Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic
Umakandan Satish

Umakandan Satish

IT Auditor
Chennai,TN

Summary

Accomplished Risk & Controls professional with 13 years of expertise in ITGC, Internal Audit, RCSA, SOX Compliance, and Regulatory Compliance. Skilled in evaluating IT General Controls, conducting SOX 404 assessments, and managing compliance gap assessments. Knowledgeable in SOC 1, SOC 2, and SOX Sections 404, with a focus on enhancing control environments and ensuring compliance. Experienced in delivering actionable recommendations that strengthen governance and operational effectiveness.

Overview

2
2
Languages
3
3
Certifications
16
16
years of professional experience

Work History

Lead Solution Advisor

Deloitte
07.2022 - 05.2026
  • Project: Garrett SOC 2 Type II Audit. Executed SOC 2 Type II audits based on the Trust Services Criteria (Security, Availability, Confidentiality, Processing Integrity, and Privacy). Evaluated identity and access management controls, MFA implementation, privileged access reviews, and user provisioning/de-provisioning. Performed sampling, evidence review, and operating effectiveness testing. Identified control gaps and collaborated with process owners to develop remediation plans. Prepared audit observations, risk ratings, and management action plans. Participated in client walkthroughs, status meetings, and audit closing discussions. Identified high-risk control gaps early, enabling successful remediation before the final SOC 2 report was issued.
  • Project: Garrett SOC 2 Type II Audit. Executed SOC 2 Type II audits based on the Trust Services Criteria (Security, Availability, Confidentiality, Processing Integrity, and Privacy). Evaluated identity and access management controls, MFA implementation, privileged access reviews, and user provisioning/de-provisioning. Performed sampling, evidence review, and operating effectiveness testing. Identified control gaps and collaborated with process owners to develop remediation plans. Prepared audit observations, risk ratings, and management action plans. Participated in client walkthroughs, status meetings, and audit closing discussions, identifying high-risk control gaps early, which enabled timely remediation efforts before final SOC 2 report issuance.
  • Project: Chegg COSO-Based Internal Controls Assessment. Conducted internal control assessments aligned with COSO Internal Control Framework, evaluating governance, risk management, and control processes. Performed risk assessments to identify financial reporting, operational, and compliance risks across key business processes, and prepared risk and control matrices (RCMs), audit workpapers, and detailed control-testing documentation to support audit conclusions. Improved documentation quality and standardized test procedures, reducing audit rework, and supporting smoother external audit reviews. Utilized AuditBoard to manage end-to-end SOX, ITGC, and Internal Audit engagements. Executed control design and operating effectiveness testing for ITGCs, including user access management, change management, computer operations, and logical access controls. Uploaded and reviewed audit evidence, maintaining complete documentation within AuditBoard. Build a strong relationship with the business owners, IT management, and external auditors. Plan and execute audit assignments, which include assessing the design and operating effectiveness of the internal control structure, and compliance with policies and procedures. Executed 25+ ITGC, SOX, and internal audit engagements across technology, manufacturing, and energy clients. Tested over 150 IT General Controls, covering User Access Management and Change Management. Conducted over 100 walkthroughs with business and IT stakeholders to validate control design and process effectiveness. Reviewed 500+ audit evidence artifacts while maintaining compliance with audit methodology and documentation standards. Reduced audit rework by 20% through standardized workpapers, and improved evidence documentation. Planning and scoping of internal audits, including the performance of walkthroughs and the preparation of audit programs. Achieved 98% documentation accuracy during internal quality reviews.

Team Lead

Deutsche Bank
11.2021 - 06.2022
  • Conducted risk assessments and scenario analyses for signed projects, enhancing understanding of potential vulnerabilities. Led a team of 8—12 analysts supporting operational risk and internal control activities. Reduced turnaround time for risk reviews by 25% through process improvements. Performed Internal audit testing through controls and compliance provided by the client. Monitoring key performance and key risk indicators. Analyzing errors and control breakdowns, determining root causes & trends, and implementing of remedial actions. Tracked team MIS documents including dashboards and control break matrices to maintain oversight of operational metrics. Escalating & resolving queries and responding to emails and calls of clients in a timely manner. Monitor identified deficiencies and issue remediation efforts to ensure timely closure of findings. Assisted business partners in reviewing risks from various initiatives.
  • Led cross-functional teams to enhance project delivery and operational efficiency.
  • Developed and implemented training programs for team members to improve performance.
  • Streamlined workflows using data analysis to identify process bottlenecks.

