Team Lead- IT-IS Audit role

5 hours ago


Mumbai, Maharashtra, India Forward Full time ₹ 15,00,000 - ₹ 30,00,000 per year

Dear Candidate

Excellent opening

Role: Team Lead- IT- Information System Audit

Reporting to: Head Internal Audit

Job Location: Mumbai, Goregaon East

Experience: At least 8-10+ years of experience working with banks/NBFC/ Consulting / Big 4 Firm in Information System Audit-(IT-IS Audit) with CISA Certification

Mandatory Certification: Candidate must be Certified Information System Auditor (CISA- ISACA)

1)  Job Purpose:

The purpose of this role is to perform IT risk assessment and  manage execution of the Information System Audits (IS Audits) including Information Technology (IT) Infrastructure, Information Security and IT Applications Audits covering the key Information System areas (such as Cyber Security, Applications Security, Data Security, Cloud Security, Vulnerability Assessment & Penetration Testing, Network Security, Data Privacy, Data Centre, Logical and Physical Access Management, IT Infrastructure management, Database & Operating System management, Incident management, Change management, Email management and process review, End point security, IT Disaster Recovery, IT Business Process Continuity Review, IT Helpdesk management, IT Project management and Emerging Digital & Technology Risk) within Company.  The role also include adherence to internal policies and procedures as well as applicable laws and regulations.

2) Dimensions:

Other Quantitative and Important Parameters for the job: Budgets/ Volumes/No. of Products/Geography/ Markets/ Customers or any other parameter

Information System Audits (IS Audits) including Information Technology (IT) Infrastructure, Information Security and IT Applications Audits covering the key Information System areas (such as Cyber Security, Applications Security, Data Security, Cloud Security, Vulnerability Assessment & Penetration Testing, Network Security, Data Privacy, Data Centre, Logical and Physical Access Management, IT Infrastructure management, Database & Operating System management, Incident management, Change management, Email management and process review, End point security, IT Disaster Recovery, IT Business Process Continuity Review, IT Helpdesk management, IT Project management and Emerging Digital & Technology Risk).

3) Job Context & Major Challenges:

  • The purpose of this role is to perform IT risk assessment and manage execution of the Information System Audits (IS Audits) including Information Technology (IT) Infrastructure, Information Security and IT Applications Audits

covering the key Information System areas (such as Cyber Security, Applications Security, Data Security, Cloud Security, Vulnerability Assessment & Penetration Testing, Network Security, Data Privacy, Data Centre, Logical and Physical Access Management, IT Infrastructure management, Database & Operating System management, Incident management, Change management, Email management and process review, End point security, IT Disaster Recovery, IT Business Process Continuity Review, IT Helpdesk management, IT Project management and Emerging Digital & Technology Risk) within ABHFL.

  • The primary function of the role will be to develop and manage execution of the IS Audits Strategy and Plan for proactively conducting the Information Systems, IT Infrastructure, Information Security and IT Applications assessments across ABHFL factoring the wide spread nature of business, large scale of operations, level of digitalisation and use of technology, complexity & diversity of the various applications across the lines of business of ABHFL  and organization strategy, culture and digital maturity
  • Develop processes for effective IS Audits coverage of Information System & Security risks identification, mitigation and management in ABHFL ensuring that the audit coverage is aligned with internal policies, standards, procedures; professional auditing standards as well as various applicable laws and regulations, regulatory circulars / guidelines across various regulators
  • Develop strategies for identification and assessment of Information System & Security risks across ABHFL factoring the diverse lines of business of ABHFL, scale of operations and complexities of the business and current maturity level of controls
  • Develop IS Audits plan based on risk assessment and the legal, regulatory framework; Ensure use of advanced integrated auditing concepts and extensive use of technology and data analysis for achievement of the audit objectives
  • Plan and conduct Information System & Security risk audits  covering the various IT applications, IT infrastructure, Information systems and IT/Information Security processes including cyber security, cloud security, network security, data security, logical and physical access management, adherence to data privacy guidelines, emerging digital & technology risk in accordance with the internal Policies and Procedures, Legal and Regulatory requirements, professional Internal Audit and IS Audit Standards, and leading practices.
  • Implement a continuous monitoring process for ongoing assessment of Information System & Security risks across ABHFL to ensure, timely identification and resolution of significant Information System & Security control issues; Identify and develop automated tests across ABHFL for monitoring effectiveness of controls on an ongoing basis.
  • Engagement with the Business and Functional leaders across lines of business and functions, as well as Technology leaders on developing and enhancing the maturity level of the controls relating to Information System & Security risk based on the leading practices.

