Associate - IT Auditor (Technology)

3 weeks ago


Mumbai, India TIAA Full time

IT Auditor

The IT Auditor assesses the design and operating effectiveness of IT controls during audit engagement planning, fieldwork and reporting. This job evaluates risks and controls as a contributor in risk assessment and risk remediation testing activities. Working under general supervision, this job also coordinates and communicates effectively with audit and client contacts to deliver work in a professional and timely manner.

Key Responsibilities and Duties
- Leverages knowledge of common technology risk and control frameworks, including financial industry regulations and guidance, to assess risks and control design and operating effectiveness.
- Documents work clearly and concisely and in accordance with audit methodology and engagement timelines and budgets.
- Identifies, assesses and effectively describes IT risk and control strengths and concerns to audit and client contacts.
- Delivers clear and timely written and verbal communications to peers, supervisors and clients about assigned topics.
- Works professionally, proactively and collaboratively with audit and client stakeholders to understand and deliver assignments.
- Demonstrate critical thinking by gathering, analyzing, questioning and sharing perspectives on assignments.
- Grows and applies knowledge of the organization and IT people, processes and functions and Internal Audit methodology.
- Identifies and pursues training, knowledge and experience that expands and deepens IT audit skills.
- Builds awareness of technology trends, risks and controls through personal curiosity, training and networking.

Educational Requirements
- University (Degree) Preferred

Work Experience
- 1+ years Required Or
- 3+ years Preferred

Physical Requirements
- Physical Requirements: Sedentary Work

Career Level

6IC

Company Overview:
TIAA GBS India was established in 2016 with a mission to tap into a vast pool of talent, reduce risk by insourcing key platforms and processes, as well as contribute to innovation with a focus on enhancing our technology stack. TIAA GBS India is focused on building a scalable and sustainable organization, with a focus on technology, operations and expanding into the shared services business space. Working closely with our U.S. colleagues and other partners, our goal is to reduce risk, improve the efficiency of our technology and processes and develop innovative ideas to increase throughput and productivity.

Key Duties & Responsibilities:
List up to 5 key duties and responsibilities, management responsibilities and time spent (if applicable)

Position Summary:
This position serves as a team member to validate the remediation of moderately complex Management Action Plans (MAPs) emanating from Global / Enterprise IT audits, executed remotely from TIAA India, working under the direction of audit management and more senior IT auditors. Aids in performing timely review and validation of specific actions taken by management to mitigate the risk(s) identified in the audit issue in order to maintain a healthy control environment. Validation of MAPs encompasses core / integrated IT audits and advisories of the Company in accordance with TIAA’s Internal Audit (IA) Methodology.

Key Responsibilities:

- Handles routine to moderately complex assignments relative to validation of Management Action Plans and control testing of assigned IT Internal Audits.
- Perform testing of remediated IT audit issues to validate the action plan implemented by management mitigates the identified risk.
- Select appropriate sample size per TIAA IA Methodology in support of the testing performed.
- Obtain and evaluate evidence(s) for sufficiency, appropriateness, and adequacy of the remediation efforts.
- Maintain high quality of validation documentation to evidence that the review and validation performed can be understood by an independent third-party reader to enable them to draw a similar conclusion.
- Maintain validation document along with evidences in the audit database for sign-off.
- Assist audit team in tracking and reporting the status of open audit issues and related MAPs.
- Disseminate and share best practices with audit team to add value to the MAP validation process.
- Participate in recommending enhancement(s) to the validation process to gain efficiencies.
- Perform test of controls during IT audit engagement, verify compliances with regulations and sound business practices.
- Analyze audit data/observations and document audit conclusions/findings.

Management/Leadership Responsibility: Is management of people a primary focus of the role? If so, how many direct and indirect employees are managed? Do any of them manage a function or process?
- None.

