Talent.com
Technology Risk and Audit Director
Technology Risk and Audit DirectorCSC • Bengaluru, Republic Of India, IN
Technology Risk and Audit Director

Technology Risk and Audit Director

CSC • Bengaluru, Republic Of India, IN
6 hours ago
Job description

Role : IT Audit & Risk Manager

Exp range : 12+ years

Work Location : Bangalore

Work timings : 12 to 9pm IST

Work model : Hybrid

Position Summary

The IT Audit and Risk Manager is an essential role to assist our business with making risk informed decisions. The position is responsible for supporting the security direction of the business and elevating the company’s security posture across multiple jurisdictions. The position requires an understanding of managing cyber risk in new technologies and legacy systems. The Cyber Security IT Audit and Risk Manager is expected to support the security strategy of the business within new and existing information system capabilities and responsible for leading internal audit efforts and coordinating with audit partners.

The ideal candidate has a strong IT security audits and risk management background, proven experience of experience in security, compliance, risk management and audit. The role oversees the business’ security audit requirements and obligations mandated by standards, regulations and experience developing IT cyber security policies.

In tandem with security leadership, the Cyber Security IT Audit and Risk Manager consistently assesses, audits, and validates the assurance of the security program. As a primary point of contact for internal and external auditors, the Cyber Security IT Audit and Risk Manager monitors progress and enforces resolution of outstanding issues that may lead to non-compliance or security threats to the business via effective delegation and empowering cross matrixed teams. Success will be driven by strong servant leadership principles and guidance which compels teams to action. As a primary point of contact for security risks, you will monitor progress and enforce resolution of outstanding issues that may lead to non-compliance or security threats to the business. As a key member of the information security team, the role must focus on strong risk management and corporate resiliency, and not be driven solely by compliance.

Essential Job Duties

  • Build relationships with global teams across Business Operations, Compliance, IT and Legal to manage technology risks and regulatory compliance.
  • Ensure collection, validation, adequacy and accuracy of information that are submitted to audit partners.
  • Customize and manage GRC tools as part of day today work.
  • Engage with IT project teams to identify and mitigate cyber security risks and build solutions that are compliant with global regulatory requirements.
  • Improve compliance of IT processes and identify opportunities for technology compliance control automation.
  • Manage and execute delivery of assigned internal, external, and jurisdictional audits as per published audit plan.
  • Design high-quality test plans and direct technology control test activities.
  • Build and maintain controls that map to compliance requirements, provide implementation recommendations and monitor evidence.
  • Continuously improve the IT Security control framework in alignment with industry trends
  • Contribute to coordination with jurisdictional Business, Risk, Compliance stakeholders and audit partners.
  • Keep up to date with external technology and compliance regulations, data privacy and security best practices.
  • Define and publish quantitative and qualitative technology compliance metrics..
  • Identify strengths and weaknesses in IT technology operations and projects as they relate to privacy, security, business resiliency and regulatory compliance.
  • Document, formulate and enforce areas of security improvement that balance risk with business operations and do not diminish efficiencies or innovation.
  • Work in tandem with GRC and business leadership to perform ongoing security program assessments and audits and create annual strategic technology and budgetary directives.
  • Monitor current and proposed security changes impacting regulatory, privacy and security industry best practice guidance. Apply GRC expertise across key lines of business, including products, practices, and procedures.

Skills and Experience

  • At least 12 years’ experience in IT audit, risk management.
  • Prior experience leading internal and / or external IT audits in a large organization and interacting with audit partners
  • Extensive knowledge and understanding of audit standards and practices, and control frameworks (ISO, NIST, COSO, COBIT, etc.). Additional experience in one or more of the following : ISO 27001 or NIST and experience in creating / managing SOC frameworks.
  • Highly trustworthy;
  • leads by example and empowers team members by involving them in various audit programs to enable them to identify and manage risk in the organization IT audit control framework.

  • Strong business acumen and security technology skills for well-rounded proficiency, as well as proven ability to align with security practices and compliance responsibilities.
  • Extensive knowledge of global technology laws and regulations, including but not limited to PCI, SOX, FFIEC, ISO 27001, SWIFT, GDPR, AIFMD, PSD2, EBA, ESMA, MAS, CSSF, CIMA, CBI. Additional experience in one or more of the following : ISO 27001 or NIST.
  • Understanding of security concepts of threat categories (such as malware, phishing attacks, Defense-in Depth, MITRE ATT&CK framework).
  • Extensive knowledge and understanding of technology policies, standards, and guidelines and experience
  • Experience with regulations and regulatory expectations regarding technology in the region of your accountability.
  • Prior experience working with GRC systems and knowledge of best practices in configuration.
  • Education and Certification Requirements

  • Bachelor’s degree in computer science or equivalent industry experience.
  • Holds one or more security, audit and risk industry certifications such as : CISSP, CISM, CRISC, CISA, CIA, CIPP, CIPT, CIPM, CERA, CRM, GRCP, or GRCA.
  • About Us

    CSC is a global business, legal, and financial services company based in Wilmington, Delaware, USA, providing knowledge-based solutions to clients worldwide. We have offices and capabilities in over 140 jurisdictions in the Americas, Europe, Asia Pacific, and the Middle East, and more than 8,000 colleagues. We are the business behind business.®

    Visit our careers site to learn more about CSC and our commitment to our clients, communities, and each other.

