Position: Sr.Manager IT Audit (Sox)
Location: Chennai
Company: A Leading MNC Organisation
Experience: 15-20 years
Education: BE / MBA
Certification: CISA, CEH, CISSP, CISA. SANS certifications such as GWAPT or GCFE preferred
CTC: Open
Job Description Summary
The Audit & Risk Management Services (ARMS) organization is a team of about 50 audit professionals located across ~10 sites worldwide. The group is responsible for delivering high quality objective and independent assurance over the Company's key business and technology risks to the Audit Committee and Management in a cost effective way and consistent with Professional Standards. Reflecting the Company's core value of continuous improvement, the ARMS team is in the process of moving toward wider coverage of operational risks, exploring more efficient audit approaches and industry best practices where appropriate.
The Senior Manager - IT Audit role will be responsible for defining and executing the IT Security audit plan in accordance with professional best practices, and will assist the Director and Vice President of ARMS in driving department-wide strategy and transformation programs. The role would also stay closely aligned with IT Management, IT Security Management and IT Compliance Management, and lead cybersecurity audits of Applications, Products, Systems, Networks and Databases, in accordance with professional best practices.
Job Description
PRINCIPAL ACCOUNTABILITIES / DUTIES:
Define and support the IT Audit strategy based on thorough understanding of our business and risk exposures and incorporating an integrated approach with Operational audit
Contribute to the overall risk assessment performed for IT specific considerations
Help define the annual audit plan, oversee the execution of the plan, deliver high quality, efficient and timely audit work in accordance with the Internal Audit charter, IIA standards and professional best practices
Add value to the business through great communication and alignment with IT senior management
Work closely with the Flex Worldwide IT Security team on audit scoping, risk assessment, planning, execution of work, reporting and closure
Drive creation of actions to remediate deficiencies and risk mitigation plan with stakeholders
Occasionally work with external auditors and help ARMS leadership manage expectations
Assist in hiring and talent management for the IT audit team (~8 people) across multiple sites/regions
Drive efficiencies in our approach to - do more with less-
Assist the ARMS leadership team in defining department strategy
Drive department transformation programs such as implementing risk based auditing approaches, streamlining processes and documentation, utlizing data analytics & continuous audit, improving indicators & performance metrics, developing and deliver training programs for the team, enhancing stakeholder & Audit Committee reporting and department budgeting processes.
Drive the professional development of the IT Audit team, including benchmarking, training, certification and engagement in IIA/ ISACA forums
Coach and mentor members of the team and take a personal interest in their career aspirations
Additional Job Description
Candidate profile :
Significant hands on experience in various types of application security testing and contemporary testing frameworks and tools (ex., Metasploit, BurpSuite)
Strong exposure to Secure software development and coding, Securing cloud environments, Enterprise Software / Security architecture, and other emerging trends (ex.,Big data, IOT, etc.)
Exposure to audits or strong passion and desire to learn Information Security auditing
Exposure to large, distributed IT teams and Manufacturing organizations
Holds industry certifications such as CEH, CISSP, CISA. SANS certifications such as GWAPT or GCFE preferred
Soft skills - Self-starter, Team player with ability to motivate, lead and manage a diverse team, Effective influencer and communicator with ability to manage stakeholders effectively
Experience in driving change in a complex, diverse organization
Didn’t find the job appropriate? Report this Job