Information Security Auditor

3 months ago


Mumbai Metropolitan Region, India YES BANK Full time

Role & responsibilities

The role holder is responsible for conducting audit of information systems (IS) in accordance with professional audit standards and international best practices in order to ensure statutory compliance of all systems, processes and practices. The role holder is also responsible for preparing accurate audit finding, reports in compliance with regulatory provisions.

Core Responsibilities


  • Conduct the IS audits (ITGC controls, VA, PT, APPSEC, NSAR, CA, BCP, DR, Cloud Security, Cyber Security, Security Operations and Surveillance, Information security and privacy controls, IT Processes Data Centre Operations, identity and Access Management, Change Management, Incident Management etc.) across all technology segments
  • Assist in implementing risk-based audit plans to ensure safety and soundness of the Bank.
  • Ensure completion of assigned audits and documentation of work papers on time.
  • Provide improvement/ suggestions to existing process / systems to line management
  • Assist in keeping Audit Procedure Manual and checklists current and updated.

People Management or Self-Management Responsibilities


  • Defines performance goals at the start of the year in discussion with the reporting manager and ensures that the goals are monitored and achieved during the course of the year.
  • Takes ownership of his/her own learning agenda by identifying development needs in consultation with the reporting manager and working towards bridging the gaps through various means which go beyond just training.
  • Understands the competencies relevant to his/her role, and works towards displaying as well as developing these effectively.
  • Keeps abreast of relevant professional/industry, regulatory developments, new techniques and current issues through continued education and professional networks.

Risk and Internal Control Responsibilities


  • Follows risk policy and processes to mitigate the operational, regulatory, financial, informational, reputational and audit risks as instructed by the departmental manager.
  • Executes the established internal control systems and compiles relevant information for departmental audits, as necessary.
  • Possess strong presentation skills and good working knowledge of applicable regulatory compliances

TECHNICAL COMPETENCIES

Technical Competencies


  • ITGC Controls
  • Risk assessments
  • VA, PT, APPSEC, NSAR, CA
  • Information Security standards ISO 27001
  • BCP and DR
  • Cloud Security
  • Cyber Security
  • Security Operations and Surveillance
  • Information security and privacy controls
  • Banking Technologies

Certifications


  • CISA OR ISO 27001 LA - Mandatory and / or CISSP, CRISC



  • Mumbai, Maharashtra, India CHNYD TRACE PRIVATE LIMITED Full time

    We are currently seeking an experienced Information Security Auditor who is familiar with frameworks such as ISO:27001, has previous experience as an Information Security Officer, and is willing to work on a contract basis. Additionally, proficiency in Vulnerability Assessment and Penetration Testing (VAPT) is highly desired. Job Description: Information...


  • Mumbai Metropolitan Region, India YES BANK Full time

    Role & responsibilities The role holder is responsible for conducting audit of information systems (IS) in accordance with professional audit standards and international best practices in order to ensure statutory compliance of all systems, processes and practices. The role holder is also responsible for preparing accurate audit finding, reports in...


  • Mumbai, Maharashtra, India ShieldByte Infosec Pvt. Ltd. Full time

    Job DescriptionThis is a full-time on-site role located in Mumbai. As an ISO 27001 Internal Auditor at ShieldByte Infosec Pvt. Ltd., you will conduct implementation and internal audits to assess and ensure compliance with ISO 27001 standards.You will perform risk assessments, evaluate existing control frameworks, and develop and implement remediation plans....

  • Information Security

    3 months ago


    Mumbai, Maharashtra, India Magnify It Pvt. Ltd. Full time

    100% Client Payroll **JD**: - Third-party/supplier security risk assessment - Interpreting security assurance reports (SOC2, pen test reports, security policies/processes/standards) - Reviewing security requirements in contracts - Understanding outsourced solutions and associated information classification - Assessing supplier security controls (based on...


  • Mumbai, India TAC Security Full time

    Job Title: Information Security Analyst Location: Lower Parel, Mumbai (On-site) Job Description: We are seeking a skilled Information Security Analyst to join our team in Lower Parel, Mumbai. In this role, you will play a critical part in monitoring and enhancing our cybersecurity posture. Key Responsibilities: Monitor security alerts and events using...


  • mumbai, India TAC Security Full time

    Job Title: Information Security AnalystLocation: Lower Parel, Mumbai (On-site)Job Description:We are seeking a skilled Information Security Analyst to join our team in Lower Parel, Mumbai. In this role, you will play a critical part in monitoring and enhancing our cybersecurity posture.Key Responsibilities:- Monitor security alerts and events using SIEM...


  • Mumbai, India TAC Security Full time

    Job Title: Information Security AnalystLocation: Lower Parel, Mumbai (On-site)Job Description:We are seeking a skilled Information Security Analyst to join our team in Lower Parel, Mumbai. In this role, you will play a critical part in monitoring and enhancing our cybersecurity posture.Key Responsibilities:- Monitor security alerts and events using SIEM...


