Accomplished Risk & Controls professional with 13 years of expertise in ITGC, Internal Audit, RCSA, SOX Compliance, and Regulatory Compliance. Skilled in evaluating IT General Controls, conducting SOX 404 assessments, and managing compliance gap assessments. Knowledgeable in SOC 1, SOC 2, and SOX Sections 404, with a focus on enhancing control environments and ensuring compliance. Experienced in delivering actionable recommendations that strengthen governance and operational effectiveness.
Overview
2
2
Languages
3
3
Certifications
16
16
years of professional experience
Work History
Lead Solution Advisor
Deloitte
07.2022 - 05.2026
Project: Garrett SOC 2 Type II Audit. Executed SOC 2 Type II audits based on the Trust Services Criteria (Security, Availability, Confidentiality, Processing Integrity, and Privacy). Evaluated identity and access management controls, MFA implementation, privileged access reviews, and user provisioning/de-provisioning. Performed sampling, evidence review, and operating effectiveness testing. Identified control gaps and collaborated with process owners to develop remediation plans. Prepared audit observations, risk ratings, and management action plans. Participated in client walkthroughs, status meetings, and audit closing discussions. Identified high-risk control gaps early, enabling successful remediation before the final SOC 2 report was issued.
Project: Garrett SOC 2 Type II Audit. Executed SOC 2 Type II audits based on the Trust Services Criteria (Security, Availability, Confidentiality, Processing Integrity, and Privacy). Evaluated identity and access management controls, MFA implementation, privileged access reviews, and user provisioning/de-provisioning. Performed sampling, evidence review, and operating effectiveness testing. Identified control gaps and collaborated with process owners to develop remediation plans. Prepared audit observations, risk ratings, and management action plans. Participated in client walkthroughs, status meetings, and audit closing discussions, identifying high-risk control gaps early, which enabled timely remediation efforts before final SOC 2 report issuance.
Project: Chegg COSO-Based Internal Controls Assessment. Conducted internal control assessments aligned with COSO Internal Control Framework, evaluating governance, risk management, and control processes. Performed risk assessments to identify financial reporting, operational, and compliance risks across key business processes, and prepared risk and control matrices (RCMs), audit workpapers, and detailed control-testing documentation to support audit conclusions. Improved documentation quality and standardized test procedures, reducing audit rework, and supporting smoother external audit reviews. Utilized AuditBoard to manage end-to-end SOX, ITGC, and Internal Audit engagements. Executed control design and operating effectiveness testing for ITGCs, including user access management, change management, computer operations, and logical access controls. Uploaded and reviewed audit evidence, maintaining complete documentation within AuditBoard. Build a strong relationship with the business owners, IT management, and external auditors. Plan and execute audit assignments, which include assessing the design and operating effectiveness of the internal control structure, and compliance with policies and procedures. Executed 25+ ITGC, SOX, and internal audit engagements across technology, manufacturing, and energy clients. Tested over 150 IT General Controls, covering User Access Management and Change Management. Conducted over 100 walkthroughs with business and IT stakeholders to validate control design and process effectiveness. Reviewed 500+ audit evidence artifacts while maintaining compliance with audit methodology and documentation standards. Reduced audit rework by 20% through standardized workpapers, and improved evidence documentation. Planning and scoping of internal audits, including the performance of walkthroughs and the preparation of audit programs. Achieved 98% documentation accuracy during internal quality reviews.
Team Lead
Deutsche Bank
11.2021 - 06.2022
Conducted risk assessments and scenario analyses for signed projects, enhancing understanding of potential vulnerabilities. Led a team of 8—12 analysts supporting operational risk and internal control activities. Reduced turnaround time for risk reviews by 25% through process improvements. Performed Internal audit testing through controls and compliance provided by the client. Monitoring key performance and key risk indicators. Analyzing errors and control breakdowns, determining root causes & trends, and implementing of remedial actions. Tracked team MIS documents including dashboards and control break matrices to maintain oversight of operational metrics. Escalating & resolving queries and responding to emails and calls of clients in a timely manner. Monitor identified deficiencies and issue remediation efforts to ensure timely closure of findings. Assisted business partners in reviewing risks from various initiatives.
Led cross-functional teams to enhance project delivery and operational efficiency.
Developed and implemented training programs for team members to improve performance.
Streamlined workflows using data analysis to identify process bottlenecks.
Deputy Manager
ICICI Bank Ltd
05.2021 - 09.2021
Verified loan documents to ensure compliance and accuracy. Set up credit limits for borrowers based on financial assessments. Tracked loans end to end to monitor progress and ensure timely processing. Updating stock entries for the borrowers. Reviewed and confirmed loan documents for accuracy
Led team in implementing customer-centric banking solutions, enhancing client satisfaction and retention.
Streamlined operational processes, resulting in improved efficiency and reduced turnaround times for service requests.
Mentored junior staff on compliance regulations, fostering a culture of adherence to industry standards.
Senior Process Associate
Tata Consultancy Services Ltd.
05.2012 - 05.2021
Performed ITGC controls in the scope of SOX requirement. Performed Control Testing for Cards and Mortgage Line of Business, ITGC controls and SOX 404 Audits (Citibank NA collection) based on policies and procedures, laws and regulations, management reporting and the control environment. Primary objective is testing the operational Risk related to the Controls and Compliance to ensure that they are designed and operating effectively in accordance with standards and Test Procedure. Preparing Monthly and daily reports to facilitate matrix on MBR calls. Risk decision making and implementation of risk controls which result in acceptance, mitigation or avoiding ofrisks. Identified critical risks and recommended corrective actions to address them. Reviewed systems for IT general controls and ensured compliance with policies and regulations. Identification of Control Gaps and its Root Cause and Communicate the same to the Risk & Control Coordinators and help them to finalize the Corrective Action Plan. Preparing documentation for new controls & updates, presenting to the client. Tracked payments from debtors and managed trustee accounts.. If payments not received, need to call Trustee or Debtor Attorney for Payments and proceed with Legal action. Processing Motion for Relief from stay (MFR) if Delinquent. Processed mortgage modification requests to assist borrowers.. Supervised compliance with consent orders and stipulation loans.. Tracking court filings and Orders related to Bankruptcy. Preparing Payment Change Notification of mortgage payment, and verify payment change has been notified to Bankruptcy Court.
Led process improvement initiatives to enhance operational efficiency across multiple projects.
Mentored junior associates, fostering skill development and knowledge sharing within the team.
Streamlined workflows by implementing best practices and standard operating procedures.
Customer Care Executive
Consim Info (P) Ltd
10.2010 - 05.2012
Followed up and resolved complaints requiring attention to improve customer satisfaction. Collaborated with support team to enhance customer service experience. Answering calls in an efficient and courteous manner. Trained subordinate staff on the latest techniques. Directed complaints to appropriate departments for resolution.
Resolved customer inquiries through effective communication and problem-solving techniques.
Managed high-volume calls while maintaining service quality and customer satisfaction.
Trained new staff on company policies, procedures, and customer service best practices.
Raisoni Engineering and Management. at AIML Engineer | IT Controls & Risk-Focused Systems DeveloperRaisoni Engineering and Management. at AIML Engineer | IT Controls & Risk-Focused Systems Developer