Senior IT Risk Auditor

3 days ago


Bengaluru, Karnataka, India beBeeSeniorItRiskAuditor Full time ₹ 20,00,000 - ₹ 25,00,000
Job Title: Senior IT Risk Auditor

This role is an individual contributor within the IT Audit Team responsible for leading and executing high-impact risk-based audit engagements aligned with regulatory frameworks (e.g., SOX, FFIEC, NIST) and organizational priorities.

The ideal candidate will have experience auditing complex IT environments and a deep understanding of cybersecurity, IT governance, and technology risk. This role contributes to the annual IT audit plan by assessing risk, planning and scoping audits, and delivering assurance and advisory services across areas including financial reporting, cloud computing, data protection, third-party risk, and IT operations.

This position requires collaboration with stakeholders across Accounting, Technology, Information Security, Risk, and Compliance to drive risk mitigation and control improvement efforts.

Responsibilities:
  • Execute SOX IT and information systems testing program, including conducting walkthroughs, analyzing audit evidence, executing controls testing, identifying and defining issues, and documenting business processes and procedures.
  • Support the creation of status reports and planning materials assist with overall and collaborate closely with internal and external stakeholders for the IT Program.

This role performs end-to-end planning, execution, and reporting with the IT Internal Audit Manager of risk-based IT audit engagements across domains such as:

  • Information Security Program
  • Network & System Security
  • Business Continuity and Disaster Recovery (BC/DR)
  • Change Management and Software Development Lifecycle (SDLC)
  • Third-Party Risk Management (TPRM)
  • Identity & Access Management (I&AM)
  • IT Operations and Asset Management
  • Privacy and Data Protection
  • Cloud and Outsourced Services
  • Evaluate IT risks, control maturity, and alignment with regulatory expectations.
  • Provide risk advisory and control consultation to IT and business leadership on strategic technology initiatives, regulatory obligations, and emerging threats.
  • Collaborate closely with cross-functional stakeholders, including Accounting, Information Security, Compliance, Legal, and Engineering teams, to understand business processes and evaluate control effectiveness.
  • Develop and deliver clear, concise, risk-focused audit reports dealing with complex and sensitive issues, including findings, root cause analysis, and actionable recommendations in a timely manner for internal and external audiences.
  • Complete assigned responsibilities following audit standards.
  • Partner with internal and external audit teams to ensure a timely and efficient testing approach and issue resolution.
  • Monitor and validate the implementation of management action plans and ensure sustainable remediation of control issues.
  • Support new system implementations and ensure compliance with existing policies.
  • Conduct risk assessments, including the identification of controls and testing attributes.
  • Contribute to the development and evolution of the IT audit program, including risk assessment methodology, audit universe updates, and use of data analytics.
  • Act as a key liaison to internal and external auditors, examiners, and other assurance functions to ensure coordinated risk coverage and alignment.
  • Take initiative and suggest alternatives for process improvements.
Requirements:
  • Bachelor's degree in Information Technology, Accounting, Finance, or a related field.
  • Five or more years of experience in IT audit, internal audit, cybersecurity, financial services, or a related business function.
  • Thorough understanding of internal controls, IT risk, and regulatory requirements including SOX, FFIEC, and financial compliance frameworks.
  • Strong knowledge of internal audit methodologies, including experience leading audit projects in accordance with the Institute of Internal Auditors (IIA) Global Standards.
  • Demonstrated ability to independently plan, execute, and manage complex audit engagements with minimal supervision.
  • Proven ability to communicate complex concepts clearly across both technical and non-technical stakeholders.
  • Experience operating as a subject matter expert in key areas such as IT General Controls (ITGCs), IT Application Controls, agile software development practices, NIST frameworks, and/or GAAP.
  • Strong project management skills with the ability to manage multiple priorities simultaneously while maintaining attention to detail and accuracy.
  • Advanced proficiency in Microsoft Excel, Word, Outlook, and data analysis tools used for issue identification and trend monitoring.
  • Highly self-motivated, results-driven, and committed to delivering high-quality work in a dynamic environment.
  • Excellent time management and organizational skills, with the ability to support multiple projects, work both independently and collaboratively within the team and effectively prioritize and manage a large volume of work.
  • Superior interpersonal, written, and verbal communication skills, with the ability to create thorough documentation and interface effectively with individuals at various levels.
  • Ability to remain organized, pay strict attention to detail, and meet critical deadlines within a high volume, fast-paced environment.
  • Analytical with strong problem-solving abilities and creative resolution skills.
  • Demonstrated discretion and trustworthiness when working with confidential financial, operational, or employee data.
Preferred Requirements:
  • Three years of direct experience in IT Audit for a SaaS company or equivalent IT audit experience at a top-tier firm (Big 4, RSM, Protiviti, etc.).
  • Two or more years of experience leading end-to-end engagements and/or leadership experience within the information technology or security fields.
  • Demonstrated knowledge of internal controls, business risks and audit techniques in a large SaaS organization.
  • Demonstrated knowledge of SOC1 and SOC2 requirements.
  • Knowledge of data analytics tools such as ACL, Power BI, or Tableau.
  • Experience with AuditBoard or other audit engagement support tools.
  • Maintains other designations including Certified Management Accountant (CMA), Certified Fraud Examiner (CFE), Certified Information Security Systems Professional (CISSP), Certified Financial Services Auditor (CFSA), or other relevant business designation.

