Talent.com
This job offer is not available in your country.
Manager / General Manager – IT General Controls

Manager / General Manager – IT General Controls

CMA CGMMumbai, Maharashtra, India
5 days ago
Job description

THE ROLE

This role is focused on evaluating and reviewing IT General Controls (ITGCs) and providing assessments for critical IT areas such as Segregation of Duties (SOD), Access Management, Role Review, and Application Control at the design level. He / She should have a strong understanding of internal controls, access management processes, risk management, and control design frameworks, and will be responsible for ensuring that the organization’s IT systems meet regulatory and compliance requirements.

REPORTING STRUCTURE

Functional Team : IT General Controls, Risk & Internal Control Head

Base Location : GBSI – Mumbai OR Chennai

PURPOSE

The Purpose is to review and evaluate the IT General Controls (ITGCs) and providing assessments for critical IT areas such as Segregation of Duties (SOD), Access Management, Role Review, and Application Control at the design level. They play a crucial role in defining the access control framework, change management control for the varied application that are being used by the organization and instill better governance and internal control from IT applications standpoint.

KEY RESPONSIBILITIES

1) Segregation of Duties (SOD) Review :

  • Perform detailed SOD analysis and testing to ensure proper segregation of duties in key business processes.
  • Identify potential conflicts in user access roles and recommend corrective actions to mitigate risks related to unauthorized access or fraudulent activities.
  • Conduct SOD assessments at the design level, analyzing roles, permissions, and access configurations to confirm compliance with the organization’s internal policies and external regulations.

2) Access Review and Management :

  • Perform periodic access reviews, ensuring that user access levels are aligned with job responsibilities and the principle of least privilege.
  • Evaluate user provisioning and de-provisioning processes to ensure timely and accurate access changes based on employee role transitions.
  • Work with IT and HR teams to conduct audits of access control lists, identify unnecessary access, and recommend actions to minimize security risks.
  • Assess the design and configuration of access control mechanisms, ensuring appropriate authentication and authorization controls
  • 3) Role Review and Role Design :

  • Conduct role-based access control (RBAC) reviews at the design level to ensure that user roles are properly defined, and access is appropriately restricted based on the role.
  • Collaborate with business units and IT teams to validate role definitions and user permissions within critical applications and systems.
  • Perform design-level assessments of role-based frameworks to ensure they meet security standards and comply with regulatory requirements.
  • 4) Application Control Review :

  • Review and assess application controls at the design level, ensuring that key applications are properly configured to meet security, compliance, and operational requirements.
  • Perform walkthroughs of application design to assess the effectiveness of security controls, data integrity, and system functionality.
  • Assess controls related to data input, processing, and output within applications to prevent unauthorized transactions, data breaches, or data loss.
  • Conduct gap analysis between design-level controls and actual implementation to identify risks or deficiencies in application security.
  • 5) General IT Control and Risk Assessment :

  • Evaluate the effectiveness of ITGCs (e.g., access management, change management, data backup, and recovery processes) through detailed reviews and testing.
  • Identify and evaluate risks related to the design and implementation of IT controls and recommend improvements or remediation actions.
  • Support internal and external audits by providing necessary documentation and evidence of control design and effectiveness.
  • 6) Reporting and Documentation :

  • Develop detailed reports documenting findings from SOD, access, role, and application control reviews.
  • Provide actionable recommendations for remediation based on identified control weaknesses.
  • Maintain and update documentation related to control design and review processes, ensuring alignment with regulatory standards and company policies.
  • QUALIFICATION & CERTIFICATIONS

  • Bachelor's degree in Computer Science, Information Technology, or a related field.
  • 5-6 years of relevant experience in IT governance, risk management, or internal auditing, with a focus on ITGCs, SOD, access management, and application control reviews.
  • Strong knowledge of control frameworks such as COBIT, ITIL, ISO 27001, and NIST.
  • Familiarity with ERP systems and applications, including role-based access control (RBAC) and security configurations.
  • Experience with conducting design-level reviews for ITGCs, SOD, access controls, and application security.
  • Proficiency in regulatory requirements (e.g., SOX, GDPR, HIPAA) and industry best practices.
  • Experience with audit tools and software for testing and documenting ITGCs and controls.
  • Strong analytical, communication, and reporting skills.
  • Ability to collaborate with cross-functional teams, including business users, IT teams, and auditors.
  • Relevant certifications such as CISA, CRISC, CISSP, or similar.
  • Familiarity with cybersecurity principles, data protection regulations, and risk management strategies.
  • Experience with cloud security and managing access and control in cloud-based environments (e.g., AWS, Azure).
  • Create a job alert for this search

    General Manager • Mumbai, Maharashtra, India

    Related jobs
    • Promoted
    Deputy General Manager- Medical Affairs (GI)

    Deputy General Manager- Medical Affairs (GI)

    ViatrisKalyan-Dombivli, IN
    Company, committed to providing access to medicines, advancing sustainable operations developing innovative solutions, and leveraging our collective expertise to improve patient outcomes.Formed in ...Show moreLast updated: 24 days ago
    • Promoted
    HubSpot & Systems Support Manager

    HubSpot & Systems Support Manager

    ATEC GlobalThane, IN
    HubSpot & Systems Support Manager.Head of Business Growth & Operations.Remote with travel [GMT+2 to GMT+5 : 30].ATEC exists to decarbonise cooking for all households across the Global South with our ...Show moreLast updated: 3 days ago
    SAP Manager

