Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Prateek Duvedi

Senior SOC Reporting Analyst, Finastra Software Solutions
Bengaluru

Summary

A technology professional with almost 4 years of experience as part of the IT audit domain. Currently working as an Assistant Manager, Risk Advisory at PwC India specializing in FAIT, SOX 404 reviews, SOC 1,2 reporting and internal audits.

Overview

6
6
years of professional experience
6
6
years of post-secondary education
4
4
Certifications

Work History

Senior SOC Reporting Analyst

Finastra Software Solutions
07.2023 - Current

Senior SOC Reporting Analyst working with the Risk and Compliance team at Finastra Software Solutions for over 1.5 years. For the outstanding performance, my team was acknowledged by VP, Risk as the "Most Efficient" across Finastra land.

Key Roles and experience in

  • SOC1 and SOC2 Reporting: Worked as a bridge between the external audit firm and the product side for SOC1,2 assessments for banking and financial applications. My role including Project management lifecycle, from risk assessments, controls' re-certification process to deviations' tracking and resolution.
  • Findings Management: Completed post-audit findings management tasks; from findings' registration to resolution and adoption.
  • TPRM and Due-Diligence: Leveraging my experience from BlinkIt, I was given the additional responsibility to undertake Third-party Risk management (TPRM) and complete due-diligence for the sales department.

Assistant Manager, Risk Assurance

PricewaterhouseCoopers (PwC) India
05.2022 - 07.2023

Assistant Manager in the Risk Advisory practice at PricewaterhouseCoopers (PwC) India with working on IT Audits, FAIT reviews and SOX engagements.

Adopted key roles and experience in

  • SOX Reviews: handling multiple engagements, handling teams of 8-10 members, understanding and performing end - to - end testing of business processes for IT infrastructure. Auditing the design and operating effectiveness of the controls covering the endpoints, networks, database, servers etc.
  • SOC (1&2) reporting: worked on SOC1,2 assessments inline with the SSAE18 standards for finance and technology clients, conducting ITGC testing, ITAC testing and infrastructure reviews.
  • Audit Tools handling: Worked on adoption and implementation of audit management tools like Auditboard working closely with external stakeholders.

IT Governance Head

BlinkIt (Formely Grofers)
02.2021 - 05.2022

Transitioning from EY to BlinkIt, I joined them as a Technology Analyst, during the year-end external audit. Getting the experience of being at the client's side and managing the audit since my day 1 at BlinkIt was a challenging task but a learning one as well. At BlinkIt, I single-handedly managed the internal audit in accordance to SOX404 compliance requirements. After an year at BlinkIt, I was promoted to IT Governance Head and was handling 3rd-party risk assessments; due-diligence for incoming investors and onboarding on new IT service partners. Additionally, I worked with the finance department to automate the financial reports for payouts to the different categories of vendors.


Technology Risk Analyst

Ernst and Young (EY)
05.2019 - 02.2021

Starting my career with a firm like EY, I got to the learn the basics of auditing and risk management in a very detailed manner. The need to understand the business process before moving onto the controls associated with it, is a learning that EY inculcated in me and I have been carrying it till date. Handling end-to-end engagements conducting walkthrough meetings with process owners; performing Infrastructure Reviews for operating systems and databases and undertaking ITGCs, ITACs testing and risk analysis.


Education

MBA - Operations Management

FORE School of Management
New Delhi
06.2017 - 03.2019

B.Tech - Electronics And Instrumentation

Thapar Insitute of Engineering And Technology
Patiala
08.2012 - 09.2016

Skills

IT General Controls

IT Application Controls

FAIT

SOX 404 Compliance

Internal Audit

Advanced Excel

TPRM

SOC 1, 2 Reporting

ISO 27001

PCI-DSS

Certification

Udemy Specialization in ISO 27001

Timeline

Senior SOC Reporting Analyst

Finastra Software Solutions
07.2023 - Current

Udemy Specialization in Data Protection and IT Security Controls (2019)

11-2022

Assistant Manager, Risk Assurance

PricewaterhouseCoopers (PwC) India
05.2022 - 07.2023

Udemy Specialization in ISO 27001

06-2021

IT Governance Head

BlinkIt (Formely Grofers)
02.2021 - 05.2022

EY Silver badge for specialization in the Life Sciences Industry (2020)

01-2021

Udemy Specialization in Advanced Excel

06-2019

Technology Risk Analyst

Ernst and Young (EY)
05.2019 - 02.2021

MBA - Operations Management

FORE School of Management
06.2017 - 03.2019

B.Tech - Electronics And Instrumentation

Thapar Insitute of Engineering And Technology
08.2012 - 09.2016
Prateek DuvediSenior SOC Reporting Analyst, Finastra Software Solutions