IT Audit and Technology Risk professional with hands-on experience delivering IT General Controls (ITGC),
IT Application Controls (ITAC), Information Produced by the Entity (IPE) and SOC 1 / SOC 2 readiness and
reporting engagements across SAP, Oracle and homegrown enterprise applications for clients. Skilled in testing
logical access, user access management, privileged access, change management, SDLC, backup and recovery,
batch job monitoring, audit trail, operating system and database controls in support of SOX / ICFR, statutory
audit and internal audit objectives. Fluent in COBIT, COSO, ISO 27001:2022, NIST CSF and PCAOB-aligned
audit methodology, from risk assessment and RCM design through test of design (TOD), test of operating
e!ectiveness (TOE), deficiency evaluation and remediation tracking. MBA in Information Technology Business
Management (Information Security) from SCIT Pune; ISO 27001:2022 Lead Auditor (CQI-IRCA); CISA candidate.
