Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
ITAO image - Rise Careers
Job details

ITAO

Job Description:

Job Title: ITAO, AVP

Location: Pune, India

Role Description

  • The successful candidate is expected to have at least 12-15 years’ experience in IT, preferably with Asset Management Business Applications and Processes.
  • The IT Application Owner (ITAO) has sound IT risk management skills. They follow one of several possible service delivery approaches, acknowledge interference with the IT application’s life cycle and assist with incorporating the adopted approach into best practice.
  • The focus is on applications moving onto cloud. Here you support tracking of the application control status and help application dev-teams with practical advice.
  • Make sure that all steps in Identity & Access Management cycle (on-boarding, recertification, off-boarding) are compliant against DB Policies and application is on-boarded to central tools.
  • The ITAO is aware of the gap in the current infrastructure solutions and where industry innovations are along the maturity lifecycle. They work with application stakeholders to improve the infrastructure, ensuring compliance with the technical roadmap.
  • The ITAO has a sound knowledge of development methodologies and the IT policies necessary to perform effectively in the organisation, aligned to the bank’s appetite for risk.
  • The ITAO acts to improve safety and security of the application, compliance with regulations, policies and standards, enhance operational readiness, and ease maintenance of the environment for delivering change into production.
  • The ITAO supports the bank’s audit function in the remediation of audit points and self-identified issues in order to reduce risk.
  • The ITAO is responsible for producing and maintaining accurate documentation on compliance with methodologies, IT policies and IT security requirements.
  • The ITAO interacts with and influences colleagues on the governance of IT platform reliability and resilience
  • ITAOs will also be responsible for Application Decommissioning
  • ITAOs will be driving activity that helps incidents reduction against an application
  • Support compliance on all steps of SDLC process and make sure that all SDLC controls are green.
  • You support the team’s role as key contact for all security controls in the software delivery process and ensure that the security controls are evidenced by driving automated evidence.
  • You are consulting with the ITAO community, information security specialists in our CSO organization, and other infrastructure teams like the ORR/SDLC teams.

What we’ll offer you

As part of our flexible scheme, here are just some of the benefits that you’ll enjoy

  • Best in class leave policy
  • Gender neutral parental leaves
  • 100% reimbursement under childcare assistance benefit (gender neutral)
  • Sponsorship for Industry relevant certifications and education
  • Employee Assistance Program for you and your family members
  • Comprehensive Hospitalization Insurance for you and your dependents
  • Accident and Term life Insurance
  • Complementary Health screening for 35 yrs. and above

Your key responsibilities

  • Enterprise IT Governance: Responsible for review of current and proposed information systems for compliance with the organisation's obligations (including legislation, regulatory, contractual and agreed standards/policies) and adherence to overall strategy
  • Information security:  Communicates information security risks and issues to business managers and others. Performs basic risk assessments for small information systems. Contributes to vulnerability assessments. Applies and maintains specific security controls as required by organisational policy and local risk assessments. Investigates suspected attacks. Responds to security breaches in line with security policy and records the incidents and action taken.
  • Information content publishing: Understands technical publication concepts, tools and methods and the way in which these are used. Uses agreed procedures to publish content. Obtains and analyses usage data and presents it effectively. Understands, and applies principles of usability and accessibility to published information.
  • Business risk management: Investigates and reports on hazards and potential risk events within a specific function or business area.
  • Continuity management: Implements and contributes to the development of a continuity management plan. Coordinates the assessment of risks to the availability, integrity and confidentiality of systems that support critical business processes. Coordinates the planning, designing, and testing of maintenance procedures and contingency plans.
  • Data management: Assists in providing accessibility, retrievability, security and protection of data in an ethical manner.
  • Methods and tools: Provide support on the use of existing method and tools. Configures methods and tools within a known context. Creates and updates the documentation of methods and tools

Overall Responsibilities Summary:

  • Make sure that all critical activities in application are monitored and logs are reviewed.
  • Ensure appropriate controls onboarded and implemented where appropriate.
  • Make sure that all steps in Identity & Access Management cycle (on-boarding, recertification, off-boarding) are compliant against DB Policies and application is on-boarded to central tools.
  • Manage Internal and external application audits and Audit issue remediation activities.
  • Completion of regular/recurring assessments
  • Timely response to audit & regulatory requirements with evidence, were compliant.
  • Make sure that infrastructure is compliant and has up-to-date patches.
  • Plan for Application Hardware / Software / License upgrades or migration activities to align to the compliant platforms.
  • Keep up-to-date DR Test Plan and manage regular DR Tests
  • Manage application capacity forecasting and monitoring.
  • Manage any IT Security incidents that may occur in the application.
  • Support compliance on all steps of SDLC process and make sure that all SDLC controls are green.
  • Application Decommissioning
  • Drive incidents reduction against an application
  • Planning/Organizing: Able to manage work but also to make the estimate, scheme in detail, work on deployment plans and manage deadlines.
  • Manage the technical roadmap of the application (technology roadmap compliance), estimate/budget capacity needed.
  • Expertise in Planning and execution of Releases, Changes, Patches.
  • Exposure of handling L3 role, incident analysis, patch preparation and implementation.
  • Skilled individual to interact with L2 teams for incident and problem management cases.
  • The candidate will typically have a rather limited technical hands on involvement. A high-level understanding on the products/technologies below is welcomed:
    • Databases;
    • Application/web servers (like J2EE based, especially JBoss, Tomcat, WebLogic Server, Apache)
    • Management of security certificates.
    • Unix servers very basic administration
    • Microservices and SOA
    • Communication and encryption protocols (mainly HTTP(S), SSL)
    • Networking (firewalls, load balancers, etc)
    • High Availability Architecture.
    • GCP / Google Cloud Platform management

