
    • Preference would be given to significant experience in relevant technical knowledge: (a) financial statement IT Audits; (b) IT internal or IT operations audits; (c) IT SOX engagements (d) Emerging Technology Risks (e) Data Privacy and PCI-DSS risks
    • Good to have, add on skills - Working level familiarity with relevant vulnerability scanning tools (e.g., Qualys, Nessus, Nexpose, Saint or any other open source tools). Working level familiarity with web application vulnerability scanning tools (e.g. IBM AppScan, HP Fortify, Accunetix, NTO Spider, Burpsuite Pro or any other open source tools), SIEM tools (SolarWinds, Splunk, LogRhythm, IBM QRadar)
    • Ability to understand/identify best practices for infrastructure process and controls.
    • CISA, CISM, CISSP, CRISC, TOGAF certifications would be an added advantage
    • Prior experience in client facing / account management roles
    • Possess strong domain knowledge, understanding of IT processes supporting business and possible risks in operations of at least two industry sectors
    • Demonstrate integrity, values, principles, and work ethic and lead by example

    Benefits

    Work with one of the Big 4's in India

    Healthy work Environment

    Work Life Balance

    Qualification

    Bachelor's Degree

Key Skills Required

ArchitectureNetworkingAccount ManagementAutomationAPIData SecuritySalesAnalysisAPIApplication SecurityAssuranceAuditBlockchainClient ApplicationClient FacingClient WorkCloud SecurityCommunicationComprehensiveConfigurationConsultingConvincingCustomizationDatabaseDelivery ExcellenceDesignDevelopmentDomain KnowledgeDynamic AnalysisEcosystemEmerging TechnologiesFinancial ServicesFinancial StatementsIBM QRadarImplementationInfrastructureInnovationInternal AuditIT OperationsMaintenanceManagementNessusPersuasiveQuality AssuranceRemediationScanningSecuritySecurity AssessmentSecurity Risk AssessmentSecurity SolutionsStrategyTechnical KnowledgeValue CreationWeb ApplicationWeb Application SecurityWork Ethic

Job Overview


Job Function: IT/Computers - Software & Software Services

Job Type: Full Time

Workplace Type: Not Specified

Experience Level: Mid-Senior level

Salary: Competitive & Based on Experience

Experience: 6 - 7 yrs

Contact Information


Company Name: Talent Worx

Recruiting People: HR Department

Website: https://www.talworx.com/

Location

Important Fraud Alert:
Beware of imposters. elsejob.com does not guarantee job offers or interviews in exchange for payment. Any requests for money under the guise of registration fees, refundable deposits, or similar claims are fraudulent. Please stay vigilant and report suspicious activity.

Similar Jobs

Senior Frontend Engineer

Tresata • Bengaluru, Karnataka, India

Salary: Competitive & Based on Experience

View Job
Senior Platform Engineer

Weekday AI • Bengaluru, Karnataka, India

Experience: 4 - 5 yrs

Salary: Competitive & Based on Experience

View Job
Senior Software Engineer

Oblivious • Bengaluru, Karnataka, India

Experience: 4 - 5 yrs

Salary: Competitive & Based on Experience

View Job
Senior Software Engineer - JAVA

Two95 International Inc. • Bengaluru, Karnataka, India

Experience: 5 - 6 yrs

Salary: Competitive & Based on Experience

View Job
Senior Test Automation Engineer

ProArch • Bengaluru, Karnataka, India

Experience: 6 - 7 yrs

Salary: Competitive & Based on Experience

View Job
Software Engineer

Fortanix • Bengaluru, Karnataka, India

Experience: 5 - 6 yrs

Salary: Competitive & Based on Experience

View Job
Software Engineer - Backend

Serko Ltd • Bengaluru, Karnataka, India

Salary: Competitive & Based on Experience

View Job
AI Engineer

Weekday AI • Bengaluru, Karnataka, India

Experience: 3 - 4 yrs

Salary: Competitive & Based on Experience

View Job
Application Support Specialist

Talent Worx • Bengaluru, Karnataka, India

Salary: Competitive & Based on Experience

View Job
Transition Manager

Talent Worx • Bengaluru, Karnataka, India

Experience: 8 - 12 yrs

Salary: Competitive & Based on Experience

View Job