Senior IT Auditor
Core
Lead and carry out IT and cybersecurity audits focusing on emerging risks in cloud, AI, and modern technology practices.
Role type
Senior IT Auditor (Cybersecurity & Risk)
Builds
Independent assurance and advisory services strengthening risk management, control, and governance.
Domain
Financial Services / Cybersecurity & IT Audit
Required skills
IT and cybersecurity risk management, controls, and governance frameworks (NIST, ISO, COBIT, COSO), cloud environment auditing (AWS, Azure, SaaS), identity and access management (IAM, PAM, SSO, MFA), network and endpoint security, vulnerability and patch management, secure development practices (SDLC, Agile, DevOps, DevSecOps), data governance and protection (encryption, classification, DLP), disaster recovery and ransomware readiness, data analytics (Excel, Power BI, Tableau), stakeholder communication, audit testing and workpaper maintenance.
Preferred skills
Professional certifications (CISSP, CISA), exposure to GenAI and AI-driven tools (Microsoft Copilot).
Technologies
AWS, Azure, Copilot, DevSecOps, DevOps, Excel, IAM, Power BI, Tableau, Network Security
Responsibilities
Plan audit scope through process review, risk assessment, and control mapping; assess cybersecurity governance, cloud security, IAM, infrastructure security, and data protection controls; examine vulnerability management, secure development practices, and system change management; perform audit testing and maintain high-quality workpapers; translate technical findings into business insights and recommendations; communicate with stakeholders across Cyber, Technology, Data, and Product teams; draft audit observations and support remediation activities; track and validate remediation actions; use data analytics and automation tools to improve audit efficiency.
Seniority
Senior, hands-on IC