Role Purpose: The role is responsible for managing activities pertaining to areas covered under IT and Infosec Audits and providing relevant inputs in the form of risk triggers to respective vertical heads in internal audit in order to assist in risk assessment exercise along with timely updating of relevant dashboards.
Role Accountability:
Manage the activities performed by Internal Audit Vertical - IT, Digital and Infosec Audit
Assist Vertical Head in preparing IT, Digital and infosec audit plan based on risk assessment after incorporating inputs from all avenues
Monitor & Conduct overall audit activities pertaining to areas covered under IT, Digital and Infosec audits respectively
Perform resource allocation and prepare an execution plan for audits to undertaken during a given year
Develop data models (regression, clustering, optimization) to work on real time machine/process data to derive actionable insights for internal audit vertical as a whole, and for DAU audit unit in particular
Assist respective audit verticals in preparing final audit presentation for ACB by visualizing data points
Design and develop descriptive, predictive as well as prescriptive analytics for the IA function
Perform portfolio analytics, segmentation and hypothesis testing necessary sampling etc.
Perform regular updating of internal audit tools to ensure minimum downtime
Ensure adherence to regular process documentation practices in compliance with the process guidelines
Perform complex operational audits, review of entire IT landscape (IT, information security, business applications), IT general controls and compliance audits ensuring adherence to several regulatory mandates
Conduct third party security risk reviews (vendor, supplier risk review/assessment)
Align resources for performing risk assessment and other planning related task
Ensure adequate validation of business contracts, SAs, MSAs, SoW for security obligations and / or information risk
Ensure regular follow up to close al