A comprehensive IT audit program provides organizations visibility into their technology environment and associated risks. As technology adoption accelerates, controls deficiencies and vulnerabilities may emerge within this complex landscape. Our approach centers on designing a tailored audit program aligned with your specific environment, leveraging a risk focused methodology and supplemented by audit driven data to identify areas of focus to enable you to anticipate and address challenges proactively well before audit cycles arrive.
Dipesh's journey is a testament to the amalgamation of passion and diverse experiences. His enthusiasm for computer games and experimentation with technology laid the groundwork for a career in this field. He has built a comprehensive skillset from his tenures at leading firms like KPMG India and SBI Cards, specializing in a wide range of areas including Privacy (GDPR, DPDPA), Cybersecurity, IT Audits, IT SOX, SOC 1 & SOC 2 reporting, and Business Continuity Planning.
Dipesh is a Certified Information Systems Auditor (CISA) and holds an MBA in Information Systems and Security, along with a PG Diploma in Cyber Laws.
His broad expertise extends across multiple sectors such as BFSI, NBFCs, Manufacturing, Aviation, and Telecom.
Dipesh brings a holistic perspective to his work, with his interests in dramatics, filmmaking, and martial arts honing the creativity and adaptability needed to thrive in the dynamic technology risk domain.
Piyush Paliwal’s professional journey reflects his commitment to bridging technology, risk, and business needs to create value-driven solutions for clients across industries. With over 9 years of experience spanning Deloitte USI, Deloitte Canada, HCL Technologies, and now Pierag Consulting, Piyush has developed deep expertise in Technology Risk Advisory, specializing in internal controls, IT audits, compliance, and risk assessments, delivering solutions across geographies including the US, Canada, UK, South Asia, and India.
At Pierag, he leads complex engagements in areas such as Risk-based Internal Audits, SOX compliance, SOC reporting readiness, ITGC reviews, IFC/ICOFR, SSAE18 assessments, and IT Application Controls. His expertise also extends to specialized areas such as Third-Party Risk Management (TPRM), Enterprise Risk Management (ERM), Data Privacy, Cybersecurity, GRC tools, IAM solutions, and regulatory frameworks like SOX, ICFR, COSO, and COBIT—helping organizations build robust compliance and control environments.Piyush’s work spans a broad spectrum of industries, including Telecom, Technology, Manufacturing, eCommerce, FMCG, BFSI, and Life Sciences & Healthcare. Beyond technical delivery, he has played a pivotal role in client relationship management, practice building, training, and quality reviews, as well as leading teams to navigate diverse regulatory requirements. His international experience—particularly his secondment with Deloitte Canada—has further sharpened his perspective on global compliance and risk.
He holds a Master of Business Administration (Finance) and a Bachelor of Engineering (IT). He is also a certified ISO 27001:2022 Lead Implementor and ISO 42001:2023 Lead Implementor (Intertek), demonstrating his commitment to staying ahead in information security and emerging AI governance. Piyush’s expertise in working with enterprise systems such as SAP, PeopleSoft, Windows, UNIX, SQL Server, and Oracle etc. adds further depth in aligning technology environments with internal control frameworks and regulatory guidance for complex and high-growth organizations.
Recognized as a trusted advisor, Piyush brings not just strong domain knowledge but also the ability to connect business priorities with technology controls, making him a leading voice in the Technology Risk Advisory space.