IT Sox Compliance
1 week ago
The Security & Compliance (S&C) Competency Centre (CC) Senior Analyst is responsible for the following:
Project Review and Technical Advice
- Review all new high risk projects; new technical designs; for Information risks and advise on suitable controls and mitigations at early stages of the program.
- Lead the S&C Analyst for specific technology and advice on the Information security for their projects.
- Offer advice to Shell and suppliers to assist in resolving questions and issues around how to manage risk
- Provide Subject Matter Expertise for projects and business stakeholders, in combination with the Improvement Program.
- Work with the architecture community to review new technology and architecture innovations.
The Security & Compliance (S&C) Competency Centre (CC) Senior Analyst is responsible for supporting the following:
Risk Management and Mitigation
- Assess and classify all potential business and infrastructure information risks.
- Develop and socialize our overall risk profile and action plans to mitigate risks
- Review and recommend approval project charters.
- Facilitate smooth conduct of Risk Assessment (including Legal & Regulatory) on Applications, Network& Systems
- Perform end to end Security Assessment on vendor offerings - New/Leveraging existing (SAAS / PAAS/IAAS) services including integration with Shell environment.
- Translate Technical, legal and Regulatory Compliance obligations into a cohesive collection of Security Controls and provides the respective stakeholders with the IRM requirements and its implementation methodologies.
- Support in development of tooling to support IRM processes and ensuring this is fit for purpose.
- Actively participate in S&C team and community meetings, representing S&C and Business interests in other CC forums.
- Support during Internal /External Audit
- Ensure that S&C continues to focus on risks significant to the Business, with emphasis on innovation.
Controls Management and Optimization
- Ensure controls are both risk-driven and based on industry standards
- Review and approve the control design of supplier and Shell technical specifications against Shells control requirements, as agreed contractually, during PDF project.
- Support the development of new IRM policies, tooling, procedures where required.
- An Individual Contributor, part of global IT engineering team
- Face of S&C; Interfaces with Project Delivery staff/Business / Business IT teams
- Responsible for the management of risk involving the security, IT regulations, Shell IT policies and other IT controls for all services delivered by the Key business and Infrastructure Suppliers and all services.
- Relevant (>6 years) experience with Information security and risk management
- Good understanding of, and experience with Information Risk Management, IT Security and Compliance and Security Controls and Audit
- Advanced understanding of internal and external IT security standards, SOX, PCI, SOC2/1, ISO27001 standards and relevant legal compliance aspects.- Ability to promote high performance teams, working with inclusiveness and cultural diversity, across organizational boundaries.
- Good understanding of cloud security requirements and third-party control assurance.
- Ability to interface with different groups (Third parties, Business and IT) internal and external to IT (security) and to network globally across Group businesses, as well as with external groups.
- Technical knowledge & relevant experience in security domains /technologies related to:
- Infrastructure/Network security
- Identity and Access Management
- Business Impact Assessment
- Application security
- Data Leakage Prevention
- End-Point Protection
- Web filtering technologies, Proxies and firewalls.
- Vulnerability Assessment / Penetration Testing
- Cloud security
- Knowledge of Data Security Standards: PCI DSS, Privacy Principles
- Driving Platform / Application security and compliance
- Display excellent communicating and influencing skills
- Display analytical and problem solving skills
- Be pro-active and self-motivated
- Display strong interpersonal and negotiating skills with all levels of staff.
- Display Ability and eagerness to quickly learn new technologies.
**Qualifications**:
- A qualification in CISSP, CISA, CRISC or CISM
Experience
Must have previous experience in an (Information) Risk management and Control design role
**Requirements**:
- Specifically, from IT Assurance / Cyber Security verticals
**Job Information**:
Industry
**IT Services**
***
Salary
**700000.00-1000000.00**
***
Work Experience
**5+**
***
City
**Bangalore North**
***
State/Province
**Karnataka**
***
Country
**India**
***
Zip/Postal Code
**560002
-
SOX Compliance Analyst
1 week ago
Bengaluru, India Netapp Full timeJob Description Job Requirements - Assist in performing SOX 404 testing and ensuring compliance with Internal Controls over Financial Reporting (ICFR). - Support cross-functional teams in managing the global ICFR program and implementing SOX compliance improvements. - Help design test plans and collect data for identifying root causes of issues. -...
