Lead - Information Systems Audit
5 hours ago
Job Description Key Result Areas Supporting Actions Development of Audit Strategy and Plan - Develop the IS Audits strategy encompassing Information Technology (IT) Infrastructure, Information Security and IT Applications Audits covering the key Information System areas (such as Cyber Security, Applications Security, Data Security, Cloud Security, Vulnerability Assessment & Penetration Testing, Network Security, Data Privacy, Data Centre, Logical and Physical Access Management, IT Infrastructure management, Database & Operating System management, Incident management, Change management, Email management and process review, End point security, IT Disaster Recovery, IT Business Process Continuity Review, IT Helpdesk management, IT Project management and Emerging Digital & Technology Risk) within ABHFL - Develop strategies for identification and assessment of Information System & Security risks across ABHFL factoring the diverse lines of business of ABHFL, scale of operations and complexities of the business and current maturity level of controls - Develop IS Audits plan based on risk assessment and the legal, regulatory framework; Ensure use of advanced integrated auditing concepts and extensive use of technology and data analysis for achievement of the audit objectives - Set up and develop specialised team for conducting IS Audits and assessment of complex and specialised reviews covering key IT Infrastructure, IT Applications and Information System & Security areas (such as Cyber Security, Applications Security, Data Security, Cloud Security, Vulnerability Assessment & Penetration testing, Network Security, Data Privacy, Data Centre, Logical and Physical Access Management, IT infrastructure management, Database & Operating System management, Incident management, Change Management, Email management and process review, End point Security, IT Disaster Recovery, IT Business Process Continuity Review, IT Helpdesk management, IT Project management and Emerging Digital & Technology Risk) across the various lines of business within ABHFL. Execution of Audit Strategy and Plan - Conduct IT application reviews across all lines of business in ABHFL) in line with the nature and complexity of the business; Review the major Information System applications for each line of business within ABHFL; Perform application vulnerability assessment and recommend systemic improvements for mitigating the Information system & security risk and enhancing the maturity level of the controls - Conduct IT Process review across all lines of business in ABHFL) in line with the nature and complexity of the business; Review the major Information Technology processes for each line of business within the group; Identify the area vulnerable to risk and assess the controls in place for mitigating the Information technology risk; Recommend systemic improvements for mitigating the Information technology risk and enhancing the maturity level of the controls - Conduct Cyber Security/ Cloud Security/ Network Security/ Information Security Audits at ABHFL; Recommend improvement areas for enhancing the efficiency of controls toward cyber security - Conduct review of data centres and third party vendors/ business partners/ channel partners having customer sensitive data with regards to controls in place at the third party vendors/ business partners/ channel partners in line with the defined SLAs; Assess the data privacy and data leakage risk management framework with regards to processes and controls for assessment of outsourced activities and monitoring and manging of outsourcing risk with regards to data security. - Conduct user access review and access to information on need-to-know basis based on the role and nature of activities to be performed, nature and complexity of the business, scale and size of the business; Review the process of access to information and monitoring of data leakage prevention across ABHFL employees; Review the processes to prevent potential data leakage which may result in detailed inquiry and strict action from Cyber Crime department / other regulators. - Conduct specialised reviews through use of extensive data analysis and advanced forensic techniques on Cyber Security, Cloud Security, emerging digital technology and other aspects relating to Information Security. - Effective management and execution of the audit plan for proactive identification and remediation of Information System & Security risk relating to various business products, processes and units. - Provide effective recommendations for improvements to the organization policies, processes and practices based on leading industry practices and emerging risks. - Review the effective implementation of audit actionable and open audit points. - Maintain the working papers, audit evidence and other supporting documents in line with internal policies and procedures and regulatory requirements. Continuous Monitoring - Develop strategies for identification of triggers / risk hotspots and conduct unplanned reviews / investigations based on various triggers/ hot spots, directives received from regulators, board committees and senior management. - Keep abreast of the emerging audit trends and drive key audit initiatives for efficient and effective achievement of the audit objectives. - Implement an effective continuous monitoring framework for ongoing monitoring of risk relating to various business products, processes and units; Identify and develop automated test for ongoing monitoring of Information System & Security risk across ABHFL. Communication and Stakeholder Engagement - Active engagement with stakeholders for implementation of recommendations for effective risk mitigations and improvement in the control environment. - Effective communication and reporting to various stakeholders including regulators, board committee and senior management. People Management - Develop specialised team for conducting IS Audits and assessment of complex and specialised reviews covering key IT Infrastructure, IT Applications and Information System & Security areas - Develop, nurture and grow talent through effective employee engagement and management - Continuous development of self and the team through regular learning and sharing of knowledge / best practices.