Your skills and experience

  • Degree-level IT and/or information security qualification, or equivalent experience in
  • Information Security and IT Security
  • Experience in Software Development Lifecycle (SDLC) - from idea to production to understand our customer journey, these mostly application owners, business ISOs and development teams
  • GCP-Cloud foundation knowledge
  • General understanding of current security industry standards, best practices, and/or frameworks i.e.: NIST, ENISA, ISO27001, OWASP
  • Problem-solving and analytical skills with the ability to oversee complex processes
  • Ability to educate a technical and non-technical audience about various security measure
  • Excellent communications skills and very service oriented and customer friendly behaviour even in stressful situations
  • Self-driven behaviour
  • Fluent in English (written/verbal)

Preferable

  • Knowledge of information security tools e.g., security scan and testing tools
  • Understanding of cloud engineering and native security features to support the migration path for applications onto the cloud environment
  • Firm understanding of DevSecOps and the banks shift left agenda to integrate security in the software development lifecycle as earliest as possible.
  • ISO or ITAO certification (for internals only)

How we’ll support you

  • Training and development to help you excel in your career
  • Coaching and support from experts in your team
  • A culture of continuous learning to aid progression
  • A range of flexible benefits that you can tailor to suit your needs

About us and our teams

Please visit our company website for further information:

https://www.db.com/company/company.htm

Average salary estimate

$135000 / YEARLY (est.)
min
max
$120000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About ITAO, DB

Are you ready to take on the role of IT Application Owner (ITAO) with us at our Pune office in Business Bay? We're looking for an experienced individual with between 12 to 15 years of experience in IT, especially in Asset Management Business Applications and Processes. As the ITAO, you'll be a pivotal part of our team's commitment to IT risk management, tackling everything from application lifecycles to cloud migrations. Your strategic role will include ensuring compliance with Identity & Access Management cycles along with maintaining robust documentation related to methodologies, IT policies, and security requirements. Your deep understanding of development methodologies dovetails with your ability to influence IT platform governance securely and resiliently. Beyond that, your responsibilities will also involve audit remediation efforts, making sure we’re always in line with regulations, and overseeing application decommissioning processes. We provide a culture where you can thrive—our benefits include a generous leave policy, gender-neutral parental leave, and full sponsorship for professional certifications among many more. If you're ready to steer our IT strategies to new heights, we'd love to meet you!

Frequently Asked Questions (FAQs) for ITAO Role at DB
What are the responsibilities of the IT Application Owner at our Pune location?

As the IT Application Owner (ITAO) at our Pune location, you will oversee compliance with regulatory standards and internal policies related to IT applications. You'll ensure effective Identity & Access Management, guide application development teams, and manage audit remediation efforts, all while focusing on transitioning applications to the cloud and enhancing operational readiness.

Join Rise to see the full answer
What qualifications do I need to become an ITAO at the company?

To become an IT Application Owner (ITAO) at our company, you should have at least 12-15 years of relevant IT experience, preferably in Asset Management Business Applications. A degree-level qualification in IT or information security is essential, alongside deep knowledge of risk management practices and compliance standards, particularly in the context of cloud environments.

Join Rise to see the full answer
How does the IT Application Owner support security compliance at the company?

The IT Application Owner at our company plays a crucial role in security compliance by ensuring that all applications align with the established IT policies and security standards. This involves managing security incident responses, conducting risk assessments, and facilitating communication with various internal teams, such as the IT security community and development teams.

Join Rise to see the full answer
What benefits can I expect when working as an ITAO in Pune?

As an IT Application Owner (ITAO) in Pune, you'll enjoy a competitive benefits package that includes best-in-class leave policies, comprehensive health insurance for you and your dependents, childcare assistance, and full sponsorship for industry certifications. We also promote a continuous learning environment facilitated by expert coaching.

Join Rise to see the full answer
What is the importance of the ITAO in application decommissioning?

The IT Application Owner (ITAO) is vital in application decommissioning as they ensure that all security measures and compliance standards are meticulously maintained throughout the process. This responsibility entails planning for audits, managing the transition of data, and mitigating load on infrastructure while adhering to the company's risk management strategies.

Join Rise to see the full answer
Common Interview Questions for ITAO
What does your experience with Asset Management Applications look like?

In responding to this question, highlight specific projects where you've managed or worked with asset management applications. Be prepared to discuss the challenges faced and the outcomes achieved, illustrating your understanding of best practices in application management.