    CSC is committed to creating a feeling of belonging through a diverse and growth-oriented environment where everyone is valued.

    CSC colleagues have global career opportunities and excellent benefits, including annual success-sharing bonuses or commission plans based on individual performance. To learn more, visit cscglobal.Com / service / careers.

    We offer a range of support to colleagues with disabilities, ensuring people have the necessary resources to thrive in their roles. We encourage candidates to work closely with our talent acquisition partners to convey their specific needs. Our commitment to accessibility reflects our broader dedication to diversity and belonging,

    CSC only accepts resumes from employment agencies that are part of our approved supplier program. Resumes submitted from other agencies either to talent acquisition, our hiring leaders, employees, or through any other mechanism other than our supplier process, will not be eligible to claim related fees and the submitted resumes will be considered property of CSC.

    We encourage candidates to apply directly to our website and not through third-party sources.

    Why Work with CSC?

    At CSC, we don’t just keep businesses running—we help them thrive. For more than 125 years, we’ve been the trusted partner for 90% of the Fortune 500® , leading financial institutions and businesses worldwide. As the global leader in business, legal, financial, and digital brand services across 140+ jurisdictions , we set industry benchmarks through innovation, integrity, and excellence .

    Privately held and professionally managed since 1899, CSC is the business behind business® , delivering knowledge-based solutions from our headquarters in Wilmington, Delaware, USA , to clients across the globe. Our success is built on a people-first culture that fosters growth, collaboration, and agility . Recognized as a Top Employer in India , we are committed to creating an exceptional workplace where talent flourishes.

    Important notice : CSC only accepts resumes from agencies in our approved supplier program . Resumes submitted through unauthorized sources—including direct submissions to hiring leaders or employees—will be considered property of CSC , with no fees eligible for claims. We encourage candidates to apply through our website for a seamless hiring experience.

    🔗 Explore opportunities : [CSC Careers link]

    Why work for us?

    At CSC, we invest in your growth, well-being, and success . Here’s what sets us apart :

  • Global legacy : Join a powerhouse shaping industries worldwide.
  • Career growth and mobility : Access internal promotions, leadership programs, and skill-building opportunities to accelerate your career.
  • Recognition and rewards : Enjoy performance-based bonuses, and employee recognition programs .
  • Work-life balance : Benefit from hybrid work models and state-of-the-art collaborative spaces .
  • Continuous learning : Gain tuition reimbursement, professional certifications, and expert-led development programs in leadership, technical skills, and more.
  • Inclusive culture : Be part of a workplace where diversity, equity, and belonging fuel innovation and success.
  • Community impact : Make a difference through CSC Gives Back , including our partnership with Kiva, to empower underserved communities through microloans.
  • Disclaimer : This job description serves as a general guideline and may evolve based on business needs.

    Create a job alert for this search

    Director Technology • Bengaluru, Republic Of India, IN

    Related jobs
    Digile - Manager - Governance / Risk & Compliance

    Digile - Manager - Governance / Risk & Compliance

    DIGILE TECHNOLOGIES PRIVATE LIMITED • Bangalore, India
    Description : About the Role : We are seeking a highly experienced Governance, Risk, and Compliance (GRC) Manager to lead our enterprise risk manag...Show more
    Last updated: 17 days ago • Promoted
    Senior Manager-Risk Assessment

    Senior Manager-Risk Assessment

    HCLTech • Bengaluru, Karnataka, India
    The position is a member of Risk & Compliance team within HCL Technologies.The DCO will be aligned to critical service delivery engagements and will be responsible for ensuring compliance in accord...Show more
    Last updated: 30+ days ago • Promoted
    Information Technology Risk Manager

    Information Technology Risk Manager

    CSC • Bengaluru, Karnataka, India
    The IT Audit and Risk Manager is an essential role to assist our business with making risk informed decisions.The position is responsible for supporting the security direction of the business and e...Show more
    Last updated: 11 hours ago • Promoted • New!
    Director, Compliance

    Director, Compliance

    Capital One • Bangalore Urban, Karnataka, India
    The Compliance Advisor Director performs a key risk management role (second line of defense), to help ensure corporate initiatives and lines of business processes comply with applicable laws and re...Show more
    Last updated: 10 days ago • Promoted
    Cyber Security Audit, Director, Technical Specialist

    Cyber Security Audit, Director, Technical Specialist

    Morgan Stanley • Bangalore, India
    We're seeking someone to join our team as a Director to provide Cyber Security support the Cyber Security Audit team.In the Audit division, we provide senior management an objective and independent...Show more
    Last updated: 13 days ago • Promoted
    Director of Internal Audit