-
Thiruvananthapuram, Kerala, India, Kerala Muthoot Fincorp Ltd. Full timeROLE SUMMARYThe National Head of Information Security, Audit, and Compliance is responsible for organization’s information security governance, risk management, and compliance frameworks are robust, aligned with regulatory requirements, and continuously improved to mitigate risks and enhance security controls. The role will be responsible for overseeing...
-
Information Security
2 weeks ago
Bengaluru, India Dairy Day Full timeJob Description Company Description Dairy Day is one of India's largest ice cream brands. Over the last 22+ years, we have built a formidable presence across South & West India and are continuously expanding across the country, selling to over 60,000+ retailers. Dairy Day manufactures and supplies products across a variety of cups, cones, sticks, tubs, and...
-
Information Security Lead
4 days ago
Barasat, India Larsen & Toubro Full timeJob Description - Leads IT security projects in terms of design, plan, and implementation of security infrastructure & solutions including d evelopment and management of overall enterprise security approach in terms of Infrastructure, Network, Data, Cloud and Endpoint Security. - Analyse business requirements by partnering with key stakeholders across the...
-
Management Information System Executive
3 weeks ago
Jaipur, India TP Full timeJob Description Job Title: Business Intelligence Analyst Location: Jaipur - Sitapura (Work from Office) Department: WFM Salary: Market standards, based on current CTC Job Summary: The WFM MIS Executive is responsible for managing and analyzing workforce management data to support effective decision-making and optimize operational efficiency. This role...
-
Information Security Lead Auditor
1 week ago
Bengaluru, India Infosys Full timeJob Description Information security standards ISO 27001, ISO 31000 risk management standards, ISO 22301, CISA (certified information systems auditor), CISM/CISSP/CEH/CIPP-E / CIPP -US /CCIE/CCNA/ COBIT/SOX/ SSAE18, CISM etc - Advanced Networking principles/ software engineering principles/ information security principles, Additional knowledge and domain...
-
IT Internal Audit Manager
4 days ago
Bengaluru, India IQVIA Full timeJob Description Internal Auditor (Manager Level 150) Job Overview The IT Internal Audit Manager position actively participates as a member of the audit team responsible for evaluating risks and controls within IQVIA's business applications, IT infrastructure, and IT internal control environments with a focus on confidentiality, integrity, and availability of...
-
Audit Lead
3 days ago
Bangalore, Karnataka, , India Talentfleet Solutions Full time ₹ 25,00,000 - ₹ 50,00,000 per yearKey Responsibilities 1. Statutory Audit Execution & Review • Lead statutory audits of private limited companies, LLPs, partnerships, trusts, and subsidiaries. • Review financial statements, notes, CARO reporting, and disclosures as per Companies Act. • Evaluate internal controls, processes, and accounting policies. • Ensure timely completion of audit...
-
GRC Audit
5 hours ago
Mumbai, India Softcell Technologies Global Pvt. Ltd. Full timeJob Description Job Title: GRC Auditor Employer: Softcell Technologies Global Private Limited (CERT-In Empanelled) Location: Mumbai(onsite) Role Overview: The GRC (Governance, Risk, and Compliance) Auditor will be responsible for managing compliance projects and orders for Softcell Technologies clients. This role involves assessing/auditing client...
-
Management Information Systems
1 week ago
All India Mahindra University Full time ₹ 15,00,000 - ₹ 25,00,000 per yearAs a faculty member in the area of Management Information Systems (MIS) at Mahindra University's School of Management in Hyderabad, Telangana, you will play a crucial role in shaping the academic community through your dedication to research, teaching, and building strong relationships within the university. Your primary responsibility will be to teach...
-
India HELLA & Co. KGaA. Full time ₹ 12,00,000 - ₹ 36,00,000 per yearCertified Information Systems Security Manager (CISSP)Location Hinjewadi, Pune - Maharashtra, IndiaFORVIA HELLA is a listed, international automotive supplier. Coming together with Faurecia in the FORVIA Group, we build the world's seventh largest supplier of automotive technologies. As a global market leader in high-growth areas, FORVIA employs 157,000...