Assistant manager - Internal Audit
Job Description: IT/Technology Auditor
Position: IT/Technology Auditor
Experience Required: 3-5 Years
Industry: Non-Banking Financial Company (NBFC) preferred, IT firms, consulting companies.
Location: Mumbai/Bangalore
Job Summary
We are seeking a skilled and experienced IT/Technology Auditor to join our team in Mumbai. The ideal candidate will have 3-5 years of experience in IT auditing, with a strong focus on cybersecurity, AWS cloud security, and a solid understanding of NBFC-related regulations. The role involves evaluating and improving the organization's IT systems, ensuring compliance with regulatory requirements, and mitigating risks associated with technology and cybersecurity.---
### Key Responsibilities
1. IT Audit Planning and Execution
- Conduct IT audits to assess the effectiveness of IT controls, processes, and systems.
- Develop and execute audit plans, including risk assessments and testing strategies.
- Identify vulnerabilities, risks, and areas for improvement in IT systems and processes.
2. Cybersecurity Audits
- Evaluate the organization's cybersecurity framework and practices.
- Assess the effectiveness of security controls to protect against cyber threats.
- Provide recommendations to enhance cybersecurity measures.
3. AWS Cloud Security
- Review and assess the security of AWS cloud infrastructure.
- Ensure compliance with best practices for cloud security, including identity and access management, data protection, and incident response.
- Identify and mitigate risks associated with cloud-based systems.
4. Regulatory Compliance
- Ensure compliance with NBFC-related IT regulations and guidelines issued by regulatory bodies such as RBI.
- Stay updated on changes in regulatory requirements and assess their impact on IT systems.
- Prepare audit reports and documentation to demonstrate compliance.
5. Risk Management
- Identify IT-related risks and recommend mitigation strategies.
- Collaborate with cross-functional teams to implement risk management practices.
- Monitor and report on the effectiveness of risk mitigation measures.
6. Reporting and Communication
- Prepare detailed audit reports with findings, risks, and actionable recommendations.
- Present audit results to senior management and stakeholders.
- Provide guidance and training to teams on IT compliance and security best practices.
Qualifications and Skills
- Education: Bachelor's degree in Information Technology, Computer Science, or a related field. Professional certifications such as CISA, CISSP, or AWS Security Specialty are highly desirable.
- Experience: 3-5 years of experience in IT auditing, with a focus on cybersecurity and cloud security.
- Technical Skills:
- Strong knowledge of cybersecurity frameworks and best practices.
- Hands-on experience with AWS cloud security tools and configurations.
- Familiarity with IT governance frameworks such as COBIT, ISO 27001, and NIST.
- Regulatory Knowledge:
- In-depth understanding of NBFC-related IT regulations and compliance requirements in India.
- Awareness of RBI guidelines and other relevant regulatory frameworks.
- Soft Skills:
- Strong analytical and problem-solving skills.
- Excellent communication and report-writing abilities.
- Ability to work independently and collaboratively in a team environment.
### Why Join Us?
- Opportunity to work with a leading NBFC in India.
- Exposure to cutting-edge technologies and cloud-based systems.
- A dynamic and collaborative work environment.
- Competitive compensation and growth opportunities.