PHI - Lead- Tech Audit
Core
Establishing and leading the technology audit function to ensure compliance with internal policies, regulatory frameworks (IRDAI, GDPR, HIPAA), and global standards across cloud-native infrastructure.
Role type
Lead Technology Auditor (People Manager)
Builds
Comprehensive technology audit strategy, annual audit plans, and risk mitigation frameworks for PHI's health insurance deployment.
Domain
Insurance / Financial Services / Cybersecurity Compliance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Technology audit strategy, risk-based auditing, vulnerability management, privacy impact assessments, penetration testing reviews, audit trail management, stakeholder management, regulatory compliance (IRDAI, GDPR, HIPAA), cross-functional leadership
Preferred skills
Greenfield audit function setup, IRDAI audit experience, centralized vulnerability dashboard management, public-facing application security workflows
Technologies
Checkmarx, GitHub Actions, HashiCorp Vault, Azure AD, CyberArk, Imperva API Security, SAST, DAST, SCA, WAF, CI/CD pipelines, GCP, SQL, NoSQL
Responsibilities
Develop and implement comprehensive technology audit strategy and annual audit plan; Conduct risk-based audits across infrastructure, applications, and security controls; Ensure complete and tamper-proof audit trails of user activities and system events; Collaborate with InfoSec and DevSecOps teams to validate vulnerability remediation; Lead privacy impact assessments and security onboarding for new applications; Monitor and report on implementation of audit recommendations; Support investigations into technology-related incidents and control breaches; Present audit findings and risk assessments to senior leadership and the Audit Committee
Seniority
Senior, hands-on IC with people management responsibilities