Business or Industry Expertise: Describe the degree of knowledge and understanding required of TIAA’s business and industry, commercial environment and of competitors products and services.
- Requires knowledge of IT and information security governance, audit data analytics, integrated audit



  • Mumbai, India Connexial Digital Technology Full time

    **Job Description**: JD below: 2-4 yrs exp Mumbai (CST) Budget - as per company (Max 6 -7 lpa) **ITGC/IS-IT Audit**: - Infrastructure Security Controls - Change Management Controls - User Access Management Controls - HR Security Controls - Application Controls - Incident Management Controls - Patch Management Controls - Backup Management Controls - BCP...


  • Mumbai, Maharashtra, India TIAA Full time

    IT AuditorThe IT Auditor assesses the design and operating effectiveness of IT controls during audit engagement planning, fieldwork and reporting. This job evaluates risks and controls as a contributor in risk assessment and risk remediation testing activities. Working under general supervision, this job also coordinates and communicates effectively with...


  • Mumbai, Maharashtra, India Connexial Digital Technology Full time

    Job Description:JD below:2-4 yrs expMumbai (CST)Budget- as per company (Max 6 -7 lpa)ITGC/IS-IT Audit: Infrastructure Security Controls Change Management Controls User Access Management Controls HR Security Controls Application Controls Incident Management Controls Patch Management Controls Backup Management Controls BCP Controls DR Controls System...

  • IT Auditor

    3 weeks ago


    Mumbai, India Riskpro India Full time

    Riskpro India is expanding its Information Security services and is looking for 3-8 years of experienced professionals in the Information Security, ISO 27001/ SSAE/ GDPR Third Party Risk Assessments domain.Essentially IT AuditorWe are looking for someone to join our Information Security practice to work on IT GRC projects, ISO 27001 controls, policies and...

  • IT Auditor

    5 days ago


    Mumbai, Maharashtra, India Riskpro India Full time

    Riskpro India is expanding its Information Security services and is looking for 3-8 years of experienced professionals in the Information Security, ISO 27001/ SSAE/ GDPR Third Party Risk Assessments domain.Essentially IT AuditorWe are looking for someone to join our Information Security practice to work on IT GRC projects, ISO 27001 controls, policies and...

  • IT Auditor

    1 month ago


    Mumbai, India Riskpro India Full time

    Riskpro India is expanding its Information Security services and is looking for 3-8 years of experienced professionals in the Information Security, ISO 27001/ SSAE/ GDPR Third Party Risk Assessments domain. Essentially IT AuditorWe are looking for someone to join our Information Security practice to work on IT GRC projects, ISO 27001 controls, policies and...

  • IT Auditor

    3 weeks ago


    Mumbai, India Riskpro India Full time

    Riskpro India is expanding its Information Security services and is looking for 3-8 years of experienced professionals in the Information Security, ISO 27001/ SSAE/ GDPR Third Party Risk Assessments domain. Essentially IT AuditorWe are looking for someone to join our Information Security practice to work on IT GRC projects, ISO 27001 controls, policies and...


  • Mumbai, India JPMorgan Chase & Co. Full time

    Job Summary: This role is for an Information Technology audit professional to join the Central Technology Audit Team. As an Auditor Associate in our Internal Audit group you will strengthen internal controls in a fast paced environment. This role will report locally into Audit Manager/Director in India and functionally to Audit Director onshore and will...

  • IT Auditor

    5 days ago


    Mumbai, Maharashtra, India Skill Ventory Full time

    Roles and Responsibilities We are hiring for IT Auditor - Shadow Light IT Reviewer team at leading investment bank based in Mumbai Knowledgeable with common end user applications; Office and associated macros, Javascript, CSharp, VB Scripts, .Net, etc. Extended knowledge of IT Security Risk Management concepts and with good understanding of industry...


  • Mumbai, India Piramal Enterprises Limited Full time

    Individual will be responsible for assessing our IT systems, identifying vulnerabilities, and recommending risk-mitigation strategies. IT auditor plays a crucial role in helping the organization manage IT risks, safeguard assets, and ensure compliance with relevant laws, regulations, and industry standards. Responsible to conduct following audits: IT...