    Director of Internal Audit

    EXECUTIVE HUNT • Bengaluru, IN
    Ther role is based out of Kuala Lumpur, Malaysia.Having experience of IT Audit is Mandatory.Candidate with 15+ years of experience. Only relevant candidates will be replied to.Show more
    Last updated: 7 days ago • Promoted
    Information Technology Auditor

    Information Technology Auditor

    Deloitte • Bengaluru, Karnataka, India
    To plan, lead, and conduct risk-based audits.This includes evaluating the design and operational efficiency, identifying risks, and making strategies accordingly. To set a risk profile, you will ass...Show more
    Last updated: 18 days ago • Promoted
    Lead - Internal Auditor

    Lead - Internal Auditor

    Ola • Bengaluru, Karnataka, India
    Internal Audit will be responsible for driving the organization’s end-to-end internal audit function, strengthening the control environment, leading enterprise-wide risk assessments, and partnering...Show more
    Last updated: 5 days ago • Promoted
    Associate Director / Lead - Risk Management & Analysis - CA

    Associate Director / Lead - Risk Management & Analysis - CA

    Meesho • Bangalore, India
    About the team : Did you know Meesho helped 9 million women start businesses with zero investment? Our Finance team has a key role to play in making a difference for t...Show more
    Last updated: 21 days ago • Promoted
    Manager

    Manager

    PwC Acceleration Center India • Bengaluru, Karnataka, India
    Main purpose of the job and key background information.Cyber, Risk & Regulatory-Enterprise Technology Solutions - Oracle provides a broad range of assess and recommend services specific to the Orac...Show more
    Last updated: 20 days ago • Promoted
    BDO RISE is hiring for BDO Advantage Manager - Audit Technology & Innovation Team - Bangalore

    BDO RISE is hiring for BDO Advantage Manager - Audit Technology & Innovation Team - Bangalore

    BDO RISE Private Limited • Bengaluru, Karnataka, India
    Applies new technologies and identifies practical use cases that address business problems relevant to audit engagements, supporting the team in exploring and implementing these solutions.Manages m...Show more
    Last updated: 2 days ago • Promoted
    Associate Director - Advanced Analytics

    Associate Director - Advanced Analytics

    KMK Consulting Inc. • hosur, tamil nadu, in
    KMK is a global data analytics and technology consulting company empowering leaders across the Life Sciences industries to make better data-driven decisions. Our data analytics and software platform...Show more
    Last updated: 30+ days ago • Promoted
    Senior Manager Enterprise Risk Management Internal Audit

    Senior Manager Enterprise Risk Management Internal Audit

    Consulting Firm • Bengaluru, Republic Of India, IN
    ONLY CHARTERED ACCOUNTANT's and.NOT FROM FINANCIAL INSTITUTIONS.Position : Senior Manager – Enterprise Risk Management & Internal Audit. Partner / Director – Risk Advisory.The Manager / Senior Manage...Show more
    Last updated: 3 days ago • Promoted
    Application & System Infrastructure Audit, Director, Technology Audit

    Application & System Infrastructure Audit, Director, Technology Audit

    Morgan Stanley • Bangalore, India
    We're seeking someone to join our team as an Director to provide audit coverage for application and system infrastructure supporting Finance Technology Audit. In the Audit division, we provide senio...Show more
    Last updated: 15 days ago • Promoted
    BlueYonder - Manager - Internal Audit Data Analytics & Automation

    BlueYonder - Manager - Internal Audit Data Analytics & Automation

    BLUE YONDER INDIA PRIVATE LIMITED • Bangalore, India
    Lead risk-based IT & Operations audits covering governance, security, infrastructure, and application controls.Drive SOX / J-SOX readiness with strong focus on IT General & Application Contro...Show more
    Last updated: 30+ days ago • Promoted
    Information Technology Audit Manager

    Information Technology Audit Manager

    EliteRecruitments • Greater Bengaluru Area, India
    Design and execute the day-to-day activities of Information Technology (IT) audit engagements, with a focus on strategic, operational and regulatory / compliance related risks.Plan activities related...Show more
    Last updated: 30+ days ago • Promoted
    Senior Manager

    Senior Manager

    PwC Acceleration Center India • Bengaluru, Karnataka, India
    A career in our Cyber Data Tech Risk – Enterprise Tech Solutions practice will provide you with the opportunity to help our clients build trust and confidence in their digital and technology-enable...Show more
    Last updated: 20 days ago • Promoted
    Senior - Technology - Audit

    Senior - Technology - Audit

    Withum • Bengaluru, Karnataka, India
    Withum is a place where talent thrives - where who you are matters.It’s a place of endless opportunities for growth.A place where entrepreneurial energy plus inclusive teamwork equals exponential r...Show more
    Last updated: 12 days ago • Promoted