-
Devops Engineer with SOX compliance
6 days ago
Bengaluru, Karnataka, India Venpa Staffing Full time ₹ 20,00,000 - ₹ 25,00,000 per yearWho are we looking for?We are seeking a detail-oriented DevOps Engineer with SOX compliance expertise to join our growing team. This role will be responsible for implementing, maintaining, and monitoring DevOps processes and infrastructure while ensuring adherence to SOX ITGC (IT General Controls) and audit requirements. You will bridge the gap between...
-
Sox Compliance Auditor
5 days ago
Bengaluru, India Currenex State Street Trust Company Full timeJob Description SOX Compliance Program (FCO) The Financial Control Oversight (FCO) department is responsible for the execution of Sarbanes Oxley (SOX) program across the entire organization of State Street. Key functions of this group include determining the material accounts, business area locations, and risks required to be addressed as part of the SOX...
-
SOX Audit and Compliance
7 days ago
Bengaluru, India ISG (Information Services Group) Full timeDescriptionWebsite: Leading Global Technology Research & Advisory Firm | ISG (isg-) Wanted: dynamic and creative individuals ready to connect with a like-minded team. You'll enjoy all the autonomy you need to help our clients make their digital infrastructure faster and more effective. Free reign for free spirits doesn't mean you've got to go it alone. Over...
-
SOX Audit and Compliance
7 days ago
Bengaluru, India TPI Advisory Services Full timeWebsite: Leading Global Technology Research & Advisory Firm | ISG (isg-) Wanted: dynamic and creative individuals ready to connect with a like-minded team. Youll enjoy all the autonomy you need to help our clients make their digital infrastructure faster and more effective. Free reign for free spirits doesnt mean youve got to go it alone. Over 1400 teammates...
-
Sox Compilance
3 days ago
Bengaluru, Karnataka, India Aliqan Technologies Full time**Greetings From ALIQAN Technologies!** **Job Description: SOX Compliance Specialist** The SOX Compliance Specialist will be responsible for ensuring that the company's financial reporting and internal control procedures comply with the requirements of the Sarbanes-Oxley Act (SOX). The specialist will work closely with the company's IAM team and other...
-
SOX QA Engineer
5 days ago
Bengaluru, India Maneva Consulting Pvt. Ltd. Full timeExperience : 5 to 15Yrs Location : Bangalore(Hybrid) SOX Compliance QA manage the Sarbanes-Oxley (SOX) IT compliance Testing for all program across the organization, ensuring robust IT general controls (ITGCs), application controls, and interface controls are tested, and remediated effectively. This role will act as a strategic partner to internal...
-
SOX QA Engineer
4 days ago
Bengaluru, India Maneva Consulting Pvt. Ltd. Full timeExperience : 5 to 15YrsLocation : Bangalore(Hybrid)SOX Compliance QA manage the Sarbanes-Oxley (SOX) IT compliance Testing for all program across the organization, ensuring robust IT general controls (ITGCs), application controls, and interface controls are tested, and remediated effectively.This role will act as a strategic partner to internal stakeholders...
-
IT SOX Analyst
5 days ago
Bengaluru, India Booking Holdings Full timeJob Description Booking Holdings India is a Center of Excellence based in Bangalore, India and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands. As...
-
▷ Apply in 3 Minutes: Sox Compliance Auditor
1 week ago
Bengaluru, India Currenex State Street Trust Company Full timeJob Description Officer 1 (Auditor) - SOX Compliance Program (FCO) The Financial Control Oversight (FCO) department is responsible for the execution of Sarbanes Oxley (SOX) program across the entire organization of State Street. Key functions of this group include determining the material accounts, business area locations, and risks required to be...