Information Systems Auditor

4 weeks ago


india Marken Full time

Description

Job Title:  

Information Systems Auditor 

Location:

Pune

M ain Purpose:  

 The Information Systems (IS) Auditor serves as a trusted advisor when assessing internal systems and controls, and is a key point of contact with external examiners. Identifies and verifies risks to systems and data, and ensure teams are cognizant of any deficiencies and working toward addressing findings and recommendations. Evaluates risk according to best practices, as well as compliance mandates, and provides detailed reports from assessments. When external examiners conduct engagements. Acts as a primary point of contact and facilitator to ensure teams are abiding by safe computing and administrative procedures.

In this position, the IS Auditor will regularly review, evaluate and verify controls, and then document and report based on the state of the engagements. Uses key risk indicators and IT general controls (ITGC) when assessing system design, data privileges/access and the entire supply chain related to a business system. Follows up and verifies appropriate actions have taken place, especially when risk is excessive and an organization is at risk or out of compliance. 

Main Duties and Responsibilities:  

 Maintain and support internal audit department practices and processes with detailed reporting and accompanying technology recommendations. Serve as part of a team of auditors to confirm a rigorous audit program focusing on ITGC and key risk indicators across the business. Work closely with audit and security leadership to ensure cybersecurity and audit policies and practices as defined in global and industry standards are aligned with an appropriate level of risk. Retain expertise in one or more compliance standards, including Sarbanes-Oxley Act (SOX), Payment Card Industry (PCI), Health Insurance Portability and Accountability Act (HIPAA), Control Objectives for Information Technology (COBIT), National Institute of Standards and Technology (NIST) and International Standards Organization (ISO) 27001. Be actively informed and engaged in upcoming and completed security projects across the business. Enforce a strong security culture mindset set forth by risk management, ensuring uniformity across technical teams, business units and employees. Foster strong relationships with internal business units and excel in risk management, technical controls and cybersecurity communication. Engage with critical third parties and validate adequate controls are in place. Remain up-to-date on security threats, vulnerabilities and mitigations set forth by IT and security teams to reduce the corporate attack surface. Uncover, validate and document deficiencies in risk management, technology and cybersecurity practices. Conduct architecture reviews and identify where security controls must be implemented. Specify guidance on key risk indicators and ITGC testing methodology, validation and alignment with policies and documentation. Persuade IT and security teams to adopt cybersecurity controls. Stay abreast of evolving technologies and areas of risk against the rapidly changing threat landscape as well as standards and compliance requirements. Serve as a point of contact and liaison with external examiners for assessments throughout the year and at end-of-year evaluations. Draft and deliver presentations to management explaining audit findings and recommendations for corrective action that are operationally feasible, within budget and team skillset. Build relationships with business units to verify security-by-design controls are incorporated into projects, architecture, infrastructure and applications. Stay abreast of new laws, regulations and standards, and assess their impact to the business. Openly support the management team and executive leadership, even during tumultuous times. Travel as needed to office locations and third-party on-site engagements.

Requirements:  

 At least 5 years’ IT or cybersecurity experience (or IT coupled with cybersecurity), with at least 2 years in an operationally focused IT or security practitioner role. Strong written and verbal communication skills across all levels of the organization. Skilled at working with diverse teams and promoting enterprise-wide risk management rigor High level of integrity, trustworthiness and confidence to represent the company and risk management leadership with the highest level of professionalism. Project management, multitasking and organizational skills. Ability to preserve credibility with the team through sustained industry knowledge. Applicable knowledgeable with national and global cybersecurity policies, regulations and security frameworks. Demonstrated understanding and comprehension of a wide range of compliance and technology frameworks. Proven trustworthiness and history of acting with integrity, taking pride in work, seeking to excel, being curious and adaptable, and communicating well. Self-starter requiring minimal supervision. General business administration competencies. Excellence in communicating privacy, business risk and remediation requirements from assessments. Outstanding written and verbal business and cybersecurity communication skills. Highly organized and efficient. Demonstrated strategic and tactical thinking, along with decision-making skills and business acumen.