  • Senior IT Auditor

    3 days ago


    Bengaluru, Karnataka, India beBeeInternal Full time ₹ 15,00,000 - ₹ 20,00,000

    Job Description:We are seeking a Senior IT Auditor to join our team. The successful candidate will be responsible for executing the SOX IT and information systems testing program, including conducting walkthroughs, analyzing audit evidence, executing controls testing, identifying and defining issues, and documenting business processes and procedures.The...


  • Bengaluru, Karnataka, India Aditi Consulting Full time

    Job OverviewThis position is an individual contributor within the Internal Audit Team responsible for leading and executing high-impact, risk-based IT audit engagements aligned with regulatory frameworks (e.g., SOX, FFIEC, NIST) and organizational priorities. The ideal candidate will have experience auditing complex IT environments and a deep understanding...


  • Bengaluru, Karnataka, India Aditi Consulting Full time

    Job OverviewThis position is an individual contributor within the Internal Audit Team responsible for leading and executing high-impact, risk-based IT audit engagements aligned with regulatory frameworks (e.g., SOX, FFIEC, NIST) and organizational priorities. The ideal candidate will have experience auditing complex IT environments and a deep understanding...


  • Bengaluru, Karnataka, India beBeeAccountant Full time ₹ 90,00,000 - ₹ 1,20,00,000

    About this roleWe are seeking a detail-oriented and qualified Chartered Accountant to lead our Enterprise Risk Management, Internal Financial Controls, and Internal Audit functions.Key ResponsibilitiesDevelop and implement the organization's ERM framework.Identify, assess, and prioritize enterprise-wide risks.Conduct risk workshops and facilitate the...

  • Sr IT Auditor

    7 days ago


    Bengaluru, Karnataka, India Fresenius Medical Care Full time US$ 90,000 - US$ 1,20,000 per year

    About the RoleWe are looking for a proactive and experienced Senior IT Auditor to join our Internal Audit team. This is a key role for someone who is passionate about technology risk, thrives in dynamic environments, and can work both independently and collaboratively.As a Senior IT Auditor, you will lead and execute end-to-end IT audits across various...

  • Internal Auditor

    3 weeks ago


    Bengaluru, Karnataka, India NES Fircroft Full time

    Internal Auditor Location: Bangalore"Integrity.Insight.Impact.Join us as our Internal Auditor and shape our financial future." ABOUT THE ROLE: The Internal Auditor will be responsible for evaluating and improving the effectiveness of risk management, control, and governance processes within the organization.Working closely with management, the Internal...

  • Internal Auditor

    4 weeks ago


    Bengaluru, Karnataka, India NES Fircroft Full time

    Internal Auditor Location: Bangalore "Integrity. Insight. Impact. Join us as our Internal Auditor and shape our financial future." ABOUT THE ROLE: The Internal Auditor will be responsible for evaluating and improving the effectiveness of risk management, control, and governance processes within the organization. Working closely with management, the...

  • Internal Auditor

    4 weeks ago


    Bengaluru, Karnataka, India NES Fircroft Full time

    Internal Auditor Location: Bangalore "Integrity. Insight. Impact. Join us as our Internal Auditor and shape our financial future." ABOUT THE ROLE: The Internal Auditor will be responsible for evaluating and improving the effectiveness of risk management, control, and governance processes within the organization. Working closely with management, the...


  • Bengaluru, Karnataka, India beBeeCybersecurity Full time

    Job Title: Cybersecurity AuditorAs a seasoned cybersecurity auditor, you will be responsible for conducting thorough and independent audits of our organization's security controls and procedures.Conduct risk assessments to identify potential vulnerabilities and develop strategies to mitigate them.Perform audit testing to evaluate the effectiveness of our...


  • Bengaluru, Karnataka, India beBeeRiskManagement Full time ₹ 1,50,00,000 - ₹ 2,00,00,000

    Enterprise Risk Management LeaderWe are seeking a highly qualified and detail-oriented professional to lead our Enterprise Risk Management (ERM) functions. This role is critical in identifying, assessing, and prioritizing enterprise-wide risks, as well as developing and implementing mitigation plans.Key Responsibilities:ERM Leadership:Develop and implement...