Job Description
Roles & Responsibilities
Nair Systems is currently looking for Assistant Manager – Financial Control – ICFR IT Controls Testing for our UAE operations with the following terms & conditions.
Job Purpose:
To support the Finance Division in maintaining and enhancing the Bank’s Internal Control over Financial Reporting (ICFR) framework through the independent testing and evaluation of General IT Controls (GITCs), IT Application Controls (ITACs), Interface Controls, and Information Produced by the Entity (IPE). The role is responsible for assessing control effectiveness, identifying control deficiencies, supporting remediation activities, and collaborating with Finance, IT, and audit stakeholders to ensure the integrity, reliability, and compliance of systems and processes supporting financial reporting.
Requirements / Work Experience/ Qualification Specification:
Bachelor’s degree in information systems, Information Technology, Accounting, Finance, Computer Science, or a related field.
Professional certification such as CISA, CIA, CPA, CA, ACCA, CRISC, CISSP, or equivalent preferred.
4–7 years of experience in IT Audit, ICFR/SOX Compliance, IT Risk, Internal Audit, or Risk Advisory, preferably within banking or financial services.
Hands-on experience in GITC, ITAC, Interface Controls, and IPE testing.
Knowledge of ICFR, COSO, and COBIT frameworks.
Experience with core banking systems, ERP platforms (e.g., Finacle, SAP, Oracle), and financial reporting applications.
Understanding of system interfaces, database concepts, and automated business processes.
Experience supporting internal/external audits and regulatory reviews.
Proficiency in Microsoft Excel and data analysis techniques.
Strong analytical, communication, documentation, stakeholder management, and problem-solving skills, with the ability to work independently and meet deadlines.
Main Responsibilities and Accountabilities:
ICFR IT Control Testing:
Perform testing of the design and operating effectiveness of IT controls supporting financial reporting.
Document process walkthroughs, risk and control assessments, testing workpapers, and conclusions.
Identify control deficiencies, assess their impact, and track remediation activities.
Ensure testing is performed in line with ICFR methodology and audit requirements.
GITC (General IT Controls):
Test key IT controls including User Access Management, privileged access, segregation of duties, change management, and IT operations controls.
Validate the completeness and accuracy of Information Produced by the Entity (IPE).
Coordinate with IT and business stakeholders to obtain and assess supporting evidence.
IT Application Controls (ITAC):
Test automated controls, system configurations, workflows, calculations, and validations impacting financial reporting.
Assess the reliability of system functionality and key reports used in financial processes.
Validate the completeness, accuracy, and integrity of system-generated information relied upon for control execution.
Interface Testing & Data Integrity:
Evaluate interfaces between systems supporting financial reporting.
Verify the completeness, accuracy, and timeliness of data transfers through reconciliations and exception analysis.
Assess interface monitoring, error handling, logging, and exception management controls.
Escalate interface failures, data integrity issues, and control exceptions.
Audit Coordination & Reporting:
Support internal and external audits by providing testing documentation, evidence, and management responses.
Monitor and report on control deficiencies, audit findings, and remediation plans.
Prepare testing summaries, status reports, and management updates on IT control effectiveness.
Desired Candidate Profile
banking domain experience is mandatory
وصف الوظيفة
الأدوار والمسؤوليات
تبحث ناقير سيستمز حاليًا عن مساعد مدير – الرقابة المالية – اختبارات ضوابط تكنولوجيا المعلومات ICFR IT لعملياتنا في الإمارات بالشروط والأحكام التالية.
الغرض من الوظيفة:
دعم قسم المالية في الحفاظ على إطار الرقابة الداخلية على التقارير المالية (ICFR) وتطويره من خلال الاختبار وتقييم الضوابط العامة لتكنولوجيا المعلومات (GITCs)، وضوابط تطبيقات تكنولوجيا المعلومات (ITACs)، وضوابط الواجهات، والمعلومات التي ينتجها الكيان (IPE). المسؤولية هي تقييم فاعلية الرقابة، وتحديد عيوب الرقابة، ودعم أنشطة الإصلاح، والتعاون مع أصحاب المصلحة في المالية وتكنولوجيا المعلومات والتدقيق لضمان سلامة وموثوقية والامتثال للأنظمة والعمليات الداعمة للإبلاغ المالي.
