Risk Consulting-Protect Tech-Senior Manager-IT Internal Controls ITGC Plus ITAC
Job description
At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.
JD – Digital Risk – Senior Manager - ITAC
Key responsibilities
The purpose of this role will be to supervise delivery, provide technical and project leadership to your team members, as well as build relationships with clients. While delivering quality client services and enabling high-performing teams, you will drive high-value work products within expected timeframes and budget. You will monitor progress, manage risks and ensure key stakeholders are kept informed about progress and expected outcomes. Additionally, you will:
- Understand client’s challenges and industry related issues and offer solutions in the areas of IT Risk.
- Participate in go to market, create proposals and respond to RFPs, client orals etc. Identify opportunities for cross-selling to current clients/introduce colleagues from other service lines.
- Travel to client locations (India and abroad) for meetings, conduct workshops, knowledge sharing sessions etc. for existing and new clients.
- Jointly lead global account relationships along with onshore, manage engagement deliveries, quality and drive the growth agenda on accounts.
- Consistently deliver quality client services. Drive high-quality work products within expected timeframes and on budget. Monitor progress manage risk and ensure key stakeholders are kept informed about progress and expected outcomes.
- Manage a team of Managers, Seniors and Staffs (across geographies) for delivery of engagements across clients. Foster an innovative and inclusive team-oriented work environment. Play an active role in counselling and mentoring his team.
- Use knowledge of the current IT environment and industry trends to identify engagement and client service issues and communicate this information to the engagement team and client management through written correspondence and verbal presentations. Stay abreast of current business and industry trends relevant to the client's business.
- Foster relationships with client personnel to analyse, evaluate, and enhance information systems to develop and improve security at procedural and technology levels.
- Assist with cultivating and managing business development opportunities. Understand EY and its service lines and actively assess/present ways to serve clients.
Skills and attributes for success
You will leverage your proven track record of IT Audit experience and strong personal skills, to effectively deliver quality results in the assessment, design, and support implementation of controls, security and IT risk solutions.
To qualify for the role, you must have
- A bachelor’s or master’s degree and approximately 12+ years of related work experience
- At least 10 years of experience in IT Risk and Compliance
- Design IT Risk Controls framework such as IT SOX
- Implementation and Testing of internal controls such as IT general controls, IT application controls (ITAC), IPE related controls, interface controls etc.
- Identify control gaps, weaknesses and areas of improvements.
- Conducting IT internal control reviews, and review of SOC1 or SOC2 reports
- Knowledge of IT risk, information security or cyber security frameworks such as COSO, COBIT, ISO, NIST etc.
- IT Compliance and regulatory assessments – IT Risk and Controls assessment with exposure of any of the technologies such as SAP, Oracle, Workday, MS Dynamics or emerging technologies such as Cloud, RPA, AI/ML
- IT Infrastructure and Architecture risk assessments including data quality and data migration reviews, data privacy reviews, OS DB reviews etc.
- Strong exposure working in client facing roles, collaborate with cross functional teams including internal audits, IT security and business stakeholders to assess control effectiveness and facilitate remediation activities.
- Excellent communication, documentation and report writing skills.
- Good to have relevant industry certifications such as CISA, CISM, CISSP, CRISC, CCSK, ISO 27001, and others (as relevant)
- Excellent leadership and teaming skills, with ability to train, coach and mentor.
- A willingness to travel (India and abroad) for client needs.
EY | Building a better working world
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.