Discover your dream Career
For Recruiters

Internal Auditor

Davies Pune, India
Posted 2 days ago Permanent Competitive

Internal Auditor

Davies Pune, India
Internal Auditor
Internal Auditor

Department: Risk and Compliance

Employment Type: Permanent - Full Time

Location: Pune

Reporting To: Alex Murphy

Description

We are seeking an experienced Internal Auditor to support the business in achieving its objectives by conducting audits of our Global Information Security Management System (ISMS). Reporting to the Group Security Audit & Assurance Manager, this role is responsible for performing technology, information security, cybersecurity, and compliance audits to assess the effectiveness of our ISO 27001 controls.

To be successful in this role, candidates must demonstrate excellent communication skills, hold ISO 27001 Lead Auditor certification, and possess strong documentation capabilities. The ability to clearly articulate technical concepts to both technical and non-technical stakeholders across the organisation is essential. Familiarity with additional industry standards-such as Cyber Essentials, Cyber Essentials Plus, PCI-DSS, NYDFS 23 NYCRR 500, ISO 42001, CSA, and SOC 2-is highly advantageous.

We are looking for individuals with strong interpersonal skills who can build effective working relationships at all levels. The ideal candidate is a collaborative team player-flexible, approachable, and capable of managing multiple workstreams while meeting deadlines and maintaining excellent stakeholder engagement.

This is a full-time, office-based position located in Pune. Hybrid working arrangements may be considered following successful completion of the probation period.

Key Responsibilities
  • Conduct technology, information security, cybersecurity, and compliance audits to assess the design, efficiency, and effectiveness of internal security controls.
  • Lead remediation discussions with stakeholders, ensuring clear guidance and timely resolution of audit findings.
  • Develop audit plans, including scope and objectives, and ensure audit assignments are completed accurately and within agreed timelines.
  • Engage and collaborate with key internal stakeholders, maintaining professionalism to ensure successful delivery of audit engagements.
  • Perform remote auditing activities, including assessments of physical security controls.
  • Serve as an escalation point for internal audit queries, providing clarity and expert guidance.
  • Produce high-quality audit documentation, reports, and supporting evidence.
  • Prepare and deliver monthly KPI/KRI reporting.
  • Support the coordination and delivery of global ISO 27001 external audits.
  • Share best practices and contribute to the promotion of innovation across the security function.
  • Foster a culture of continual improvement across all aspects of security. Demonstrate the company's core values: We are Dynamic, We are Innovative, We are Connected, and We Succeed Together.
  • Perform additional duties as required to support the wider Information Assurance team.

Skills, Knowledge and Expertise

Skills
  • Exceptional attention to detail, with strong analytical, reporting, and communication capabilities.
  • Clear and confident communicator, able to translate complex security concepts into language suitable for both technical and non-technical audiences.
  • Strong stakeholder management skills with a focus on delivering an excellent customer experience.
  • Proactive, self-motivated problem solver with the ability to work independently and take initiative.
  • Flexible, approachable, and effective in collaborative, fast-paced environments.
  • Results-driven and commercially aware, with the ability to align security activities to business objectives.

Knowledge
  • Strong understanding and practical experience with ISO/IEC 27001:2022, including both audit and implementation activities (implementation is advantageous).
  • Solid knowledge of ISO 31000: Risk Management - Guidelines.
  • Working knowledge of key cybersecurity frameworks such as the NIST Cybersecurity Framework (CSF) and CIS Controls.
  • Familiarity with security governance and compliance practices, including the development and interpretation of policies, standards, and procedures.
  • Good understanding of IT infrastructure, cloud services, business applications, and third-party supplier risk management.
  • Proficient in risk assessment methodologies, including risk identification, analysis, evaluation, and mitigation strategies.
  • Strong understanding of security incident response processes, including escalation, investigation, and reporting.
  • Awareness of relevant regulatory and legal requirements, including:
  • GDPR
  • UK Data Protection Act
  • EU AI Act
  • India Digital Personal Data Protection Act (DPDPA)

Ability
  • Ability to perform information security internal audits and produce clear, accurate, and well-structured audit findings.
  • Collaborative team player, comfortable working alongside cross-functional teams including departments such as IT, Legal, HR, Risk, and Operations.
  • Capable of leading small-scale initiatives and contributing to continual improvement across security and risk audit activities.
  • Quick learner with a strong growth mindset, adaptable, and able to adjust effectively to changing priorities.
  • Strong understanding and practical experience with key information security and cyber risk frameworks, including ISO 27001, ISO 31000, NIST RMF/CSF, and CIS Controls.
  • Proven experience in conducting audits focused on information security and risk management.
  • Excellent English communication skills, both written and verbal, with the ability to convey complex information clearly and effectively.
  • Relevant professional certification, including:
  • ISO/IEC 27001:2022 Lead Auditor
  • A confident, collaborative team player who enjoys audit work and thrives in an environment that focuses on solutions rather than problems.
Job ID  e328003a-88a6-4fd2-9269-6a1fc4b8453b
More Jobs From Davies
Casualty QA Internal Auditor
Davies
London, United Kingdom
3 days ago Full time Competitive
Hosting Service Owner
Davies
Pune, India
25 days ago Full time Competitive
Networks Service Owner
Davies
Pune, India
4 months ago Full time Competitive
Senior Lead Associate - ITSM Major Incident Management
Davies
Pune, India
2 days ago Full time Competitive
Lead Associate - Engineering/AI
Davies
Pune, India
2 days ago Full time Competitive
Lead Associate - AI /.NET
Davies
Pune, India
3 days ago Full time Competitive
Specialist - ITSM Major Incident Management
Davies
Pune, India
3 days ago Full time Competitive
Manager - ITSM Operations
Davies
Pune, India
4 days ago Full time Competitive
Senior Associate Quality Analyst - Automation
Davies
Pune, India
9 days ago Full time Competitive
Senior Lead Associate - .NET
Davies
Pune, India
15 days ago Full time Competitive

Boost your career

Find thousands of job opportunities by signing up to eFinancialCareers today.
Recommended Jobs
Prime Personnel
Internal Auditor – Temp 6 Months
Prime Personnel
London, United Kingdom
Worldpay
UK SOX Manager
Worldpay
Manchester, United Kingdom
Macquarie Group
Internal Audit Manager
Macquarie Group
London, United Kingdom
Chubb
Senior Internal Auditor (FTC - 12 Month)
Chubb
London, United Kingdom