4) Key Result Areas:

Key Result Areas

Supporting Actions

Development of Audit Strategy and Plan

  • Develop the IS Audits strategy encompassing Information Technology (IT) Infrastructure, Information Security and IT Applications Audits covering the key Information System areas (such as Cyber Security, Applications Security, Data Security, Cloud Security, Vulnerability Assessment & Penetration Testing, Network Security, Data Privacy, Data Centre, Logical and Physical Access Management, IT Infrastructure management, Database & Operating System management, Incident management, Change management, Email management and process review, End point security, IT Disaster Recovery, IT Business Process Continuity Review, IT Helpdesk management, IT Project management and Emerging Digital & Technology Risk) within ABHFL
  • Develop strategies for identification and assessment of Information System & Security risks across ABHFL factoring the diverse lines of business of ABHFL, scale of operations and complexities of the business and current maturity level of controls
  • Develop IS Audits plan based on risk assessment and the legal, regulatory framework; Ensure use of advanced integrated auditing concepts and extensive use of technology and data analysis for achievement of the audit objectives
  • Set up and develop specialised team for conducting IS Audits and assessment of complex and specialised reviews covering key IT Infrastructure, IT Applications and Information System & Security areas (such as Cyber Security, Applications Security, Data Security, Cloud Security, Vulnerability Assessment & Penetration testing, Network Security, Data Privacy, Data Centre, Logical and Physical Access Management, IT infrastructure management, Database & Operating System management, Incident management, Change Management, Email management and process review, End point Security, IT Disaster Recovery, IT Business Process Continuity Review, IT Helpdesk management, IT Project management and Emerging Digital & Technology Risk) across the various lines of business within ABHFL.

Execution of Audit Strategy and Plan

  • Conduct IT application reviews across all lines of business in ABHFL) in line with the nature and complexity of the business; Review the major Information System applications for each line of business within ABHFL; Perform application vulnerability assessment and recommend systemic improvements for mitigating the Information system & security risk and enhancing the maturity level of the controls
  • Conduct IT Process review  across all lines of business in ABHFL) in line with the nature and complexity of the business; Review the major Information Technology processes for each line of business within the group; Identify the area vulnerable to risk and assess the controls in place for mitigating the Information technology risk; Recommend systemic improvements for mitigating the Information technology risk and enhancing the maturity level of the controls
  • Conduct Cyber Security/ Cloud Security/ Network Security/ Information Security Audits at ABHFL; Recommend improvement areas for enhancing the efficiency of controls toward cyber security
  • Conduct review of data centres and third party vendors/ business partners/ channel partners  having customer sensitive data with regards to controls in place at the third party vendors/ business partners/ channel partners in line with the defined SLAs; Assess the data privacy and data leakage risk management framework with regards to processes and controls for assessment of outsourced activities and monitoring and manging of outsourcing risk with regards to data security.
  • Conduct user access review and access to information on need-to-know basis based on the role and nature of activities to be performed, nature and complexity of the business, scale and size of the business; Review the process of access to information and monitoring of data leakage prevention across ABHFL employees; Review the processes to prevent potential data leakage which may result in detailed inquiry and strict action from Cyber Crime department / other regulators.
  • Conduct specialised reviews through use of extensive data analysis and advanced forensic techniques on Cyber Security, Cloud Security, emerging digital technology and other aspects relating to Information Security.
  • Effective management and execution of the audit plan for proactive identification and remediation of Information System & Security risk relating to various business products, processes and units.
  • Provide effective recommendations for improvements to the organization policies, processes and practices based on leading industry practices and emerging risks.
  • Review the effective implementation of audit actionable and open audit points.
  • Maintain the working papers, audit evidence and other supporting documents in line with internal policies and procedures and regulatory requirements.

Continuous Monitoring

  • Develop strategies for identification of triggers / risk hotspots and conduct unplanned reviews / investigations based on various triggers/ hot spots, directives received from regulators, board committees and senior management.
  • Keep abreast of the emerging audit trends and drive key audit initiatives for efficient and effective achievement of the audit objectives.
  • Implement an effective continuous monitoring framework for ongoing monitoring of risk relating to various business products, processes and units; Identify and develop automated test for ongoing monitoring of Information System & Security risk across ABHFL.

Communication and Stakeholder Engagement

  • Active engagement with stakeholders for implementation of recommendations for effective risk mitigations and improvement in the control environment.
  • Effective communication and reporting to various stakeholders including regulators, board committee and senior management.

People Management

  • Develop specialised team for conducting IS Audits and assessment of complex and specialised reviews covering key IT Infrastructure, IT Applications and Information System & Security areas
  • Develop, nurture and grow talent through effective employee engagement and management
  • Continuous development of self and the team through regular learning and sharing of knowledge / best practices.

