Job Title: Senior Analyst | IT Assurance_Advisory | Mumbai | Controls Assurance
Job Summary:
As an IT Assurance Consultant, you will be responsible for evaluating and improving the effectiveness of IT controls, risk management processes, and compliance frameworks in client organizations. You will assist in delivering assurance services to ensure the integrity, confidentiality, and availability of information systems, aligned with regulatory requirements and industry standards.
You will work closely with cross-functional teams to assess IT environments, identify risks, and recommend improvements that support business objectives and enhance control environments.
Key Responsibilities:
- IT Control Assessments:
- Evaluate the design and operating effectiveness of IT general controls (ITGCs), application controls, and process controls across various IT environments (on-premises, cloud, hybrid).
- Perform risk assessments to identify critical control areas related to financial reporting and operational risks.
- Assurance Execution:
- Assist in planning, executing, and documenting IT audit engagements in accordance with firm methodology and professional standards (e.g., ISACA, COBIT, COSO, PCAOB, SOX compliance).
- Test IT controls related to access management, change management, system development, data backup, and disaster recovery.
- Support automation initiatives within the assurance process.
- Client Interaction and Reporting:
- Collaborate with client IT and business stakeholders to gather information, understand processes, and communicate audit findings.
- Prepare detailed workpapers, reports, and presentations for internal and external stakeholders.
- Provide practical recommendations for control enhancements and risk mitigation.
- Regulatory Compliance & Frameworks:
- Support clients in compliance efforts related to Sarbanes-Oxley (SOX), ISO 27001, and other relevant standards.
- Stay updated with changes in technology regulations, and best practices.
- Continuous Improvement & Learning:
- Participate in ongoing professional development through training, certifications (e.g., CISA), and knowledge sharing within the team.
- Contribute to internal process improvement and methodology enhancement initiatives.
Required Qualifications & Skills:
- Bachelor’s degree in information technology, Computer Science, Information Systems, Accounting, or related field.
- 3-5 years of experience in IT audit, IT risk management, or related roles.
- Understanding of IT control frameworks (COBIT, COSO, ITIL) and standards (ISA, PCAOB).
- Basic knowledge of enterprise technologies such as ERP systems (SAP, Oracle), databases, operating systems.
- Strong analytical skills and attention to detail.
- Excellent communication and interpersonal skills for effective client interactions and team collaboration.
- Proficiency in MS Office (Excel, Word, PowerPoint).
- Ability to manage multiple priorities in a fast-paced environment and meet deadlines.
- Professional certifications such as CISA or ISO 27001 are highly desirable but not mandatory at entry level.