Senior Internal Auditor - Information Security Audit

Q2 India

Bengaluru

Hybrid

INR 1,600,000 - 2,600,000

Full time

9 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid Work Opportunities
Flexible Time Off
Health & Wellness Benefits
Parental Leave

Job summary

Q2 India is seeking an experienced IT Internal Auditor to lead risk-based IT audit engagements aligned with regulatory frameworks like SOX, NIST, and FFIEC. The role focuses on auditing complex IT environments, cybersecurity, governance, and technology risk within a SaaS context.

The Senior IT Internal Auditor will manage stakeholder relationships end-to-end, drive audits across Azure/AWS cloud, data protection, third-party risk, and IT operations, and deliver value-added insights to improve

Qualifications

  • Bachelor's degree in IT/CS or related field.
  • 5–8 years of IT audit, cybersecurity, or related experience in financial services or SaaS.
  • Experience leading end-to-end IT audits and coordinating with stakeholders.

Responsibilities

  • Lead high-impact IT audits aligned with regulatory frameworks (SOX, NIST, FFIEC).
  • Evaluate IT risks, control maturity, and provide risk advisory to leadership.
  • Coordinate with Accounting, IT, Security, Compliance, Legal, and Engineering teams; communicate findings clearly.

Skills

IT Audit
Cybersecurity
Stakeholder Management
SOX/FFIEC/NIST
Cloud Security (Azure/AWS)
Data Analytics (Power BI)

Education

Bachelor's degree in IT/CS
CISSP/CFE/CFSA/CMA

Tools

AuditBoard
ACL
Power BI
Tableau
Excel

Job description

Why Join Q2?

As passionate about our people as we are about our mission. Q2 is a leading provider of digital banking and lending solutions to banks, credit unions, alternative finance companies, and fintechs in the U.S. and internationally. Our mission is simple: build strong and diverse communities through innovative financial technology—and we do that by empowering our people to help create success for our customers.

What Makes Q2 Special?

Being as passionate about our people as we are about our mission. We celebrate our employees in many ways through our year-round Q2 ChangeMakers awards program and global moments of recognition and connection. We invest in the growth and development of our team members through ongoing learning opportunities, internal mobility, and meaningful leadership relationships. We also know that nothing builds trust and collaboration like having fun and giving back together. From company-wide volunteer days to events like our Q2 Homecoming Week—featuring learning, community service, and culture-building experiences—we create opportunities to connect, grow, and make an impact.

SUMMARY

This position is an individual contributor within the Internal Audit Team responsible for leading and executing high-impact, risk-based IT audit engagements aligned with regulatory frameworks (e.g., SOX, FFIEC, NIST) and organizational priorities. The ideal candidate will possess extensive experience auditing complex IT environments, supported by a strong foundation in cybersecurity, IT governance, and technology risk. They should have proven expertise in independently leading audit walkthroughs, managing stakeholder relationships end-to-end, coordinating and communicating audit requests effectively, and driving collaboration to ensure audits are executed efficiently and deliver value-added insights and outcomes. This role contributes to the annual IT audit plan by assessing risk, planning and scoping audits, and delivering assurance and advisory services across areas including financial reporting, cloud computing (mainly Azure and AWS), data protection, third‑party risk, and IT operations. The Senior IT Internal Auditor will collaborate with stakeholders across Accounting, Technology, Information Security, Risk, and Compliance to drive risk mitigation and control improvement efforts.

RESPONSIBILITIES
  • Execute SOX IT and information systems testing program, including conducting walkthroughs, understanding processes and procedures, policies, analysing audit evidence, executing controls testing, identifying and defining issues or recommendations, effectively communicating and managing stakeholders of audit program and managing the documentation at each step of audit phases.
  • Experience in conducting audits that involve IT technical areas such as IT infrastructure controls around network security, business resiliency (BCP/DR), configuration management, AWS/Azure cloud infrastructure and security controls along with basic cybersecurity related controls in line with NIST framework.
  • Support the creation of status reports and planning materials assist with overall and collaborate closely with internal and external stakeholders for the IT Program.
  • Perform the end‑to‑end planning, execution, and reporting with the IT Internal Audit Manager of risk‑based IT audit engagements across domains such as: Information Security Program, Network & System Security, Business Continuity and Disaster Recovery (BC/DR), Change Management and Software Development Lifecycle (SDLC), Cloud Security Controls (specifically Azure and AWS), Identity & Access Management (IAM), IT Operations and Asset Management, Privacy and Data Protection, Third‑Party Risk Management (TPRM).
  • Evaluate IT risks, control maturity, and alignment with regulatory expectations.
  • Provide risk advisory and control consultation to IT and business leadership on strategic technology initiatives, regulatory obligations, and emerging threats.
  • Collaborate closely with cross‑functional stakeholders, including Accounting, Information Security, Compliance, Legal, and Engineering teams, to understand business processes and evaluate control effectiveness.
  • Develop and deliver clear, concise, risk‑focused audit reports dealing with complex and sensitive issues, including findings, root‑cause analysis, and actionable, in a timely manner for internal and external audiences.
  • Complete assigned responsibilities following audit standards.
  • Partner with internal and external audit teams to ensure a timely and efficient testing approach and issue resolution.
  • Monitor and validate the implementation of management action plans and ensure sustainable remediation of control issues.
  • Support new system implementations and ensure compliance with existing policies.
  • Conduct risk assessments, including the identification of controls and testing attributes.
  • Contribute to the development and evolution of the IT audit program, including risk assessment methodology, audit universe updates, and use of data analytics.
  • Act as a key liaison to internal and external auditors, examiners, and other assurance functions to ensure coordinated risk coverage and alignment.
  • Excellent time management and organizational skills, with the ability to support multiple projects, work both independently and collaboratively within the team and effectively prioritize and manage a large volume of work.
EDUCATIONAL REQUIREMENT & QUALIFICATION

