02 Aug
|
Talent 500 by ANSR
|
Secunderabad
02 Aug
Talent 500 by ANSR
Secunderabad
Talent500 is hiring for one of its clients.
Who are we:
Core Insurance Platforms (CIP) is Zurich's global capability responsible for building, running, and evolving core insurance technology. We set a unified, scalable operating model—covering governance, standards, architecture, service delivery, and reuse—so our business units can deliver at speed and scale.
CIP is the strategic steward of Zurich's Guidewire ecosystem, aligning platform roadmaps to business strategy while driving stability, modernization, reduced supplier dependency, and long term cost efficiency.
India delivery center is one of our global delivery and capability hub. We bring together experts in AI, engineering, analysis, quality, and architecture to deliver product & process solutions, application run services, change and transformation initiatives, and centralized platform services across both on prem and Guidewire Cloud environments. Our teams operate from multiple global delivery centers, supporting Zurich's business units worldwide.
Network, Telephony & Security Audit Controls Assessor (ICIF / NIST):
Role Objective & Alignment to GCC Vision:
This role is a core contributor to Zurich's AI-native Global Capability Center (GCC), strengthening assurance across Network, Telephony, and Security domains through data-driven and evidence-based control assessments. The role applies AI-assisted analysis to improve control coverage, identify risk patterns earlier, and increase the consistency and quality of assurance outcomes while maintaining strong human judgement, independence, and regulatory accountability.
Role Summary:
We are seeking an experienced Network, Telephony, and Security Audit Controls Assessor to evaluate the design and operating effectiveness of technical controls aligned with ICIF and NIST frameworks. The role involves performing control self-assessments, evidence reviews, and risk analysis across network and telephony environments while collaborating closely with IT, security, and compliance teams. Enterprise-approved AI capabilities are leveraged to enhance evidence analysis, trend detection, and reporting clarity within a regulated assurance environment.
Key Responsibilities:
- Assess the design and effectiveness of network, telephony, and security controls against ICIF, NIST, ISO 27001, and related standards.
- Perform control self-assessments, risk assessments, and testing activities across on-premises and cloud-connected environments.
- Review and validate control evidence for completeness, accuracy,
and consistency.
- Identify control gaps, emerging risks, and systemic weaknesses and provide actionable recommendations.
- Document assessment outcomes and prepare audit-ready reports for management and governance forums.
- Partner with IT, security, and compliance teams to track remediation activities and closure of identified issues.
- Stay updated on regulatory requirements, industry standards, and evolving technology risk trends impacting network and telephony domains.
- AI-Driven Outcomes Expected from This Role
- Improve the quality and consistency of control assessments through AI-assisted evidence review and completeness checks.
- Identify recurring control weaknesses and systemic risk patterns earlier using AI-assisted trend analysis.
- Reduce manual effort in evidence comparison, control mapping, and reporting through AI-supported summarization and classification.
- Develop clearer, management-ready audit reports using AI-assisted structuring and narrative refinement validated through assessor judgement.
- Strengthen assurance coverage by prioritizing higher-risk areas surfaced through AI-supported analysis.
- AI-Related Capabilities & Skills
- Ability to utilize AI-assisted tools for analysing large volumes of control evidence, including logs, configurations, and artefacts, to identify anomalies and gaps.
- Experience using AI-supported analysis to map evidence against ICIF and NIST control requirements and identify potential misalignments.
- Strong professional judgement to validate AI-assisted findings before inclusion in formal audit reports.
- Comfortable leveraging AI-assisted summarization tools to prepare concise, audit-ready management reports while maintaining audit independence and accountability.
- Ability to leverage AI-driven insights to identify emerging technology risks and priorities assessment focus areas.
- Clear understanding that AI augments, but does not replace, professional skepticism, regulatory accountability, and audit judgement.
- Core Technical & Audit Skills
- Strong understanding of network and telephony infrastructure and associated security controls.
- Working knowledge of ICIF,
NIST CSF/800 series, ISO 27001, and related control frameworks.
- Experience performing IT audits, security assessments, control testing, or technology risk reviews in regulated environments.
- Excellent analytical, documentation, stakeholder communication, and report-writing skills.
Required Experience:
- Experience in IT audit, technology risk, security assessment, or compliance-related roles.
- Hands-on familiarity with ICIF, NIST, and related frameworks such as ISO 27001.
- Solid understanding of network, telephony, and security control environments.
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related discipline, or equivalent practical experience.
- Professional certifications such as CISA, CISSP, CISM, or Security+ are preferred.
- Candidate Data Privacy Notice
- This job posting relates to opportunities with Zurich Digital International Private Ltd. (Zurich) and is published with the support of ANSR Inc. (ANSR), an authorized recruitment service provider engaged by Zurich for hiring activities.
- When applying for this role, personal data provided as part of the application process, including contact details, employment history, background information, and related information, may be collected and processed for recruitment and selection purposes. Such information may be reviewed by Zurich and shared with Zurich affiliates, subsidiaries, related entities, and ANSR solely for recruitment purposes in accordance with their respective privacy policies.
- The involved parties maintain appropriate security measures to ensure protection of personal information and do not further disclose or publish the data beyond the intended recruitment process.
- Applicants have the option not to provide personal information, although doing so may affect the processing of the application. Applicants may also review, amend, or withdraw consent regarding their personal data. Personal information will be retained only for as long as necessary to fulfil the purpose for which it was collected.
- Zurich applies reasonable security measures to protect personal data from unauthorized access, misuse, loss, or alteration. However, no method of electronic storage or internet transmission is completely secure.
- By applying for this position, candidates consent to the collection, storage, transfer, disclosure, and processing of their personal and sensitive information for recruitment purposes.
📌 Senior Lead - Network, Telephony & Security Controls Assessor (Secunderabad)
🏢 Talent 500 by ANSR
📍 Secunderabad