Educational Requirements:  

 Bachelor's degree in computer science, information assurance, or related technical field or business administration preferred, but not required.

Certification Requirements:  

 CISA highly recommended CISSP, CISM, CRISC preferable, but not required.

EEO and Veteran Employer  

Marken is a wholly owned subsidiary of UPS and is a critical part of UPS Healthcare. Marken offers a state-of-the-art GMP-compliant depot network and logistic hubs for clinical drug product storage and distribution worldwide and supports cell and gene therapy logistics services from clinical to commercial, while maintaining the leading position for Direct-to-Patient and Home Healthcare services, biological sample shipments and biological kit production. 

  Moving Our World Forward by Delivering What Matters.  

IND123  



  • india Cholamandalam Investment and Finance Company Limited Full time

    Job Purpose (In a brief, specific one or two- sentence statement, answer the questions: "Why does this position exist?" and "What is it expected to accomplish?") To initiate cyber security and network audit. To safeguard the company’s assets from cyber risk/incidents. Key Accountabilities (List the expected end results or KPIs that the incumbent is...


  • india Teladoc Health Full time

    Teladoc Health has an exciting new role as a Senior IT Auditor. Working Hours: 4:00 PM to 1:00 AM IST Work Mode: Remote Teladoc Health’s Internal Audit function provides independent, objective assurance and consulting services designed to add value and improve Teladoc’s operations. The Senior IT Auditor assists Internal Audit management, Board of...


  • India Teladoc Health Full time

    Teladoc Health has an exciting new role as a Senior IT Auditor.Working Hours: 4:00 PM to 1:00 AM IST Work Mode: RemoteTeladoc Health’s Internal Audit function provides independent, objective assurance and consulting services designed to add value and improve Teladoc’s operations. The Senior IT Auditor assists Internal Audit management, Board of...


  • india SolarWinds Full time

    Information Technology Auditor / IT auditor Location: Bangalore Overview: At SolarWinds, we’re a people-first company. Our purpose is to enrich the lives of the people we serve—including our employees, customers, shareholders, Partners, and communities. Join us in our mission to help customers accelerate business transformation with simple, powerful,...


  • india Agensi Pekerjaan BTC Sdn Bhd Full time

    Job Description Open Position: Information Systems Audit Executive (Reputable Company) A Reputable company is currently hiring an Information Systems Audit Executive to join them in the Kuala Lumpur office.Key responsibilities include: Degree in Computer Science, Management Information Systems or equivalentPossess or currently pursuing Certified...


  • india BizFirst Full time

    Job Description Certified Information Systems Auditor-I (CISA-I) – Hybrid  (2 days on-site at Mark Center in Alexandria).   BizFirst is assisting our client with recruiting a Full-time Certified Information Systems Auditor-I (CISA-I)– Hybrid (2 days on-site at Mark Center in Alexandria). Our client is a boutique consulting firm that employs consultants...


  • india BizFirst Full time

    Job Description Certified Information Systems Auditor-II (CISA-II) – Hybrid (2 days on-site at Mark Center in Alexandria).   BizFirst is assisting our client with recruiting a Full-time Certified Information Systems Auditor-II (CISA-II)– Hybrid (2 days on-site at Mark Center in Alexandria). Our client is a boutique consulting firm that employs...


  • india Polycab India Limited Full time

    Requirements, Skills & Competencies • Educational Qualification and Experience Chartered Accountant Experience 5-7 Years of Experience and CA and CMA freshers can also apply Functional Skills Proficient with MS Office (Excel, Word, PowerPoint) Strong systems skills with 3-5 years of experience working with Oracle, Hyperion or SAP Have excellent...

  • Internal Auditor

    2 weeks ago


    india eRecruiter Full time

    Job Description Summary We are looking to hire a professional internal auditor who will provide the company with guidance on financial accuracy, internal controls, and regulatory compliance. As an internal auditor, you will examine the operating practices and financial and risk management processes of the company.To ensure success, the internal auditor must...

