- Location
- Bengaluru Millenia, India
- Type
- Full-time
- Department
- Management
- Seniority
- Entry
- Education
- Bachelor
- Clearance
- Not required
- Closing date
- Today
- Source
- Workday
Description
Line of Service
AdvisoryIndustry/Sector
Not ApplicableSpecialism
DealsManagement Level
AssociateJob Description & Summary
At PwC, our people in audit and assurance focus on providing independent and objective assessments of financial statements, internal controls, and other assurable information enhancing the credibility and reliability of this information with a variety of stakeholders. They evaluate compliance with regulations including assessing governance and risk management processes and related controls.Those in internal audit at PwC help build, optimise and deliver end-to-end internal audit services to clients in all industries. This includes IA function setup and transformation, co-sourcing, outsourcing and managed services, using AI and other risk technology and delivery models. IA capabilities are combined with other industry and technical expertise, in areas like cyber, forensics and compliance, to address the full spectrum of risks. This helps organisations to harness the power of IA to help the organisation protect value and navigate disruption, and obtain confidence to take risks to power growth.
Responsibilities
ITGC Reviews, IT Internal Audits, Controls Testing, Compliance Reviews, ISO 27001 Reviews, HIPAA/ HITRUST Reviews
Position title:
Associate
Experience:
2+ years
Location:
Bangalore
Department:
Risk Consulting
Purpose of the Job /Role
Perform IT Assessment Reviews which includes IT General Controls, Internal Audits, Controls Testing, Compliance Reviews (such as ISO 27001, HIPAA, HITRUST etc.)
The person we are looking for:
Demonstrate a strong understanding of IT General Controls (ITGCs), including Change Management, User Access Management, IT Operations, Backup and Recovery, and their relevance to statutory and SOX-aligned audits.
Possess solid knowledge of Third-Party Risk Management (TPRM) and its impact on financial reporting and regulatory compliance.
Apply implementation and assessment experience across leading industry standards and frameworks such as ISO 27001, HIPAA, HITRUST, NIST, and similar regulatory requirements.
Understand and apply IT Risk Assessment methodologies, including risk identification, control evaluation, and testing across the end-to-end IT audit lifecycle.
Conduct client stakeholder interviews and walkthroughs, document processes, and develop comprehensive audit and assessment artifacts.
Demonstrate a clear understanding of the complete assessment lifecycle, from planning and scoping through fieldwork, reporting, and final deliverables.
Lead and manage the execution of IT audits and assessments, including supervision and review of team members’ work to ensure adherence to audit methodology, quality standards, and statutory requirements.
Collaborate with cross-functional stakeholders to address complex audit and control issues, and develop practical, risk-based recommendations.
Monitor audit progress, manage risks and dependencies, and ensure timely communication with key stakeholders regarding status, issues, and outcomes.
Present clear, concise audit findings and recommendations that address root causes, assess business and financial reporting impact, and support management remediation.
Manage approved audit budgets and resource allocation, including task assignment, performance review, and quality assurance of team deliverables.
Coach and mentor team members on audit methodologies, tools, and best practices, fostering continuous improvement and professional development.
Demonstrate strong people management and leadership capabilities, with the ability to think creatively and solve problems beyond standard audit approaches.
Exhibit excellent verbal and written communication skills, with the ability to translate complex IT and data security concepts into clear, business-focused language.
Deliver effective presentations and confidently communicate audit results, recommendations, and viewpoints to senior management and governance committees.
Education:
Minimum Qualification: CA/ BE/ BTech
Postgraduates in any stream would be preferred (not mandatory)
Prior Big 4 experience would be an added advantage
Experience in IT Risk Advisory/ Assurance for varied industry segments preferred
Hands-on experience in statutory audit (minimum 3-4 years), including understanding of audit processes and controls, preferred
Excellent communication skills - both written and oral
Certifications:
CIA/CISA/CISM will be added advantage
Mandatory Skill sets
Data Privacy
Preferred Skill sets
Data Protection
Years of Experience required
7
Education Qualification:
B.Tech
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required: Bachelor of Engineering, Bachelor of TechnologyDegrees/Field of Study preferred:Certifications (if blank, certifications not specified)
Required Skills
Creating Shared Value (CSV)Optional Skills
Accepting Feedback, Accepting Feedback, Accounting and Financial Reporting Standards, Active Listening, Artificial Intelligence (AI) Platform, Auditing, Auditing Methodologies, Business Process Improvement, Communication, Compliance Auditing, Corporate Governance, Data Analysis and Interpretation, Data Ingestion, Data Modeling, Data Quality, Data Security, Data Transformation, Data Visualization, Emotional Regulation, Empathy, Financial Accounting, Financial Audit, Financial Reporting, Financial Statement Analysis, Generally Accepted Accounting Principles (GAAP) {+ 19 more}Desired Languages (If blank, desired languages not specified)
Travel Requirements
Not SpecifiedAvailable for Work Visa Sponsorship?
NoGovernment Clearance Required?
NoJob Posting End Date
May 10, 2026