Please share updated Cv at along with below details

Total years of experience

Highest Qualification and year of passing

CISA Certified: Yes/ NO

BFSI Sector experience: yes/ NO

Current Fixed CTC

Current Variable CTC

Current Gross CTC

Expected CTC

Notice period

Regards

Geetika Gupta

Lead Talent Acquisition

FORWARD


  • Retail Audit Lead

    1 week ago


    Mumbai, Maharashtra, India Skillventory Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    This is a fantastic opportunity for seasoned professionals to play a pivotal role in strengthening the Internal Audit function acting as the third line of defense and ensuring robust risk management, governance, and compliance across the retail lending business.Role: Retail Audit LeadLocation: MumbaiReporting To: Head – Internal AuditBusiness Unit: Partner...

  • Statutory Audit

    1 week ago


    Mumbai, Maharashtra, India Princeton IT America Full time ₹ 10,00,000 - ₹ 14,00,000 per year

    Job Title: Statutory Audit ExecutiveLocation: MumbaiExperience: Fresher to 2 years (Post Articleship)Qualification: CAJob Description:We are looking for enthusiastic and detail-oriented professionals to join our Statutory Audit team in Mumbai. The role involves assisting in statutory audits, ensuring compliance with accounting standards, and supporting...

  • Statutory Audit

    2 weeks ago


    Mumbai, Maharashtra, India Princeton IT America Full time ₹ 1,32,000 - ₹ 7,28,00,000 per year

    Job Title: Executive – Statutory AuditLocation: Churchgate, MumbaiPosition Level: ExecutiveExperience: Fresher to 3 YearsQualification: Chartered Accountant (CA)About the RoleWe are seeking Chartered Accountants (CA) who are passionate about building a career in Statutory Audit. This role offers an excellent opportunity to work with a dynamic team, gain...

  • Team Lead

    1 week ago


    Mumbai, Maharashtra, India skillventory - A Leading Talent Research Firm Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    Job Description :Conducting Credit Audits of Wholesale Banking segment and SMEs.· Credit audit review covers both pre and post sanction, disbursement and monitoring process.· Lead or participate in all business credit audits and lead a team of 2-4 auditors.· Timely commencement and closure of audits including documentation of working...

  • Credit Audit Lead

    4 days ago


    Mumbai, Maharashtra, India Yes Bank Full time ₹ 15,00,000 - ₹ 30,00,000 per year

    Key Responsibility Area (KRA)Conducting Credit Audits of Wholesale Banking segment and SMEs.Credit audit review covers both pre and post sanction, disbursement and monitoring process.Lead or participate in all business credit audits, including process related audits such as audit of EWS, Credit Admin team, eNPA system, Credit & Risk policies etc.Lead and...


  • Mumbai, Maharashtra, India Princeton IT America Full time ₹ 9,60,000 per year

    Job Title: Executive – Statutory AuditLocation: Churchgate, MumbaiQualification: Chartered Accountant (CA)Experience: Freshers to 3 Years in Statutory AuditAbout the RoleWe are looking for a dynamic and detail-oriented Chartered Accountant to join our Audit & Assurance team as an Executive – Statutory Audit. This role offers freshers and early-career...


  • Mumbai, Maharashtra, India Acura Solution Full time ₹ 12,00,000 - ₹ 18,00,000 per year

    Job Description:Job Summary:The Lead HR Audit is responsible for overseeing the design, execution, and continuous improvementof internal audits within the HR function. This role ensures compliance with labor laws, internalpolicies, and HR best practices. The Lead HR Audit works closely with senior management and HRteams to identify areas of improvement,...

  • Team Lead

    2 days ago


    Mumbai, Maharashtra, India e9d153d2-dc46-4916-8d43-7cd29b0e16fd Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Company DescriptionWe suggest you enter details here.Role DescriptionThis is a full-time on-site role for a Team Lead based in Mumbai. The Team Lead will oversee the day-to-day operations of their assigned team, ensuring projects are completed efficiently and to a high standard. Responsibilities include managing workflows, delegating tasks, mentoring team...

  • Team Lead

    2 weeks ago


    Navi Mumbai, Maharashtra, India Zero Mass Private Limited Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Role:Team lead - Accounts & FinanceLocation: Seawoods, Navi MumbaiKey ResponsibilitiesTeam Leadership: Manage and mentor a team of accountants, ensuring task allocation, performance tracking, and timely delivery.Accounting Oversight: Supervise general ledger activities, bank reconciliations, and accurate financial postings.Compliance & Audit: Liaise with...

  • Team Member Audit

    2 weeks ago


    Mumbai, Maharashtra, India CSB Bank Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    DescriptionResponsible for risk assessment and preparing risk based audit plan and ensure timely release of Audit Reports.ResponsibilitiesConducting management audits of WSB, SME and Treasury. Should have experience in handling Management audits Credit audits. Should have specialization in doing credit audits, treasury, management audits. Conducting...