  • Senior IT

    4 weeks ago


    india Zendesk Full time

    Job Description We are looking for an experienced Audit and Information Technology Staff Auditor to join our Internal Audit and Transformation team. We have a tight team environment where support, loyalty, and honest feedback is the norm. The Audit and Information Technology Staff Auditor will help to deliver independent, objective assurance and...

  • Internal Auditor

    4 weeks ago


    India Bloom Consulting Services Full time

    Not Disclosed Experience **5 - 8 Years** Offered Salary **Lakh** Notice Period **Not Disclosed** **Internal Auditor & Financial Controller** - Years of experience: - 5-8 years - Mid-level “Internal Auditor/Acting CPA/CA” **Job qualifications**: - Ask for one or several degrees and extensive experience managing finance teams, preparing and...

  • Internal Auditor

    4 weeks ago


    india Fadac Resources Full time

    Job Description Our client is an Infrastructure company that offers construction, traffic solutions and procurement services to both public and private clients.Due to expansion they are in need of an INTERNAL AUDITOR. Location - ZamfaraJob Summary We are looking for an Internal Auditor with brilliant accounting and analytical skills to add value and improve...


  • india Marmon Technologies India Pvt Ltd Full time

    Job Description Designation : Auditor- ITGC and Cybersecurity Reporting to : Internal Audit Senior Lead - India Location : Bangalore, Full Time Qualification : CISA certified, Bachelor's degree in Computer Science, Information Technology, or a related field Experience : 3-6 Years Job Summary: We are seeking a skilled ITGC and Cybersecurity Audit...


  • india Skyline Cranes Full time

    Company Description SKYLINE is a company based in Indore that specializes in manufacturing cranes for lifting materials. We believe in not only creating reliable cranes but also in utilizing advanced technology and management information systems to provide the highest level of comfort and efficiency to our customers. Role Description This is a full-time...


  • india Nykaa Full time

    We are currently seeking a highly skilled IT Audit Consultant with extensive experience in audits, particularly in IT General Controls (ITGC) and Sarbanes-Oxley (SOX) compliance. If you are a detail- oriented professional with a proven track record in Big 4 firms, adept at IT General Controls and Application control testing, and possess strong analytical and...


  • india Biz Systems Full time

    Job Description As a Zoho System Implementer, you'll be responsible for orchestrating the seamless integration of Zoho's suite of applications within client organizations. Your primary objective will be to understand the unique business needs of clients and leverage Zoho's versatile platform to design, configure, and deploy tailored solutions. Here's a...


  • india Trimble Full time

    Your Title: Support – Information Systems Consultant Job Location: India, Remote Department: Utilities Field Services, O&PA What You Will Do To provide 3rd Level technical support for Taskforce, GeoManager, Performance Manager and other Trimble products as required. To ensure that the company’s contractual commitments are met in...


  • india SGT UNIVERSITY Full time

    SGT University is in search of a talented MIS executive with good research orientation for its campus. The University, in its campus spread over 70 acres near Gurgaon, offers around 160+ programs in Medical and Non-Medical domains. It nurtures more than seven thousand students and is a hub of activities involving the nation’s who’s who. It is a part of a...


  • india Movate Full time

    Hello Network We are at Movate Technologies, Looking for an Information Security Manager Job Title: Information Security Manager Experience: 7+ years Location: Bangalore/Hyderabad/Chennai Work from Office No.of Positions: 2 Top 5 Skill Set Hands-on experience with security technologies Experience in Information security and business continuity internal...


  • india Agensi Pekerjaan BTC Sdn Bhd Full time

    Job Description Open Position: Internal Auditor, Specialist (Financial Services)  One of the reputable Financial Services in Malaysia is looking for Internal Auditor, Specialist to join the team and be based in Kuala Lumpur office. Key responsibilities include: Prepare and review audit assignments and projects together with the team and stakeholdersAble...