Internal Audit Manager - IT

Kredivo Group

Cikoko

On-site

IDR 400,000,000 - 700,000,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Kredivo Group is seeking an experienced Internal Audit Manager with strong IT audit, payment systems, and technology risk expertise to lead risk-based audits across our technology infrastructure, payment platforms, cybersecurity, and operations.

You will partner with business, technology, risk, and compliance teams to identify top risks, test controls, and deliver pragmatic recommendations that strengthen the control environment and ensure alignment with Bank Indonesia regulations and industry

Qualifications

  • Bachelor’s degree in IT-related field.
  • Minimum 5 years in IT audit or payment systems audit.
  • 2–3 years in managerial or lead auditor role.
  • Certified ISO 27001:2022 ISMS is required.
  • Experience with Bank Indonesia regulations and regulatory examinations preferred.
  • Proficient in Bahasa Indonesia and English.

Responsibilities

  • Lead IT Risk-Based Audit Plan covering critical technology and payment infrastructure.
  • Lead audits across core payment systems, cloud infrastructure, databases, networks, APIs, and payment gateway integrations.
  • Assess the effectiveness of information security controls, including ISO 27001/ISMS, vulnerability management, penetration testing, IAM, and cyber resilience.
  • Review SDLC practices, security testing, and change management controls.
  • Evaluate BCP/DRP to assess resilience and availability of payment services.
  • Deliver end-to-end audit process: risk assessment, fieldwork, reporting, and follow-up.

Skills

IT Audit
Payment Systems
Technology Risk
Stakeholder Management
Data Analytics
GRC

Education

Bachelor's degree in Information Systems/Computer Science/IT

Tools

SQL
Python
ISO 27001
PCI-DSS

Job description

We are looking for an experienced Internal Audit Manager with strong expertise in IT Audit, Payment Systems, and Technology Risk to join our team. In this role, you will lead risk-based internal audit activities across our technology infrastructure, payment systems, cybersecurity, and payment operations. You will work closely with business, technology, risk, and compliance stakeholders to identify key risks, assess the effectiveness of controls, and provide practical recommendations that strengthen our overall control environment. You will also play an important role in ensuring that our technology and payment operations remain aligned with applicable Bank Indonesia (BI) regulations and industry standards, while supporting the organization in maintaining secure, resilient, and reliable payment services.

About The Job
Lead IT & Technology Audits
  • Develop and execute an annual IT Risk-Based Audit Plan covering critical technology and payment infrastructure.
  • Lead audits across core payment systems, cloud infrastructure, databases, networks, APIs, and payment gateway integrations.
  • Assess the effectiveness of information security controls, including ISO 27001/ISMS, vulnerability management, penetration testing, Identity & Access Management (IAM), and cyber resilience.
  • Review System Development Life Cycle (SDLC) practices, security testing, and change management controls to ensure appropriate governance before production deployment.
  • Evaluate and test Business Continuity Plans (BCP) and Disaster Recovery Plans (DRP) to assess the resilience and availability of critical payment services.
Audit Payment Systems & Operations
  • Conduct end-to-end audits of payment transaction flows, including issuing, acquiring, switching, clearing, and settlement.
  • Assess the effectiveness of fund management processes, including source-of-funds administration, floating fund reconciliation, and settlement to merchants and business partners.
  • Review payment operations to identify control gaps, operational risks, and opportunities to improve process effectiveness.
  • Evaluate fraud prevention and detection controls, including Fraud Detection Systems (FDS), transaction risk management, and dispute/chargeback management.
Strengthen Regulatory Compliance & Governance
  • Assess compliance of technology and payment operations with applicable Bank Indonesia regulations and requirements, including those relating to Payment Service Providers (PJP), the National Payment System, IT risk management, AML/CFT (APU-PPT), and personal data protection.
  • Support regulatory and certification audits, including Bank Indonesia examinations, ISO 27001, and PCI-DSS assessments.
  • Translate regulatory and audit requirements into practical control improvements across the organization.
Deliver High-Impact Audit Insights
  • Lead the end-to-end audit process, from risk assessment and audit planning through fieldwork, reporting, and follow-up.
  • Prepare clear, objective, and actionable audit reports highlighting key risks, root causes, and recommendations.
  • Present significant audit findings and insights to Senior Management, the Board of Directors, and the Audit Committee.
  • Work collaboratively with relevant stakeholders to agree on Corrective Action Plans (CAPs) and monitor remediation progress.
  • Use data-driven audit techniques to analyze transaction data, identify anomalies, and enhance audit effectiveness.
About You
  • Bachelor's degree in Information Systems, Computer Science, Information Technology, Accounting Information Systems, or a related field.
  • Minimum of 5 years of work experience in IT Audit, Payment Systems Audit, IT Governance, GRC, or a related field.
  • 2-3 years of experience at Manager, Assistant Manager, or Lead Auditor level, preferably within a Payment Service Provider (PJP), fintech, banking, switching, or payment gateway environment.
  • Hands-on experience in auditing payment systems, technology infrastructure, cybersecurity, and/or technology risk.
  • Experience leading or participating in Bank Indonesia regulatory examinations and ISO 27001 / PCI-DSS certification audits is highly preferred.
  • Certified ISO 27001:2022 Information Security Management Systems is required.
  • Deep understanding of payment system architecture and operations, particularly PJP Category 1, including electronic money, fund transfers, payment gateways, reconciliation, and settlement.
  • Strong understanding of applicable Bank Indonesia regulations related to payment system operations, cybersecurity and resilience, IT risk management, and AML/CFT.
  • Strong communication and stakeholder management skills, with the confidence to engage with both technical and business teams.
  • Excellent written and verbal communication skills both in Bahasa Indonesia and English
  • Comfortable working in a fast-paced and evolving environment where technology and payment processes continuously change.
  • Additional certifications such as CISA (Certified Information Systems Auditor), CRISC, CISM, CIA/QIA, or CFE are a plus.
  • Familiarity with programming languages and automation tools (e.g., SQL, Python) for data analytics and audit automation
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Internal Audit Manager - IT
Internal Audit Manager - IT

Kredivo • Jakarta Pusat

On-site
IDR 700,000,000 - 1,200,000,000
Internal Audit Manager - IT
Internal Audit Manager - IT

Kredivo Group • Jakarta Pusat

On-site
IDR 400,000,000 - 700,000,000
IT Audit Officer
IT Audit Officer

PT Bank Multiarta Sentosa • Jakarta Utara

On-site
IDR 180,000,000 - 320,000,000
Internal Audit Senior Specialist
Internal Audit Senior Specialist

IBMC • Jakarta Selatan

On-site
IDR 446,400,000 - 669,600,000
Lead Internal Auditor - IT - Payment
Lead Internal Auditor - IT - Payment

Lever, Inc. • Jakarta Pusat

On-site
IDR 480,000,000 - 750,000,000
IT Internal Audit
IT Internal Audit

OttoDigital Group • Jakarta Pusat

On-site
IDR 1,800,000,000 - 3,000,000,000
IT & Payment Systems Audit Manager
IT & Payment Systems Audit Manager

Kredivo Group • Cikoko

On-site
IDR 400,000,000 - 700,000,000
Manager Internal Audit
Manager Internal Audit

Pengiklan Anonim • Jakarta Utara

On-site
IDR 300,000,000 - 600,000,000
Internal Auditor - IT
Internal Auditor - IT

FinAccel • Jakarta Pusat

On-site
IDR 180,000,000 - 320,000,000
Junior IT Governance
Junior IT Governance

Cermati Fintech Group • Jakarta Pusat

On-site
IDR 334,800,000 - 613,800,000