Job Title : Lead and Audit Compliance Specialist
Location : Bangalore
Aptean is changing. Our bespoke ERP solutions are transforming a huge range of global businesses, from food producers to manufacturers. In a world of generic enterprise software, we provide targeted solutions that bring together the very best technology and drive greater results. With over 4500 employees, 90 different products and a global client base, there’s no better time to advance your career at Aptean.
About the Role :
We are seeking a highly motivated and experienced Audit and Compliance Specialist to join our growing team in Bangalore, India. Identified SME will play a key role in maintaining our compliance posture with industry standards like SOC 2 and ISO 27001, focusing on cloud infrastructure from a Governance, Risk, and Compliance (GRC) perspective.
Conduct internal audits of security controls and processes related to SOC 2 and ISO 27001 compliance.
- Assist with the development, implementation, and maintenance of security policies and procedures.
- Analyze and evaluate the effectiveness of existing security controls and identify areas for improvement.
- Participate in the design and execution of penetration testing and vulnerability assessments.
- Work collaboratively with various teams (Security, IT Operations, Cloud Engineering) to remediate identified security risks and control gaps.
- Maintain and update GRC documentation related to security controls and compliance requirements.
- Stay up-to-date on industry best practices and regulatory changes related to cloud security and compliance.
- Assist with the preparation and execution of SOC 2 and ISO 27001 audits.
- Support the development and implementation of a cloud security GRC program.
Work Experience
7 -12 years of experience in a similar role within a security-conscious organization.
Knowledge, Skills and Abilities
Experience conducting internal audits of security controls and processes.Strong understanding of SOC 2 and ISO 27001 compliance requirements.Working knowledge of cloud security concepts and best practices (e.g., AWS Security, Azure Security, GCP Security).Proficiency in GRC frameworks and methodologies (e.g., COBIT, COSO).Excellent analytical and problem-solving skills.Strong communication and interpersonal skills, with the ability to collaborate effectively across different teams.Ability to prioritize tasks, manage multiple deadlines, and work independently.Experience with GRC tools (e.g., MetricStream, RSA Archer) is a plus.Strong understanding of internal security audit and policy review processes.CISA, CRISC, or other relevant security certifications are a plus.Shift details : UK Shift
Required to work in shift : Yes
If Yes Shift Timing - UK