Education and qualification: Bachelor's degree with 5‑8 years of experience in IT audit, internal audit, cybersecurity, financial services, or a related business function; 3+ years of direct experience in IT audit for a SaaS company or equivalent IT audit experience at a top‑tier firm (Big 4, RSM, Protiviti, etc.); 2+ years of experience leading end‑to‑end engagements and/or leadership experience within the information technology or security fields. Certifications combined with hands‑on experience in AWS/Azure cloud infrastructure and security. Certifications combined with hands‑on experience in cybersecurity auditing against popular frameworks such as NIST CSF. Demonstrated knowledge of internal controls, business risks and audit techniques in a large SaaS organization. Demonstrated knowledge of SOC1 and SOC2 requirements. Knowledge of data analytics tools such as ACL, Power BI, or Tableau and proficiency in Microsoft Excel, Word, Outlook, used for issue identification and trend monitoring. Experience with AuditBoard or other audit engagement support tools. Maintains other designations including Certified Management Accountant (CMA), Certified Fraud Examiner (CFE), Certified Information Security Systems Professional (CISSP), Certified Financial Services Auditor (CFSA), or other relevant business designation. Strong knowledge of internal audit methodologies, including experience leading audit projects in accordance with the Institute of Internal Auditors (IIA) Global Standards. Superior interpersonal, written, and verbal communication skills, with the ability to create thorough documentation and interface effectively with individuals at various levels. Ability to remain organized, pay strict attention to detail, and meet critical deadlines within a high volume, fast‑paced environment. This position requires fluent written and oral communication in English.

Health & Wellness
  • Hybrid Work Opportunities
  • Flexible Time Off
  • Career Development & Mentoring Programs
  • Health & Wellness Benefits, including competitive health insurance offerings and generous paid parental leave for eligible new parents
  • Community Volunteering & Company Philanthropy Programs
  • Employee Peer Recognition Programs – “You Earned it”
Our Culture & Commitment

We’re proud to foster a supportive, inclusive environment where career growth, collaboration, and wellness are prioritized. And our benefits go beyond healthcare—offering resources for physical, mental, and professional well‑being. Q2 employees are encouraged to give back through volunteer work and nonprofit support through our Spark Program (see more). We believe in making an impact—in the industry and in the community.

We are an Equal Opportunity Employer.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, or veteran status.

Mission

Q2’s mission is to build strong and diverse communities by strengthening their financial institutions. That mission shapes the technology we build, how we serve our customers, and how we show up for each other.

Vision

We started with a straightforward belief: technology could fundamentally change how financial institutions serve their communities. More than 20 years later, that belief still drives us. Q2 delivers digital banking and lending solutions that help financial institutions deepen relationships, improve experiences, and grow. Across every department and region, Q2 team members bring creativity, collaboration, and purpose to building technology that makes banking stronger, easier, and more human.

Culture & Values

Q2’s culture is built by Q2ers and grounded in ten guiding principles that define how we show up for each other, our customers, and our communities. We take our mission seriously. We also have fun doing it. Teams across the company work together to solve hard problems, move quickly, and make a real impact on the financial institutions and communities we serve. We’re also helping shape how AI is applied in financial services, bringing the same disciplined, banking‑first approach Q2 has practiced for more than 20 years to this next chapter of innovation.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Internal Auditor - Information Security Audit
Senior Internal Auditor - Information Security Audit

Q2 • Bengaluru

Hybrid
INR 1,800,000 - 3,000,000
Hybrid Work Opportunities
Flexible Time Off
Career Development & Mentoring Program
+3
Senior Staff Software Engineer
Senior Staff Software Engineer

Q2 India • Bengaluru

On-site
INR 3,800,000 - 7,000,000
Hybrid Work Opportunities
Flexible Time Off
Mentoring & Career Development
+3
Q2 - Manager - Software Engineering
Q2 - Manager - Software Engineering

MFIFLEX TECHNOLOGIES PRIVATE LIMITED • Bengaluru

Hybrid
INR 3,500,000 - 5,000,000
Hybrid Work Opportunities
Health Insurance
Paid Time Off
Intermediate Software Engineer
Intermediate Software Engineer

Q2 • Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Hybrid work opportunities
Flexible time off
Career development & mentoring
+2
Software Engineering Manager
Software Engineering Manager

Q2 • Bengaluru

On-site
INR 4,000,000 - 6,500,000
Q2 - Senior Software Engineer
Q2 - Senior Software Engineer

MFIFLEX TECHNOLOGIES PRIVATE LIMITED • Bengaluru

On-site
INR 1,600,000 - 2,800,000
Health & Wellness
Hybrid Work Opportunities
Flexible Time Off
+5
Q2 - Senior Software Engineer - Performance Testing
Q2 - Senior Software Engineer - Performance Testing

MFIFLEX TECHNOLOGIES PRIVATE LIMITED • Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Hybrid work opportunities
Flexible time off
Career development programs
+1
IT Audit - Global Markets, Assistant Vice President
IT Audit - Global Markets, Assistant Vice President

State Street • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Q2 is Hiring | Software Engineer
Q2 is Hiring | Software Engineer

Frequent Jobs • Bengaluru

On-site
INR 700,000 - 800,000
Senior Lead Information Security Analyst
Senior Lead Information Security Analyst

Billtrust • Hyderabad

On-site
INR 300,000 - 600,000