  • IT Auditor

    1 month ago


    Mumbai Metropolitan Region, India Riskpro India Full time

    Riskpro India is expanding its Information Security services and is looking for 3-8 years of experienced professionals in the Information Security, ISO 27001/ SSAE/ GDPR Third Party Risk Assessments domain. Essentially IT AuditorWe are looking for someone to join our Information Security practice to work on IT GRC projects, ISO 27001 controls, policies and...

  • IT Auditor

    1 month ago


    Mumbai Metropolitan Region, India Riskpro India Full time

    Riskpro India is expanding its Information Security services and is looking for 3-8 years of experienced professionals in the Information Security, ISO 27001/ SSAE/ GDPR Third Party Risk Assessments domain. Essentially IT Auditor We are looking for someone to join our Information Security practice to work on IT GRC projects, ISO 27001 controls, policies and...

  • IT Auditor

    3 weeks ago


    Mumbai Metropolitan Region, India Riskpro India Full time

    Riskpro India is expanding its Information Security services and is looking for 3-8 years of experienced professionals in the Information Security, ISO 27001/ SSAE/ GDPR Third Party Risk Assessments domain. Essentially IT Auditor We are looking for someone to join our Information Security practice to work on IT GRC projects, ISO 27001 controls, policies and...

  • IT Auditor

    3 weeks ago


    Mumbai Metropolitan Region, India Riskpro India Full time

    Riskpro India is expanding its Information Security services and is looking for 3-8 years of experienced professionals in the Information Security, ISO 27001/ SSAE/ GDPR Third Party Risk Assessments domain. Essentially IT AuditorWe are looking for someone to join our Information Security practice to work on IT GRC projects, ISO 27001 controls, policies and...


  • mumbai, India Piramal Enterprises Limited Full time

    Individual will be responsible for assessing our IT systems, identifying vulnerabilities, and recommending risk-mitigation strategies. IT auditor plays a crucial role in helping the organization manage IT risks, safeguard assets, and ensure compliance with relevant laws, regulations, and industry standards.Responsible to conduct following audits:IT...

  • IT Auditor

    2 weeks ago


    Mumbai, India Aarvi Encon Limited Full time

    **Role**: IT Auditor **Location**:Pune || HYD || Indore || **Experience**: 7-10 Years (Relevant Experience) **Working Time Zone**: (US CST Time Zone - 6:30 PM to 3:30 AM ) **Key Scanners**: Internal Quality Audit, ISO 27000 - IT Security/SOX/SOC, CISA **Description**: 1. CISA certified - preferred big 4 or any 3rd party accountant firm experience 2....

  • Compliance Auditor

    3 weeks ago


    Mumbai, India Fossgen Technologies Full time

    **Position**: Auditor Compliance **Work Location**: Mumbai **Experience**: 6+ years **Salary/CTC** - As per industry standard **Notice Period**: Immediate/1-month **Qualifications**: BE / BSc IT/ BSc Computer Science / BTech / ME / MTech facing internal & external ISO 20000 / ISO 27001 / ISO 22301 / ISO 9001 audits, measuring & monitoring process...


  • Mumbai, Maharashtra, India EUROCERT INSPECTION SERVICES PVT.LTD. Full time

    **Wanted Associate Social Compliance Auditor, is enrolled with APSCA, gaining experience under the supervision/ guidance of a RA or CSCA. Has signed APSCA’s Code of Professional Conduct.** - **Locations : Kerala and Bengaluru.**_ - **Must have**:_ 1. Graduation or Masters 2. Certification of Auditor (APSCA Membership Number) 3. Experience...


  • Mumbai, India TIAA Full time

    Internal Auditor The Internal Auditor serves as a team member on complex audits, working under the direction of audit management and more senior auditors. Under moderate supervision, this job works on problems of diverse scope performing complex financial, operational and integrated audits of the company's operations using the organization's risk based...


  • Mumbai, India Piramal Enterprises Limited Full time

    Individual will be responsible for assessing our IT systems, identifying vulnerabilities, and recommending risk-mitigation strategies. IT auditor plays a crucial role in helping the organization manage IT risks, safeguard assets, and ensure compliance with relevant laws, regulations, and industry standards.Responsible to conduct following audits:IT...