Posted on: 01/10/2026
Key Roles & Responsibilities :
- Audit Orchestration & SPOC Management : Act as the primary, central point of contact (SPOC) for all internal, external, regulatory, and client-led infrastructure audits. Coordinate audit timelines, schedule walkthroughs, and manage the end-to-end evidence collection process across networking, cloud, data centers, and endpoint management teams. Ensure all evidence provided to auditors is accurate, complete, and properly contextualized.
- Analyze and Triage : Critically review raw audit findings and points to understand the underlying technical gap.
- Risk Validation : Challenge or validate audit points based on actual operational risk and existing compensating controls.
- Ownership Assignment : Properly route validated audit points to the correct infrastructure engineering or operations teams.
- Remediation Tracking & Governance : Collaborate with technical teams to draft realistic, robust Management Action Plans (MAPs) and Root Cause Analyses (RCAs). Monitor remediation progress vigorously, ensuring all audit points are closed well before their target due dates. Establish regular governance dashboards and KPIs to report audit posture, overdue items, and systemic risks to IT leadership.
- Continuous Compliance : Identify recurring audit themes and work with infrastructure teams to build long-term, automated controls to prevent reoccurrence. Maintain a centralized, searchable repository of all historical audit data, evidence templates, and past findings.
Key Requirements - Education & Certificates :
- Bachelor's degree - BTech or equivalent.
Key Requirements - Experience & Skills :
- Total Experience : 5 - 8+ years of experience in IT Infrastructure operations, IT Risk, IT Audit, or Cyber Security Compliance.
- Domain Knowledge : Solid foundational understanding of infrastructure concepts (e.g., Active Directory, Patch Management, IAM, Network Segmentation, Cloud Security [AWS/Azure], Backup & Disaster Recovery).
- Frameworks : Familiarity with industry audit and security standards (e.g., ISO 27001, SOC 2, NIST, CIS Controls, COBIT, or SOX ITGC).
- Negotiation & Influence : Proven ability to negotiate the scope of audit findings with auditors and influence busy engineering teams to prioritize remediation.
- Project Management : Excellent tracking and organization skills; experience using tools like Jira, ServiceNow (GRC modules), or Archer is highly preferred.
- Communication : Ability to translate complex technical jargon into clear risk-based language for auditors and executives.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1676246