  • mumbai, India TAC Security Full time

    Job Title: Information Security AnalystLocation: Lower Parel, Mumbai (On-site)Job Description:We are seeking a skilled Information Security Analyst to join our team in Lower Parel, Mumbai. In this role, you will play a critical part in monitoring and enhancing our cybersecurity posture.Key Responsibilities:Monitor security alerts and events using SIEM tools...

  • Information Security

    3 months ago


    Andheri East, Mumbai, Maharashtra, India Magnify It Full time

    Fulltime- Mumbai, Mumbai (Andheri East)- Posted 3 hours ago100% Client Payroll **JD**: - Third-party/supplier security risk assessment - Interpreting security assurance reports (SOC2, pen test reports, security policies/processes/standards) - Reviewing security requirements in contracts - Understanding outsourced solutions and associated information...


  • Mumbai, India TAC Security Full time

    Job Title: Information Security Analyst Location: Lower Parel, Mumbai (On-site)Job Description:We are seeking a skilled Information Security Analyst to join our team in Lower Parel, Mumbai. In this role, you will play a critical part in monitoring and enhancing our cybersecurity posture.Key Responsibilities:Monitor security alerts and events using SIEM tools...


  • mumbai, India TAC Security Full time

    Job Title: Information Security Analyst Location: Lower Parel, Mumbai (On-site) Job Description: We are seeking a skilled Information Security Analyst to join our team in Lower Parel, Mumbai. In this role, you will play a critical part in monitoring and enhancing our cybersecurity posture. Key Responsibilities: Monitor security alerts and events using...


  • Mumbai, India ANRGI TECH Full time

    We are urgently seeking an experienced Information Security Consultant to support our clients with ISMS (Information Security Management System) assessments and ISO 27001 implementations. The ideal candidate should hold an ISO 27001 Lead Implementer (LI) or Lead Auditor (LA) certification and have a strong track record of independently conducting IT audits...

  • IT & Security Auditor

    4 weeks ago


    Mumbai, Maharashtra, India Brennan IT Full time

    **Job Title: IT Security Auditor** **Why work for Brennan?** At Brennan, we aim to lead, not follow. One of the ways we do this is through an open diverse culture that values performance, where anyone in the team can bring new ideas to the table and see them thrive. Our people are empowered, unique, considerate, supportive, trusting and accepting being the...


  • Mumbai, India ANRGI TECH Full time

    Job DescriptionWe are urgently seeking an experienced Information Security Consultant to support our clients with ISMS (Information Security Management System) assessments and ISO 27001 implementations. The ideal candidate should hold an ISO 27001 Lead Implementer (LI) or Lead Auditor (LA) certification and have a strong track record of independently...


  • Mumbai, Maharashtra, India UBS Full time

    India - Audit - Group Functions **Job Reference #** - 303310BR **City** - Mumbai **Job Type** - Full Time **Your role** - Are you a sharp evaluator of risk? Can you investigate complex technology problems, identify concerns and propose solutions? Do you have experience performing technology audits in the Indian financial sector? UBS Group Internal Audit...


  • Mumbai, India ANRGI TECH Full time

    We are urgently seeking anexperienced Information Security Consultant tosupport our clients with ISMS (Information SecurityManagement System) assessments and ISO 27001implementations. The ideal candidate should hold anISO 27001 Lead Implementer (LI) or Lead Auditor(LA) certification and have a strong track record ofindependently conducting IT audits...

  • Auditor

    6 months ago


    Mumbai, India Infosec Career LLP Full time

    Responsibilities - The IT Security audit manager shall point out system flaws and promote efficient practices by recommending improvements in processing capability, user interface, and security designs. - Lead and manage the operation for Information Security Management System (ISMS), review all ISMS policies, procedures and other core ISMS framework...


  • Mumbai Metropolitan Region, India IDFC FIRST Bank Full time

    About the RoleWe are seeking an experienced Information Security Specialist to join our team at IDFC FIRST Bank. As a key member of our IT Operational Risk Management department, you will play a crucial role in ensuring the security and integrity of our banking channels.


  • Vashi, Navi Mumbai, Maharashtra, India QUIKIT Jobs LLP Full time

    **Experience: 1-2 Years | Location: Mumbai | Notice Period: Immediate to 30 Days** **Job Description -** Track and ensure adequate and timely resolution to all audit and risk assessment findings or issues relating to information security, and never miss a deadline.* Effectively and appropriately communicate audit engagement reports and recommendations to...


  • Mumbai, India Metropolitan Stock Exchange of India Full time

    **Role**: **Chief Information Security Officer** **Location**: Mumbai **Qualification Profile**: - Diploma in Computers, IT, or Electronics or Graduate/Post Graduate/B.Sc. -IT; Certifications: ISO 27001 Lead auditor / Lead Implementer, ITIL, CISA, CISSP**Experience**: 15+ Years **Responsibilities**: Chief Information Security Officer: Detailed Job...