    SAP Manager

    Talent WorxMumbai, MH, IN
    Quick Apply
    IT Advisory Risk Consulting – IT Audit & Assurance .Our client's IT Advisory – Risk Consulting team is looking for Associate Consultants / Consultants / Assistant Managers to join their IT A...Show moreLast updated: 19 days ago
    • Promoted
    Vice President - Wholesale IT Risk and Control

    Vice President - Wholesale IT Risk and Control

    NatoboticsMumbai, Maharashtra, India
    We’re on an exciting journey with our client and we want you to join us.Our client is one of leading Investment abnking company so you will be playing a key role as a Vice President - Wholesale IT ...Show moreLast updated: 2 days ago
    • Promoted
    Regional Manager

    Regional Manager

    ALLEN DigitalThane, IN
    The Regional Manager -Business Development will be responsible for leading, motivating, and managing a team of Business Development Executives (BDEs). This role requires a strong leader with a prove...Show moreLast updated: 19 days ago
    • Promoted
    Remote - IT Purchasing Specialist

    Remote - IT Purchasing Specialist

    KPG99 INCKalyan-Dombivli, IN
    Remote
    Duration : Through 2025 with 1 year extension after that.Must Haves (need to be highlighted in sizzle & present on resume). Experience with Software, IT Services, software, and Hardware purchasing.St...Show moreLast updated: 2 days ago
    • Promoted
    Head of IT Infrastructure (Daskalos)

    Head of IT Infrastructure (Daskalos)

    EmeritusMumbai, Maharashtra, India
    Head of IT Infrastructure — Daskalos (Multi-Campus, India).Daskalos is launching and operating multiple higher-education campuses across India in collaboration with international partner institutio...Show moreLast updated: 1 day ago
    • Promoted
    Senior IT Systems Engineer & Technical Lead

    Senior IT Systems Engineer & Technical Lead

    FedTecKalyan-Dombivli, IN
    Senior IT Systems Engineer (Cloud, Endpoint & Infrastructure Lead) / Hands-on Manager.Monday – Friday, 6 : 30 PM to 4 : 00 AM IST (India Standard Time). This schedule is fixed to support US Eastern Time...Show moreLast updated: 15 days ago
    • Promoted
    Head - IT Governance and Program Management

    Head - IT Governance and Program Management

    SK Finance LtdMumbai, Maharashtra, India
    Role - Head - IT Governance & Program Management.We are seeking experienced professionals as Head of IT Governance and Program Management who will be responsible for establishing and leading IT gov...Show moreLast updated: 13 days ago
    • Promoted
    Manager – Zoho Development & IT Systems

    Manager – Zoho Development & IT Systems

    LUCKY-TECH Membranes Pvt LtdMumbai, Maharashtra, India
    Architectural Tensile Structures.Aluminium Tent Hanger Structures.With advanced infrastructure such as .Zünd Switzerland Cutting Machines. Forsstrom Sweden High-Frequency Welding Machines.Manager – ...Show moreLast updated: 23 days ago
    • Promoted
    Offshore IT Support

    Offshore IT Support

    Insight GlobalThane, IN
    Insight Global is seeking offshore IT Support for one of Canada's largest independent retailer.This team is focused on upgrading store systems from Windows 10 to Windows 11.The team is currently de...Show moreLast updated: 2 days ago
    • Promoted
    Technical Services Manager

    Technical Services Manager

    GenScriptThane, IN
    Coordinate accountteam to drive business growth by strengthening the service levelto customer.Develop technical solution / innovation for regionalkey account and distributors to address customer need...Show moreLast updated: 15 days ago
    • Promoted
    Amneal Pharmaceuticals - Deputy General Manager - IT Business System Analysis

    Amneal Pharmaceuticals - Deputy General Manager - IT Business System Analysis

    AMNEAL PHARMACEUTICALS PRIVATE LIMITEDMumbai, India
    Title : IT Business Partner - Commercials Location : Mumbai Reporting To : India IT Head ...Show moreLast updated: 11 days ago
    • Promoted
    IT Risk and control

    IT Risk and control

    Smart IMS Inc.Mumbai, Maharashtra, India
    Individual with IT risk / audit experience preferably in Banking / FI domain.Bachelor’s degree in IT, minimum 5-7 plus years of experience, industry certifications (CISA, CISM, COBIT foundation, etc) p...Show moreLast updated: 15 days ago
    • Promoted
    IT Team Lead

    IT Team Lead

    Lenovo IndiaMumbai, Maharashtra, India
    IT Service Delivery Manager / Team Lead.IT service performance, drive customer satisfaction, and lead a high-performing team. This role is ideal for someone with a strong ITIL foundation, experience m...Show moreLast updated: 15 days ago
    • Promoted
    IT Plant Head

    IT Plant Head

    Maxis Clinical Sciencesthane, maharashtra, in
    Plant IT Head (Leading Pharma MNC).Formulations & API Manufacturing Plant.This Job Role will be a part of Plant IT and Responsible for Heading the overall IT Infra, Applications & Systems for the P...Show moreLast updated: 30+ days ago
    • Promoted
    Remote IT Network Site Survey Lead

    Remote IT Network Site Survey Lead

    Nextbridge IT SolutionsThane, IN
    Remote
    Network Site Survey Engineer will lead the execution and standardization of comprehensive network (IT) site surveys across the client’s facilities. This role ensures that each assessment, covering c...Show moreLast updated: 5 days ago
    • Promoted
    Assistant General Manager

    Assistant General Manager

    Ashish Life Science Pvt LimitedMumbai, Maharashtra, India
    Identify, develop, and nurture existing and new business relationships, identify prospects, and.Australia, New Zealand, US, Canada, South Africa. Build strategy for each market with respect to.Ensur...Show moreLast updated: 27 days ago