Base Career helps you apply smarter for this job.
Key skills for this role
The Tech Audit Lead will be responsible for establishing and leading the technology audit function at PHI, ensuring compliance with internal policies, regulatory frameworks (IRDAI, GDPR, HIPAA), and global Prudential standards. This role will oversee audit trails, vulnerability management, and risk mitigation across PHI’s cloud-native infrastructure and applications.
Prudential’s purpose is to be partners for every life and protectors for every future. Our purpose encourages everything we do by creating a culture in which diversity is celebrated and inclusion assured—for our people, customers, and partners. We provide a platform for our people to do their best work and make an impact to the business, and we support our people’s career ambitions. We pledge to make Prudential a place where you can Connect, Grow, and Succeed.
At Prudential Health India (PHI) , we are on a mission to make Indians healthier, while bridging the health protection gap. This is a Zero-to-One team undertaking a greenfield health insurance deployment in India committed to building journeys that truly empathise with the customer and offer a differentiated, bespoke experience.
To partner us in this mission, we are looking for a talented candidate for the role of…
Note: The title will depend on (1) Experience (2) Expertise and (3) Performance. So the title could be:
Tech Audit Lead
Senior Tech Audit Lead
(Associate Director) Technology Audit
Experience: 10–18 years Location: Mumbai Work Mode: Work from office only
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
Bengaluru, IND
London, GBR
Bengaluru, IND
Mumbai, IND
Mumbai, IND
Bengaluru, IND
Bengaluru, IND
Bengaluru, IND
The Tech Audit Lead will be responsible for establishing and leading the technology audit function at PHI, ensuring compliance with internal policies, regulatory frameworks (IRDAI, GDPR, HIPAA), and global Prudential standards. This role will oversee audit trails, vulnerability management, and risk mitigation across PHI’s cloud-native infrastructure and applications.
Develop and implement a comprehensive technology audit strategy and annual audit plan aligned with PHI’s business and regulatory requirements.
Conduct risk-based audits across infrastructure, applications, data platforms, and security controls.
Ensure complete and tamper-proof audit trails of user activities, data changes, and system events.
Collaborate with InfoSec, DevSecOps, and AppSec teams to validate remediation of vulnerabilities and ensure patch compliance.
Lead privacy impact assessments , penetration testing reviews , and security onboarding for new applications.
Monitor and report on the implementation of audit recommendations and track remediation progress.
Maintain documentation and audit logs in accordance with professional standards and Prudential Group policies.
Support investigations into technology-related incidents, control breaches, or compliance failures.
Present audit findings and risk assessments to senior leadership and the Audit Committee.
Stay updated on emerging risks, regulatory changes, and best practices in technology audit and governance.
Implement and audit SAST , DAST , and SCA scanning tools and processes.
Ensure secure integration of CI/CD pipelines using Checkmarx , GitHub , GitHub Actions , HashiCorp Vault , and Azure AD .
Oversee onboarding and compliance of WAF (Web Application Firewall) solutions including Imperva API Security and DDoS/WAAP protection .
Validate controls for privileged access management using tools like CyberArk .
Ensure compliance with data classification , encryption standards , and endpoint protection policies.
Strategic thinker with strong analytical and investigative skills.
High integrity and ethical standards.
Excellent communication and presentation skills.
Ability to work independently and manage multiple concurrent audits.
Strong attention to detail and documentation discipline.
Experience in setting up audit functions in greenfield environments.
Exposure to IRDAI audits and regulatory inspections.
Familiarity with centralised vulnerability dashboards and build breaker enforcement.
Experience with public-facing application security, DDoS/WAAP onboarding, and penetration testing workflows.
Fluent written and spoken English
Prudential is an equal opportunity employer. We provide equality of opportunity and benefits for all who apply and perform work for our organisation irrespective of sex, race, age, ethnic origin, educational, social and cultural background, marital status, pregnancy and maternity, religion or belief, disability, part-time/fixed-term work, or any other status protected by applicable law.
Prudential is an equal opportunity employer. We provide equality of opportunity of benefits for all who apply and who perform work for our organisation irrespective of sex, race, age, ethnic origin, educational, social and cultural background, marital status, pregnancy and maternity, religion or belief, disability or part-time / fixed-term work, or any other status protected by applicable law. We encourage the same standards from our recruitment and third-party suppliers taking into account the context of grade, job and location. We also allow for reasonable adjustments to support people with individual physical or mental health requirements.
Global life insurance and asset management group.
Visit company websiteFull-time
Senior · 10+ years experience
Onsite
Apply faster on company sites with our extension.