Assurance Team Lead – Audit and Risk Management
Deutsche Bank
- Location
- Bangalore Velankani Tech Park
- Work model
- On-Site
- Level
- Senior
- Posted
- Aug 24, 2026
About this role
Job Description
Job Title: Assurance Team Lead – Audit and Risk Management Corporate Title: Vice President Location: Bangalore, Pune, India Role Description The Assurance Team Lead – Audit and Risk Management is responsible for leading audit, risk, vendor risk management, governance, and risk reporting activities for the Hybrid Cloud Infrastructure division. The role drives end-to-end delivery of risk reduction and audit remediation initiatives, ensures timely closure of audit findings, strengthens the control environment, and provides transparent risk reporting to senior stakeholders. Strong project management, stakeholder engagement, governance discipline, and technology risk oversight are key success factors for the role. The role also drives proactive risk management by identifying emerging risks, assessing control weaknesses, initiating early mitigation actions, and ensuring risks are managed before they materialize into audit findings or control issues. What we’ll offer you As part of our flexible scheme, here are just some of the benefits that you’ll enjoy, Best in class leave policy. Gender neutral parental leaves 100% reimbursement under childcare assistance benefit (gender neutral) Sponsorship for Industry relevant certifications and education Employee Assistance Program for you and your family members Comprehensive Hospitalization Insurance for you and your dependents Accident and Term life Insurance Complementary Health screening for 35 yrs. and above Your key responsibilities Lead audit, risk, VRM, governance, and risk reporting activities for HCI, ensuring alignment with GTI priorities, internal frameworks, and regulatory expectations. Manage the full audit finding lifecycle, including challenge, management action plans, remediation tracking, evidence coordination, validation support, and timely closure. Drive proactive risk management by identifying emerging risks, control weaknesses, recurring themes, and dependencies before they become audit findings or control issues. Maintain a forward-looking risk profile for HCI through risk identification, assessment, monitoring, reporting, and early mitigation planning. Identify and prioritise material remediation actions across GTI, including cross-divisional dependencies and control improvement initiatives. Track remediation progress, overdue actions, and closure readiness, ensuring documentation is complete, evidence-based, and audit-ready. Oversee vendor risk management activities, including risk assessments, recertifications, control reviews, issue management, subcontractor oversight, and regulatory obligations. Represent the controls and assurance function in governance forums, providing clear updates on risks, audit findings, vendor issues, remediation status, and key themes. Escalate risks, delays, gaps, and dependencies early, ensuring decisions and actions are tracked through to completion. Partner with Audit, 2nd Line of Defence, Divisional Control, Embedded Risk, Service Owners, and Technology teams to strengthen the control environment. Deliver timely and action-oriented risk reporting to senior stakeholders, highlighting risk posture, remediation progress, overdue items, and areas requiring management attention. Promote a proactive IT/IS risk culture through early issue identification, transparent escalation, strong evidence discipline, and sustainable control improvements. Service Owner Risk Assessment and Management: Complete risk assessments, ensure proper screening, and report third-party issues. Regulatory Compliance: Nominate Local Service Owners and ensure compliance with local regulatory requirements. Third-Party Selection and Screening: Select third parties, consider risk aspects, and review screening outputs. Control Assessments and Mitigation: Ensure third parties complete required tasks, develop continuity plans, and manage risk mitigation actions. Continuous Monitoring and Termination: Update risk assessments, perform post