Internal IT Auditor

Jibe Development Services

Navi Mumbai, Chennai District

On-site

INR 1,400,000 - 2,300,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jibe Development Services is seeking an seasoned IT audit professional to lead internal and external audits, drive ISMS management, and coordinate risk assessments. The role requires hands-on experience with ISO 27001 and SOC 2, plus strong skills in vendor risk and regulatory alignment.

You will collaborate with R&D, IT, and DevOps teams to ensure audit readiness year-round, produce actionable reports, and manage corrective actions across the organization.

Qualifications

  • Extensive IT audit, GRC, or security compliance experience.
  • Experience leading ISO 27001 and/or SOC 2 audit cycles.
  • Knowledge of risk assessment methodologies and ISO 27001/27002; SOC 2 Trust Services Criteria familiarity.
  • Understanding GDPR and data protection in SaaS businesses.
  • Excellent written and spoken English for audit reports and customer responses.

Responsibilities

  • Plan and execute internal audit program against ISO 27001 and SOC 2 controls; document findings and track remediation to closure.
  • Lead preparation and coordination for external audits (ISO 27001, SOC 2 Type II); manage evidence collection and corrective actions.
  • Maintain ISMS documentation and drive risk assessments with control owners.
  • Coordinate vulnerability assessments and penetration tests; review results and track remediation with IT and vendors.
  • Run vendor and third-party risk assessments as part of procurement; support customer security questionnaires.
  • Report compliance posture and audit results to management on a regular cadence.

Skills

IT audit
GRC
Security compliance
ISO 27001
SOC 2
Risk assessment
Vendor risk
Audit reporting
English communication

Tools

Vanta
Drata
Scytale

Job description

Role & responsibilities
Internal Audit & Control Testing
  • Plan and execute the annual internal audit program: conduct internal audits against ISO 27001 and SOC 2 controls, document findings, and track remediation to closure.
  • Perform control testing and gap assessments, collecting and organizing evidence to an external-audit standard.
External Audit & Certification Readiness
  • Lead preparation and coordination for external audits (ISO 27001 certification and surveillance, SOC 2 Type II): audit scheduling, evidence collection, auditor liaison, and management of corrective actions.
  • Maintain a year-round audit readiness posture and calendar, so external audits are a checkpoint rather than a scramble.
ISMS, Risk & Policy Management
  • Maintain the ISMS documentation set policies, procedures, Statement of Applicability, and risk register.
  • Drive periodic risk assessments and treatment plans together with control owners across the company.
Security Assessments & Incident Follow-up
  • Coordinate periodic vulnerability assessments and penetration tests with IT and external vendors; validate scope, review results, and track remediation with the relevant teams.
  • Review internal security incident reports, verify root-cause analysis and corrective actions, and follow up until closure.
Vendor & Customer Assurance
  • Run vendor and third-party risk assessments as part of the procurement and vendor-review process.
  • Support responses to customer security questionnaires and customer audits.
Reporting
  • Report compliance posture, audit results, and open risks to management on a regular cadence.

Preferred candidate profile
  • 36 years of experience in IT audit, GRC, or security compliance, preferably in a SaaS or software company.
  • Hands-on experience with at least one full ISO 27001 and/or SOC 2 audit cycle - from preparation and evidence collection through the external audit itself.
  • Working knowledge of risk assessment methodologies and control frameworks (ISO 27001/27002; familiarity with SOC 2 Trust Services Criteria).
  • Familiarity with data protection regulations (e.g., GDPR) and their impact on a SaaS business.
  • Excellent written and spoken English - the role produces audit reports, policies, and customer-facing responses.
Core Soft Skills
  • Self-motivated, independent, and meticulous, with strong organizational skills and an eye for detail.
  • Clear, precise writing - audit findings and policies that people can actually act on.
  • Team player with good interpersonal skills - able to work with R&D, IT, and DevOps teams and gain cooperation without formal authority.
Nice to Have
  • Experience with compliance automation platforms (e.g., Vanta, Drata, Scytale).
  • Familiarity with application security concepts and vulnerability management processes.
  • Experience in cloud environments (Azure / AWS) and understanding of cloud security controls.
Certifications (Preferred, Not Mandatory)
  • CISA (Certified Information Systems Auditor).
  • ISO 27001 Lead Auditor / Lead Implementer.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Consultant - Compliance
Sr. Consultant - Compliance

TAC Security • Delhi

On-site
INR 1,500,000 - 2,100,000
Audit & Compliance Executive
Audit & Compliance Executive

Vouchagram India • New Delhi

On-site
INR 700,000 - 1,100,000
Compliance Coordinator
Compliance Coordinator

Trackwizz • Mumbai

On-site
INR 650,000 - 1,000,000
Sr IT Auditor
Sr IT Auditor

Randstad • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Information Security Manager
Information Security Manager

Altraize • Mumbai

On-site
CISO - Internal Audit
CISO - Internal Audit

Essar Group • Mumbai

On-site
INR 1,800,000 - 3,200,000
(none)
Manager- ISO 27001 and SOC 2 Audits (FEMALE)
Manager- ISO 27001 and SOC 2 Audits (FEMALE)

HCLTech • Bengaluru

On-site
INR 1,500,000 - 2,000,000
Manager- GRC
Manager- GRC

CyberCube Services • Gurugram District

On-site
INR 1,500,000 - 2,100,000
IT Audit & Compliance - Consultant / AM
IT Audit & Compliance - Consultant / AM

Innovative • Mumbai, Gurugram District, Bengaluru

On-site
INR 900,000 - 1,500,000
Sr. Analyst I Audit & Compliance
Sr. Analyst I Audit & Compliance

Shashwath Solution • Pune District

On-site
INR 1,200,000 - 2,000,000