Posted on: 01/04/2026
Description :
Job Role : IT Security Audit Lead
Job Location : Kochi
Experience : 3-7 years of experience Hands-on experience supporting IT security audits
Education : B Tech, or Any Graduate with certifications
Role & responsibilities :
- Support internal, external, and regulatory audits (ISO 27001, SOC, internal audits, etc.)
- Act as the primary point of contact for auditors on IT security-related matters
- Collect, validate, and present audit evidence (logs, reports, policies, configurations)
- Track audit observations, corrective action plans, and remediation until closure
- Ensure all audit responses comply with defined security and data-sharing policies
- Monitor and review user access, authentication activities, and security events
- Review security controls such as MFA, Conditional Access, endpoint compliance, and logging
- Assist in security incident investigation and provide audit-ready documentation
- Support periodic access reviews and risk assessments
- Develop, review, and update information security policies, standards, and procedures
- Ensure alignment with regulatory and organizational requirements
- Conduct security awareness and audit readiness activities for IT teams
- Work closely with Infrastructure, Cloud, and Application teams on audit findings and remediation
- Prepare management reports and audit status dashboards
- Escalate risks and delays in remediation to management
- Identity & Access Management (Azure AD / Entra ID, MFA, Conditional Access)
- Security logging and monitoring
- Endpoint and infrastructure security controls
Preferred candidate profile :
- 3+ years experience, with an IT Security focused role supporting IT security audits
- Experience executing in a cloud first technology organization
- Experience with Endpoint Security, Mobile Device Management (MDM), Email Security, Security Incident and Event Management (SIEM), Web Application Firewall (WAF), Intrusion Detection/Prevention (IDS/IPS), Vulnerability Management, Data Backup and Restoration, Data Loss Prevention (DLP), Antivirus, patch management etc.
- Working experience on Active directory, Windows Servers, Azure, AWS, GCP platforms etc.
- Proven experience within Incident Response situations and demonstrated ability to handle and maintain confidential information in a professional manner
- Must possess strong written and verbal communication skills, and be capable of understanding, documenting, communicating, and presenting technical issues in a non-technical manner to audiences with varying degrees of technical expertise
- Be a team player and enjoy collaborating on cross-functional teams
- Familiarity with audit frameworks such as ISO 27001, SOC, NIST, CIS
- Certifications such as CISA, ISO 27001 LA/LI, CEH, CISSP, or Security+
Required Skills :
- IT security audit support experience
- Internal and external audit support (ISO 27001, SOC)
- Acting as audit point of contact
- Audit evidence collection and validation
- Audit observation tracking and remediation
- Information security policies and procedures
- User access reviews
- Identity and Access Management (Azure AD / Entra ID)
- MFA and Conditional Access
- Security logging and monitoring
- Endpoint security controls
- Incident investigation and audit documentation
- Risk assessments
- Cloud-first environment experience
- Active Directory and Windows Server
- Azure cloud experience
- Strong written and verbal communication skills
- Cross-functional collaboration
- 3+ years IT security experience
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1625148