TechOps-DE-AMS-Process Auditor-Manager

at EY

Location:

Employment Type: full_time


Job Description

<p><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px">At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. </span></span></p><p> </p><p> </p><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Process Auditor / Risk Analyst</strong></span></p><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Role Summary</strong></span></p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Conduct end-to-end process and project audits across delivery portfolios, including ODC (Offshore Development Centre) audits and InfoSec compliance checks. Assess risk exposure, perform control testing, and ensure adherence to internal standards and client contractual obligations. Drive corrective actions, maintain risk frameworks, and support governance reporting. Understanding and prior work experience in Managed Services delivery environments is mandatory.</span></p><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Key Responsibilities</strong></span></p><p> </p><ul><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Plan and execute delivery/process audits covering project lifecycle, change control, testing, release, and incident/problem management.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Perform ODC audits focusing on physical and logical security, access controls, and compliance with client-specific requirements.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Conduct InfoSec compliance checks aligned to ISO 27001, GDPR, and organizational security policies.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Execute risk assessments and maintain risk registers; identify gaps and recommend mitigation strategies.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Perform control testing for critical processes and systems; validate effectiveness of implemented controls.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Develop and maintain audit checklists, risk frameworks, and control libraries.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Track audit outcomes, trend analysis, and report findings to governance councils.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Support customer audits, external certifications, and regulatory compliance initiatives.</span></li></ul><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Required Qualifications &amp; Skills</strong></span></p><p> </p><ul><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">10–12+ years in process audits, compliance, and risk management within TechOps or IT delivery environments.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Strong knowledge of ISO 9001/27001, CMMI, ITIL practices; familiarity with ODC security standards.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Exposure to Risk &amp; Control testing tools (e.g., ServiceNow GRC, MetricStream, Archer) – good to have.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Excellent stakeholder management and ability to write clear, actionable audit reports.</span></li></ul><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Tools &amp; Certifications (Preferred)</strong></span></p><p> </p><ul><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Audit tools: Excel/Sheets, Confluence, JIRA; GRC platforms (ServiceNow GRC, MetricStream).</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Certifications: ISO 27001 Lead Auditor, CISA, CIA, CMMI Associate, ITIL Foundation.</span></li></ul><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Behavioural Competencies</strong></span></p><p> </p><ul><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Integrity &amp; Ethics: Maintains confidentiality and demonstrates high ethical standards.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Attention to Detail: Ability to identify gaps and inconsistencies in complex processes.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Analytical Thinking: Strong problem-solving and risk analysis skills.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Influencing Skills: Ability to drive corrective actions and gain stakeholder buy-in.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Resilience: Handles pressure during audits and escalations calmly and effectively.</span></li></ul><p> </p><p> </p><p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><strong>Success KPIs</strong></span></p><p> </p><ul><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">% audits completed vs plan; closure rate &amp; cycle time for findings.</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Repeat finding rate (target ↓).</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Risk mitigation effectiveness (risk heatmap improvements).</span></li><li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Compliance score by portfolio.</span></li></ul><p> </p><p> </p><p><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"><b>EY | Building a better working world </b></span></span></p><p><br><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"> <br>EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.  </span></span></p><p><br><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"> <br>Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.  </span></span></p><p><br><span style="font-family:Arial, Helvetica, sans-serif"><span style="font-size:11.0px"> <br>Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.  </span></span></p>