14 Aug
|
Virtuoso Staffing Solutions
|
Mumbai
14 Aug
Virtuoso Staffing Solutions
Mumbai
Associate Director, IT Audit
Location: Mumbai
Designation: Associate Director – IT Audit
Total Experience: 8–11 Years
Relevant AD-Level Experience: 2.5–5 Years
CTC: Up to 35 LPA
Notice Period: Up to 60 Days
Role Overview
We are looking for a senior Associate Director – IT Audit to lead complex IT Audit, IT Risk & Controls Assurance and Technology Risk Consulting engagements from the Mumbai office.
The ideal candidate will have strong experience in IT Audit, ITGC, IT Application Controls, Technology Risk, Internal Audit, IT Regulatory Compliance and Controls Assurance, along with proven client management, people leadership and business-development capabilities.
Candidates must come from IT Services, Big 4/Management/Technology Consulting, Advisory, or Financial Services/Banking/Insurance organizations.
Strict requirement: Candidates should have 2.5–5 years of experience at Associate Director / Director / Senior Manager / equivalent engagement-leadership level, with demonstrable ownership of IT Audit / Controls Assurance engagements.
Key Responsibilities
IT Audit & Risk Consulting Leadership
- Lead multiple large and complex IT Audit, IT Risk & Controls Assurance and Technology Risk Consulting engagements.
- Provide subject-matter leadership across ITGC, IT Application Controls and integrated IT audits.
- Review and oversee audits covering:
- Applications
- Databases
- Operating Systems
- Middleware
- Networks
- IT Operations
- Access Management
- Change Management
- Business Continuity / Disaster Recovery
- IT Service Management
- Lead/review SOC 1 / SOC 2 assurance and attestation engagements.
- Oversee IT Regulatory Compliance and Third-Party Risk Assurance engagements.
- Lead risk assessments, control design/effectiveness assessments, testing and remediation reviews.
- Review engagement work programs, risk assessments, working papers, findings and final reports.
- Provide senior-level recommendations to clients on technology risk and control improvements.
Engagement & Portfolio Management
- Own the end-to-end engagement lifecycle from opportunity/scoping through planning, execution, reporting and closure.
- Oversee multiple concurrent projects and ensure delivery against scope, quality, timelines and commercial commitments.
- Monitor engagement profitability, utilization, project risks and resource requirements.
- Review project budgets, staffing and delivery plans.
- Ensure adherence to professional standards, internal quality requirements and client expectations.
- Work closely with Partners/Directors on engagement strategy, quality and risk management.
Client & Account Management
- Serve as a senior client relationship owner for key accounts.
- Establish relationships with CIO, CTO, CISO, CRO, Internal Audit, Risk, Compliance and senior business stakeholders.
- Understand client business challenges and translate them into technology risk and advisory opportunities.
- Lead senior management discussions, steering committees and audit committee presentations.
- Handle escalations and ensure high levels of client satisfaction.
- Develop and maintain long-term client relationships.
Business Development & Practice Growth
- Lead and actively participate in business development from lead generation through closure.
- Own/support revenue targets for assigned accounts, sectors or solutions.
- Identify cross-selling and up-selling opportunities across IT Audit, IT Risk, Cyber Risk and Technology Advisory.
- Lead responses to RFPs, RFIs, proposals and client presentations.
- Develop solution approaches, scope, commercials and engagement proposals.
- Build market/industry relationships and contribute to account-growth strategies.
- Contribute to practice development, thought leadership and solution development.
People Leadership
- Lead large, multi-level engagement teams and managers.
- Act as a performance manager for junior and mid-level professionals.
- Drive staffing, resource planning, performance management and succession planning.
- Mentor and coach managers, consultants and analysts.
- Build specialist capabilities within the IT Audit / Technology Risk practice.
- Conduct training and knowledge-sharing initiatives.
Thought Leadership & Practice Development
- Develop and contribute to IT Audit, Technology Risk and Controls Assurance methodologies.
- Create reusable solutions, accelerators, tools and knowledge assets.
- Track emerging regulatory and technology developments and assess their impact on clients.
- Lead internal knowledge-management and thought-leadership initiatives.
- Represent the practice in client forums and industry discussions.
Emerging Technology Risk Strong understanding of technology risks and controls across one or more emerging technology areas, including:
- Cloud Security / Cloud Controls
- DevSecOps
- Intelligent Automation / RPA
- Digital Transformation
- Data & AI Risk
- Cybersecurity
- Data Privacy
- Third-Party / Outsourcing Risk
Required Skills & Experience
- 8–11 years of total professional experience.
- 2.5–5 years of relevant Associate Director / Director / Senior Manager / equivalent leadership experience.
- Robust and demonstrable experience in IT Audit, IT Risk & Controls Assurance or Technology Risk Consulting.
- Candidates must have relevant experience in IT Services, Consulting/Advisory, or Financial Services, preferably with significant client-facing consulting exposure.
- Strong knowledge of
- IT General Controls
- IT Application Controls
- IT Risk Management
- IT Audit & Assurance
- Regulatory Compliance
- Third-Party Risk
- Internal Audit
- SOC 1 / SOC 2
- Strong understanding of frameworks such as COBIT, COSO, ITIL, ISO 27001 and NIST.
- Proven experience managing multiple engagements and large teams.
- Strong client relationship and stakeholder-management capabilities.
- Demonstrable experience in RFP/RFI, proposals, pre-sales and business development.
- Strong commercial and business acumen.
- Excellent written, verbal and presentation skills.
- Strong analytical and problem-solving capabilities.
- Willingness to travel within India and internationally as required.
Preferred Certifications
- CISA
- CISSP
- CISM
- CIA
- ISO 27001 Lead Auditor
- SAP/Oracle Security certifications
- Cloud Security certifications
- Relevant Cybersecurity / Technology Risk certifications
📌 Associate Director (Mumbai)
🏢 Virtuoso Staffing Solutions
📍 Mumbai