Join Rise to see the full answer
How do you ensure compliance with IT policies in your projects?

Highlight your knowledge of regulatory standards and your method for incorporating them into project timelines. Discuss any tools or methodologies you use to facilitate compliance checks and how you keep documentation up to date within your teams.

Join Rise to see the full answer
How do you keep up with innovations in IT application management?

Share your strategies for staying informed about the latest industry trends, such as attending webinars, reading technical journals, and participating in forums. Provide examples of how you've implemented new technologies in previous roles to improve application management.

Join Rise to see the full answer
Describe your experience with cloud migrations.

In your answer, emphasize past cloud migration projects you've worked on, outlining your role and the steps taken to ensure successful transitions. Highlight specific challenges you encountered and how you overcame them.

Join Rise to see the full answer
Can you explain your approach to risk management?

Express your understanding of risk management as it pertains to IT systems. Share experiences where you've conducted risk assessments and the methods you employed to communicate potential vulnerabilities to stakeholders.

Join Rise to see the full answer
What strategies do you use for managing Identity & Access Management?

Discuss your experience with Identity & Access Management practices, emphasizing successful strategies regarding on-boarding, recertification, and off-boarding processes. Provide examples of adjustments you've made in response to regulatory changes.

Join Rise to see the full answer
How do you manage collaboration between technical and non-technical teams?

Talk about your communication style and how you bridge the gap between technical teams and non-technical stakeholders. Share examples of successful projects where effective collaboration led to positive outcomes.

Join Rise to see the full answer
What challenges have you faced in application decommissioning, and how did you overcome them?

Prepare to discuss specific situations where application decommissioning posed challenges. Detail how you navigated stakeholder concerns and ensured compliance and security were maintained throughout the process.

Join Rise to see the full answer
What is your understanding of DevSecOps in relation to the SDLC?

Articulate your comprehension of DevSecOps principles and how they integrate security into the software development life cycle. Provide examples of how you've fostered a security-first philosophy in previous projects.

Join Rise to see the full answer
How do you ensure high availability and reliability for applications?

Provide specific methodologies you've implemented to maintain the reliability and availability of applications, such as monitoring performance metrics, implementing load balancers, or conducting regular disaster recovery tests.

Join Rise to see the full answer
Similar Jobs

Join Deutsche Bank as an Information Security Specialist to enhance the security of cloud operations through proactive threat detection and collaboration.

Posted 12 days ago

We are looking for a Transactional FX Product Manager to lead product strategies at Deutsche Bank, combining innovative solutions with client-focused delivery.

Photo of the Rise User

Join F1RST Digital Services as an IT Engineer Expert (Portfolio Manager) and help shape the future of banking technology.

Photo of the Rise User
Posted 6 days ago

Join Datacom as an Endpoint Engineering - Operations Manager, leading a team to innovate and improve end user solutions.

Photo of the Rise User
Posted 13 days ago

We are seeking a Senior Site Reliability Engineer to enhance our transaction platforms used worldwide, ensuring outstanding performance and security.

Photo of the Rise User
Solace Remote No location specified
Posted 9 days ago

Join Solace as a Lead Security Engineer and help build a secure healthcare advocacy platform that impacts patient outcomes.

Seeking a skilled PeopleSoft Financials Developer to be a key resource in an upgrade project at Allied Consultants in Austin.

Photo of the Rise User
Posted 12 days ago

Huntington is looking for a Senior IT Infrastructure Architect to lead the technical direction of their information systems integration.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
April 22, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
16 people applied to SOC Analyst at Humi
Photo of the Rise User
Someone from OH, Mason just viewed Senior Business Analyst at Roots Automation
Photo of the Rise User
Someone from OH, Mason just viewed Finance Intern at First Student
Photo of the Rise User
Someone from OH, Mason just viewed Intern at First Student
Photo of the Rise User
Someone from OH, Akron just viewed TABLE GAMES DEALER at Boyd Gaming
Photo of the Rise User
Someone from OH, Cincinnati just viewed Financial Analyst I - Athletics at University of Louisville
Photo of the Rise User
Someone from OH, Cincinnati just viewed AI training and enablement at Writer
Photo of the Rise User
Someone from OH, Xenia just viewed Front Desk Clerk at Marriott International
J
Someone from OH, Columbus just viewed Account Administration at Jobmatchpros
C
Someone from OH, Canton just viewed RN Ambulatory - Outpatient Infusion Therapy at CCF
Photo of the Rise User
Someone from OH, Columbus just viewed Network Engineering Intern at Crusoe
Photo of the Rise User
Someone from OH, Youngstown just viewed Softgoods Materials Researcher at Apple
E
Someone from OH, Bowling Green just viewed Contract Game Mathematician (Hourly) at Everyrealm
Photo of the Rise User
Someone from OH, Ada just viewed Media Assistant at Fulcrum
Photo of the Rise User
Someone from OH, Akron just viewed Medical Office Receptionist at LifeStance Health
Photo of the Rise User
Someone from OH, Cincinnati just viewed Dental Office Manager at DECA Dental Group