Internal Audit ( IT Security) Assistant Manager
Noida, Uttar Pradesh
Key Responsibilities: Conduct IT and cloud security audits across various domains, including IT GeneralControls, Information Security Controls, Cloud Security, Network Security, VulnerabilityManagement, and Vendor Risk Assessments. Assess compliance with relevant laws, regulations, and organizational policies, providingexpertise in regulatory requirements specific to both on-premises and cloudenvironments. Develop and enhance information security and cloud security policies and procedures inalignment with industry best practices. Maintain thorough documentation of audit findings, risk assessments, and securitymeasures for internal and external reporting. Validate ITGC, cloud security, and application-specific controls, and manage auditdocumentation including risk assessments, working papers, audit program checklists, andevidence gathering. Follow up on and ensure closure of non-compliance issues identified during audits. Manage and oversee third-party risk assessments and audits, ensuring robust securitycontrols are in place for both traditional and cloud-based service providers. Lead and participate in the development, migration, and implementation of securitycontrols and policies for network and cloud security solutions. Conduct risk-based security assessments on internal, vendor, and third-party hostedenvironments, focusing on both traditional IT and cloud infrastructure. Participate in product and vendor selection processes, contributing to the implementationand integration of new technologies, with a strong emphasis on cloud security solutions.
Experience/ Skills Required: Minimum 5 years of experience in information security and auditing, with a strongbackground in cloud security, and the banking and IT industries. Proven experience in performing IT and cloud security audits, validating ITGC and cloudapplication controls, and maintaining audit documentation. Hands-on experience with vulnerability management, risk management, physical security,identity & access management, encryption, secure development, incident management,security infrastructure, and security policy for both on-premises and cloud environments. Expertise in third-party risk management, regulatory compliance, and managing IT auditfindings in both traditional and cloud-based contexts. Strong analytical and problem-solving skills. Excellent communication and documentation skills. Ability to manage multiple projects and meet deadlines. Strong understanding of IT, cloud security, and cybersecurity frameworks and standards. Proficiency in using various security assessment tools and technologies, particularlythose related to cloud environments. Strong analytical and problem-solving skills. Excellent communication and documentation skills. Ability to manage multiple projects and meet deadlines. Strong understanding of IT, cloud security, and cybersecurity frameworks and standards. Proficiency in using various security assessment tools and technologies, particularlythose related to cloud environments.
Qualifications & Certification: Bachelor's / Master’s degree in Information Technology, Cyber Security, or a related field. ISO 27001/CNSS/CCNA/CISA/CISM/CISSP Preferred Detailed knowledge of security tools, PCI-DSS, general ITGC controls, compliance testing, cloud risk assessment, GRC, OWASP, MITRE ATT&CK, change management, and policies and procedures. Proficiency in various security and cloud technologies including AWS, Azure, Google Cloud Platform, Palo Alto, Fortinet & Checkpoint Firewalls, SOAR (Cortex), Force scout
Why join us 1. A collaborative output driven program that brings cohesiveness across businesses through technology 2. Improve the average revenue per use by increasing the cross-sell opportunities3. A solid 360 feedback from your peer teams on your support of their goals4. Respect, that is earned, not demanded from your peers and manager Compensation: If you are the right fit, we believe in creating wealth for youWith enviable 500 mn+ registered users, 21 mn+ merchants and depth of data in our ecosystem, we are in a unique position to democratize credit for deserving consumers & merchants – and we are committed to it. India’s largest digital lending story is brewing here. It’s your opportunity to be a part of the story!
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics Audits AWS Azure Banking CISA CISM CISSP Cloud CNSS Compliance Data Analytics Encryption Firewalls Forensics GCP Governance ISO 27001 MITRE ATT&CK Network security OWASP Privacy Risk assessment Risk management Security assessment SOAR Vulnerability management
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.