Deputy Manager

ICICI Bank Ltd
05.2021 - 09.2021
  • Verified loan documents to ensure compliance and accuracy. Set up credit limits for borrowers based on financial assessments. Tracked loans end to end to monitor progress and ensure timely processing. Updating stock entries for the borrowers. Reviewed and confirmed loan documents for accuracy
  • Led team in implementing customer-centric banking solutions, enhancing client satisfaction and retention.
  • Streamlined operational processes, resulting in improved efficiency and reduced turnaround times for service requests.
  • Mentored junior staff on compliance regulations, fostering a culture of adherence to industry standards.

Senior Process Associate

Tata Consultancy Services Ltd.
05.2012 - 05.2021
  • Performed ITGC controls in the scope of SOX requirement. Performed Control Testing for Cards and Mortgage Line of Business, ITGC controls and SOX 404 Audits (Citibank NA collection) based on policies and procedures, laws and regulations, management reporting and the control environment. Primary objective is testing the operational Risk related to the Controls and Compliance to ensure that they are designed and operating effectively in accordance with standards and Test Procedure. Preparing Monthly and daily reports to facilitate matrix on MBR calls. Risk decision making and implementation of risk controls which result in acceptance, mitigation or avoiding ofrisks. Identified critical risks and recommended corrective actions to address them. Reviewed systems for IT general controls and ensured compliance with policies and regulations. Identification of Control Gaps and its Root Cause and Communicate the same to the Risk & Control Coordinators and help them to finalize the Corrective Action Plan. Preparing documentation for new controls & updates, presenting to the client. Tracked payments from debtors and managed trustee accounts.. If payments not received, need to call Trustee or Debtor Attorney for Payments and proceed with Legal action. Processing Motion for Relief from stay (MFR) if Delinquent. Processed mortgage modification requests to assist borrowers.. Supervised compliance with consent orders and stipulation loans.. Tracking court filings and Orders related to Bankruptcy. Preparing Payment Change Notification of mortgage payment, and verify payment change has been notified to Bankruptcy Court.
  • Led process improvement initiatives to enhance operational efficiency across multiple projects.
  • Mentored junior associates, fostering skill development and knowledge sharing within the team.
  • Streamlined workflows by implementing best practices and standard operating procedures.

Customer Care Executive

Consim Info (P) Ltd
10.2010 - 05.2012
  • Followed up and resolved complaints requiring attention to improve customer satisfaction. Collaborated with support team to enhance customer service experience. Answering calls in an efficient and courteous manner. Trained subordinate staff on the latest techniques. Directed complaints to appropriate departments for resolution.
  • Resolved customer inquiries through effective communication and problem-solving techniques.
  • Managed high-volume calls while maintaining service quality and customer satisfaction.
  • Trained new staff on company policies, procedures, and customer service best practices.

Education

MBA/PGDM -

Pondicherry University
01-2013

B.B.A/B.M.S - undefined

Madras University
01-2009

12th - Tamil Nadu, English

01-2006

10th - English

CBSE
01-2004

Skills

ITGC TestingSOX 404SOX ComplianceInternal AuditRCSASOC 1SOC 2Risk AssessmentControl TestingInternal ControlsIT Risk ManagementCOSO FrameworkControl Design EffectivenessOperating Effectiveness TestingRegulatory ComplianceChange ManagementUser Access ManagementSegregation of Duties (SoD)Application ControlsGRCKRI/KPI MonitoringISO 27001WalkthroughsAudit PlanningAudit ExecutionMonitoring ActivitiesRemediation TrackingWorkstream ManagementEvidence CollectionWorkflow Management

Certification

risk management

Timeline

Lead Solution Advisor

Deloitte
07.2022 - 05.2026

Team Lead

Deutsche Bank
11.2021 - 06.2022

Deputy Manager

ICICI Bank Ltd
05.2021 - 09.2021

Senior Process Associate

Tata Consultancy Services Ltd.
05.2012 - 05.2021

Customer Care Executive

Consim Info (P) Ltd
10.2010 - 05.2012

10th - English

CBSE

12th - Tamil Nadu, English

B.B.A/B.M.S - undefined

Madras University

MBA/PGDM -

Pondicherry University
Umakandan SatishIT Auditor