Assistant Manager - ITGC

BDO EDGE India Private Limited

Gurugram District

On-site

INR 1,800,000 - 3,200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

BDO EDGE India Private Limited seeks an Assistant Manager to lead ITGC assessments and audits across industries. You will design IT control frameworks, guide audits, and ensure SOX, SOC, and ISO 27001 compliance while working with senior team members to identify risks and suggest improvements.

The role involves client interaction, reporting, mentoring juniors, and coordinating with engagement teams to meet deadlines, across diverse client engagements in India.

Qualifications

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Security, Engineering, Commerce, or related field.
  • 5+ years of experience in Information Security, Cybersecurity, IT Audit, Risk Advisory, or Compliance.
  • QSA certification with PCI DSS engagements.
  • Experience performing PCI DSS Gap/Readiness Assessments, ROC/AOC, and CDE scoping.
  • Experience with merchants, service providers, financial institutions, payment data handling.
  • Experience leading client engagements and managing multiple projects.
  • Consulting experience preferred.

Responsibilities

  • Design & implement ITGC frameworks: Assist in testing the design and implementation of ITGC frameworks to ensure alignment with security and compliance strategies.
  • Risk identification & mitigation: Assess ITGC processes and controls, identify risks, and recommend improvements to clients.
  • Client interaction: Develop strong client relationships and provide insights into ITGC practices.
  • Documentation & reporting: Prepare and review ITGC audit reports with clear findings and recommendations.
  • Mentoring: Guide and assist junior staff in ITGC frameworks and auditing processes.
  • Client collaboration: Work with clients and engagement teams to follow up on assignments and ensure timely completion.

Skills

PCI DSS v4.0
Payment Card Ecosystems
InfoSec Principles
Enterprise IT Infra
Network Security
WAF
Cloud Security
IAM
Cryptography
SIEM
EDR
VA/PT
Secure Configuration
Security Operations
PCI DSS Evidence Review

Education

Bachelor's degree in IT/CS/Cybersecurity/Info Security/Engineering/Commerce

Job description

BDO EDGE India Private Limited is an entity, based in India created through a strategic partnership among BDO member firms: in India, the United States, the United Kingdom, and Germany. It operates independently within the BDO network of accounting and advisory firms, enhancing their combined capabilities and resources.

BDO EDGE (Exceptional Delivery for Global Enterprises) delivers tax, assurance, accounting, outsourcing, advisory, and technology-driven services through highly skilled professionals in India to BDO network firms, their alliance programmes and any other certified public accounting firms (CPA firms).

Position Overview:

We are looking for an Assistant Manager to support the IT General Control (ITGC) assessments and audits for clients across various industries. This role will involve designing and implementing IT control frameworks, leading internal and external audits, and ensuring compliance with standards such as SOX, SOC, and ISO 27001. You will collaborate with senior team members to identify risks and recommend control improvements to clients.

Job Description:
  • Design & implement ITGC frameworks: Assist in testing the design and implementation of ITGC frameworks to ensure that they are aligned with company security and compliance strategies.
  • Risk identification & mitigation: Assess ITGC processes and controls, identify risks, and recommend necessary improvements to clients.
  • Client interaction: Develop strong client relationships, provide insights into ITGC practices, and recommend solutions based on client needs.
  • Documentation & reporting: Prepare and review ITGC audit reports, ensuring clarity and transparency in findings and recommendations.
  • Mentoring: Guide and assist junior staff members in understanding ITGC frameworks and the auditing process.
  • Client collaboration: Work with clients and engagement teams to follow up on assignments and ensure the timely completion of tasks.
Requirements
Qualifications & Experience
  • Bachelor'sdegree in Information Technology, Computer Science, Cybersecurity,Information Security, Engineering, Commerce, or a related discipline.
  • Minimum5+ years of experience in Information Security, Cybersecurity, IT Audit,Risk Advisory, or Compliance, As a Qualified Security Assessor (QSA)conducting PCI DSS assessments and advisory engagements.
  • Provenexperience performing PCI DSS Gap Assessments, Readiness Assessments,Reports on Compliance (ROC), Attestations of Compliance (AOC), andCardholder Data Environment (CDE) scoping.
  • Experienceworking with merchants, service providers, financial institutions, paymentprocessors, or organizations handling payment card data.
  • Experienceleading client engagements and managing multiple assessment projectssimultaneously.
  • Priorconsulting or professional services experience is preferred.
Required Skills
  • Strongexpertise in PCI DSS v4.0 requirements and PCI Security Standards Council(PCI SSC) guidance.
  • In-depthunderstanding of payment card ecosystems, Cardholder Data Environments(CDE), and PCI DSS scoping methodologies.
  • Strongknowledge of:
  • InformationSecurity Principles
  • EnterpriseIT Infrastructure
  • NetworkSecurity
  • Firewalls
  • IDS/IPS
  • WebApplication Firewalls (WAF)
  • CloudSecurity (AWS, Azure, GCP)
  • Identity& Access Management (IAM)
  • Cryptographyand Key Management
  • SecurityLogging and SIEM
  • EndpointDetection & Response (EDR)
  • VulnerabilityAssessment and Penetration Testing (VA/PT)
  • SecureConfiguration Standards
  • SecurityOperations
  • Experiencereviewing PCI DSS evidence, validating compensating controls, andassessing third-party service providers.
Certifications
Mandatory
  • Currentor former PCI Qualified Security Assessor (QSA) certification (within thepast six (6) years).
Preferred
  • PCIInternal Security Assessor (ISA)
  • CISA(Certified Information Systems Auditor)
  • CISM(Certified Information Security Manager)
  • CRISC(Certified in Risk and Information Systems Control)
Why Join Us?
  • Opportunity to work on high-impact advisory projects across various industries.
  • Leadership and career advancement opportunities.
  • Exposure to diverse client engagements and strategic consulting work.
  • Collaborative and learning-driven work environment.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Assistant Manager - ITGC
Assistant Manager - ITGC

BDO EDGE • Gurugram District

On-site
INR 2,300,000 - 3,400,000
High-impact advisory projects
Career growth opportunities
Learning culture
Senior Associate
Senior Associate

PwC India • Kolkata District

On-site
INR 800,000 - 1,200,000
IN_Associate 2_ITGC_GRC_Advisory_Noida
IN_Associate 2_ITGC_GRC_Advisory_Noida

PwC • Dadri

On-site
INR 800,000 - 1,200,000
Associate Consultant- ITGC
Associate Consultant- ITGC

Uniqus Consultech Inc. • Bengaluru

Hybrid
INR 600,000 - 800,000
Technical Lead
Technical Lead

The Hartford India • Hyderabad

On-site
INR 1,500,000 - 2,000,000
Competitive salary
Comprehensive benefits
Continuous learning opportunities
+1
Assistant Manager - Cyber Security - IT-GRC
Assistant Manager - Cyber Security - IT-GRC

BDO India • Bengaluru Urban

On-site
INR 1,200,000 - 1,800,000
IT Audit Consultant (Must have exp in IT Audit, ITGC & ITAC)
IT Audit Consultant (Must have exp in IT Audit, ITGC & ITAC)

Rbst Consulting • Mumbai

On-site
INR 900,000 - 1,300,000
Manager IT Audit
Manager IT Audit

Innovative • Mumbai, Navi Mumbai

On-site
INR 2,600,000 - 4,200,000
IT Audit
IT Audit

Abacus Service • Pune District

On-site
INR 1,400,000 - 2,200,000
IT Audit - Assistant Manager
IT Audit - Assistant Manager

Deloitte Shared Services India • Mumbai

On-site
INR 1,800,000 - 2,600,000