HamburgerMenu
hirist

Job Description

Description :

Job Role : IT Security Audit Lead

Job Location : Kochi

Experience : 3-7 years of experience Hands-on experience supporting IT security audits

Education : B Tech, or Any Graduate with certifications

Role & responsibilities :


- Support internal, external, and regulatory audits (ISO 27001, SOC, internal audits, etc.)

- Act as the primary point of contact for auditors on IT security-related matters

- Collect, validate, and present audit evidence (logs, reports, policies, configurations)

- Track audit observations, corrective action plans, and remediation until closure

- Ensure all audit responses comply with defined security and data-sharing policies

- Monitor and review user access, authentication activities, and security events

- Review security controls such as MFA, Conditional Access, endpoint compliance, and logging

- Assist in security incident investigation and provide audit-ready documentation

- Support periodic access reviews and risk assessments

- Develop, review, and update information security policies, standards, and procedures

- Ensure alignment with regulatory and organizational requirements

- Conduct security awareness and audit readiness activities for IT teams

- Work closely with Infrastructure, Cloud, and Application teams on audit findings and remediation

- Prepare management reports and audit status dashboards

- Escalate risks and delays in remediation to management

- Identity & Access Management (Azure AD / Entra ID, MFA, Conditional Access)

- Security logging and monitoring

- Endpoint and infrastructure security controls

Preferred candidate profile :

- 3+ years experience, with an IT Security focused role supporting IT security audits

- Experience executing in a cloud first technology organization

- Experience with Endpoint Security, Mobile Device Management (MDM), Email Security, Security Incident and Event Management (SIEM), Web Application Firewall (WAF), Intrusion Detection/Prevention (IDS/IPS), Vulnerability Management, Data Backup and Restoration, Data Loss Prevention (DLP), Antivirus, patch management etc.

- Working experience on Active directory, Windows Servers, Azure, AWS, GCP platforms etc.

- Proven experience within Incident Response situations and demonstrated ability to handle and maintain confidential information in a professional manner

- Must possess strong written and verbal communication skills, and be capable of understanding, documenting, communicating, and presenting technical issues in a non-technical manner to audiences with varying degrees of technical expertise

- Be a team player and enjoy collaborating on cross-functional teams

- Familiarity with audit frameworks such as ISO 27001, SOC, NIST, CIS

- Certifications such as CISA, ISO 27001 LA/LI, CEH, CISSP, or Security+

Required Skills :

- IT security audit support experience

- Internal and external audit support (ISO 27001, SOC)

- Acting as audit point of contact

- Audit evidence collection and validation

- Audit observation tracking and remediation

- Information security policies and procedures

- User access reviews

- Identity and Access Management (Azure AD / Entra ID)

- MFA and Conditional Access

- Security logging and monitoring

- Endpoint security controls

- Incident investigation and audit documentation

- Risk assessments

- Cloud-first environment experience

- Active Directory and Windows Server

- Azure cloud experience

- Strong written and verbal communication skills

- Cross-functional collaboration

- 3+ years IT security experience


info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...