المتطلبات / الخبرة العملية / المواصفات المؤهلة:
درجة البكالوريوس في نظم المعلومات، تكنولوجيا المعلومات، المحاسبة، المالية، علوم الحاسب، أو مجال ذو صلة.
شهادة مهنية مثل CISA، CIA، CPA، CA، ACCA، CRISC، CISSP، أو ما يعادلها مفضلة.
4–7 سنوات خبرة في تدقيق تكنولوجيا المعلومات، الامتثال ICFR/SOX، مخاطر تكنولوجيا المعلومات، التدقيق الداخلي، أو استشارات المخاطر، ويفضل في البنوك أو الخدمات المالية.
خبرة عملية في اختبارات GITC، ITAC، ضوابط الواجهات، وIPE.
معرفة بإطارات ICFR، COSO و COBIT.
خبرة مع أنظمة المصارف الأساسية، منصات ERP (مثلاً Finacle، SAP، Oracle)، وتطبيقات التقارير المالية.
فهم لواجهات الأنظمة، مفاهيم قواعد البيانات، والعمليات التجارية الآلية.
خبرة في دعم التدقيقات الداخلية والخارجية والمراجعات التنظيمية.
إتقان Microsoft Excel وتقنيات تحليل البيانات.
مهارات تحليلية قوية، اتصال، توثيق، إدارة أصحاب المصلحة، وحل المشكلات، مع القدرة على العمل بشكل مستقل والالتزام بالمواعيد.
المسؤوليات الرئيسية والحوكمة:
اختبار ضوابط ITIC (ICFR):
إجراء اختبار لتصميم وفعالية الضوابط IT الداعمة للتقارير المالية.
توثيق مراجعات العمليات، وتقييم المخاطر والضوابط، وأوراق العمل للاختبار، والاستنتاجات.
تحديد عيوب الرقابة وتقييم تأثيرها وتتبع أنشطة الإصلاح.
التأكد من تنفيذ الاختبار وفق منهج ICFR ومتطلبات التدقيق.
GITC (ضوابط تكنولوجيا المعلومات العامة):
اختبار ضوابط تكنولوجيا المعلومات الرئيسية بما في ذلك إدارة وصول المستخدمين، الوصول المميز، فصل السلطات، إدارة التغيير، وضوابط عمليات تكنولوجيا المعلومات.
التحقق من اكتمال ودقة المعلومات المُنتَجة من الكيان (IPE).
التنسيق مع أصحاب المصلحة في تكنولوجيا المعلومات والعمل للحصول على الأدلة الداعمة وتقييمها.
ضوابط تطبيقات تكنولوجيا المعلومات (ITAC):
اختبار الضوابط الآلية، وتكوينات النظام، وتدفقات العمل، والحسابات، والتحقق من الصحة التي تؤثر على التقارير المالية.
تقييم موثوقية وظائف النظام والتقارير الرئيسية المستخدمة في العمليات المالية.
التحقق من اكتمال ودقة وسلامة المعلومات المولدة من النظام والتي تعتمد عليها تنفيذ الرقابة.
اختبار الواجهات وتكامل البيانات:
تقييم الواجهات بين الأنظمة الداعمة للتقارير المالية.
التحقق من اكتمال الصحة والدقة وفي الوقت المناسب لنقل البيانات من خلال التسويات وتحليل الاستثناءات.
تقييم ضوابط الرصد والاخطاء والتسجيل والتعامل مع الاستثناءات في الواجهات.
تصعيد فشل الواجهات، ومشاكل تكامل البيانات، واستثناءات الرقابة.
التنسيق والتقرير التدقيقي:
دعم التدقيقات الداخلية والخارجية من خلال تقديم وثائق الاختبار، والأدلة، وردود الإدارة.
مراقبة وتقديم تقارير عن عيوب الرقابة، ونتائج التدقيق، وخطط الإصلاح.
إعداد ملخصات الاختبار، وتقارير الحالة، وتحديثات الإدارة حول فاعلية ضوابط IT.
المرشح المطلوب
خبرة في مجال البنوك أمر إلزامي