10390- Auditor, Integrated Risk Management (SSRM)

Hyundai Autoever America

Irvine (CA)

On-site

USD 84,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Hyundai AutoEver America is seeking a Technology Auditor to strengthen our control testing and validation program across the enterprise technology stack in Irvine, CA. You will design and execute risk-based testing, covering cloud, networks, applications, and infrastructure, and deliver clear results to technology and risk stakeholders.

You will work with control owners, engineers, and risk leaders to verify controls are designed and operating effectively, identify gaps, and drive remediation

Qualifications

  • Bachelor’s degree in information systems, cybersecurity, IT, CS or related field; 5+ years in technology audit or risk.
  • Proven experience with control testing, sampling, and evidence standards across tech domains.
  • Strong documentation to produce audit-ready workpapers and test results.
  • Ability to translate technical details into clear risk statements and remediation steps.

Responsibilities

  • Develop and maintain a control testing and validation plan aligned to risk landscape.
  • Execute testing across cloud, infrastructure, networks, apps, IAM, and SDLC controls.
  • Inspect configurations, logs, tickets, and pipeline artifacts to validate controls.
  • Identify gaps, assess risk, and provide remediation guidance and root-cause analysis.
  • Produce concise test results, summaries, and metrics for IRM leadership.

Skills

Stakeholder management
Documentation
Communication skills
GRC tooling
Controls testing

Education

Bachelor’s degree in Information Systems, Cybersecurity, Information Technology, Computer Science or related field
Master’s degree in Cybersecurity, Information Technology, Computer Science or related discipline

Tools

GRC tooling

Job description

Technology Auditor, Integrated Risk Management
Company Overview

Hyundai AutoEver America (HAEA), the dynamic IT powerhouse behind Hyundai Motor Corporation, a Fortune 500 global leader in the automotive industry. As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia, Genesis, Hyundai Translead, Hyundai Mobis, Hyundai Capital, and Glovis. HAEA offers a truly global and collaborative environment.

Here, you’ll drive innovation, boost operational efficiency, and help shape the future of mobility for the Hyundai Motor Group. At HAEA, we understand that IT is the cornerstone of today’s fast-evolving digital world. By uniting all IT resources under one roof, we deliver consistent, top-quality solutions while serving as the crucial information link between Hyundai’s Global Headquarters and North American operations.

If you’re passionate about technology and eager to make a real impact at a world-class company, Hyundai AutoEver America is the place to grow your career. Join us and be part of the transformation that’s driving the future of automotive innovation.

What You Will Be Doing:

We are hiring a Technology Auditor to strengthen our control testing and validation capability across the enterprise technology environment. In this role, reporting to the Technology Audit Manager, you will design and execute a risk-based control testing program across the technology stack—including cloud, applications, infrastructure, networks, identity, and security tooling—and provide clear, actionable results to technology and risk stakeholders.

You’ll partner closely with control owners, engineers, and risk leaders to validate that controls are designed effectively and operating as intended, and to drive sustainable remediation where gaps are identified.

The key responsibilities of this role are as described below:
  • Develop and maintain a control testing & validation plan aligned to the organization’s technology risk landscape, including scope, frequency, methodology, and sampling approaches.
  • Execute control design and operating effectiveness testing across technology domains (e.g., cloud, infrastructure, network, application, SDLC, IAM, logging/monitoring, vulnerability management, backup/DR). Create testing procedures and workpapers that are repeatable, audit-ready, and defensible; ensure evidence is complete, accurate, and traceable.
  • Perform walkthroughs and interviews with technology stakeholders to confirm control intent, ownership, and implementation details.
  • Validate control implementation technically (where applicable) by inspecting configurations, system settings, logs, tickets, and pipeline artifacts (e.g., CI/CD).
  • Identify control gaps and root causes, assess risk impact, and provide clear recommendations and remediation guidance.
  • Track and validate remediation activities and re-test controls to confirm closure. Produce concise reporting (test results, summaries, themes, and metrics) for IRM leadership and customers.
  • Support internal/external audits and regulatory inquiries by providing documentation, testing artifacts, and control narratives.
  • Continuously improve the control testing program through standardization, automation opportunities, and alignment to evolving technology.
Control Domains You May Cover:
  • Cloud governance and security (e.g., AWS/Azure/GCP controls, configuration baselines) Identity & access management (SSO, MFA, privileged access, joiner/mover/leaver)
  • Network security (segmentation, firewall rule governance, secure remote access) Infrastructure and endpoint controls (hardening, patching, EDR)
  • Application controls (secure configuration, change management, access controls)
  • SDLC / DevSecOps controls (code scanning, approvals, pipeline controls, secrets management)
  • Logging, monitoring, incident response integration Vulnerability management (scanning, remediation SLAs, exception handling)
Basic Qualifications:
  • Bachelor’s degree in Information Systems, Cybersecurity, Information Technology, Computer science or a related field or equivalent work experience AND 5+ years of experience in technology audit, technology risk, or control testing/assurance.
  • Proven experience performing control testing and validation (design and operating effectiveness), including sampling and evidence standards, across a broad spectrum of technology domains.
  • Demonstrated strong documentation skills with the ability to produce audit-ready workpapers, test scripts, and results.
  • Strong stakeholder management with the ability to work effectively with engineers, control owners, leadership and customers.
  • Knowledge of GRC tooling and workflows. Language Skills: Excellent stakeholder management and communication skills.
  • Ability to translate technical details into clear risk statements, issues, and practical remediation recommendations.
Preferred Qualifications:
  • Master’s degree in Cybersecurity, Information Technology, Computer Science or a related discipline or equivalent work experience AND 5+ years of experience as a Technology Auditor at a large professional services firm (e.g., Big 4 or similar) or comparable complex enterprise environment.
  • Familiarity with control frameworks and standards such as COSO, COBIT, NIST, ISO 27001, and/or SSAE 16 requirements.
  • Industry-recognized credentials such as CISSP, CISM, CISA are highly desirable.
Team Culture:

The team fosters a high-performance, collaborative environment centered around proactive technology risk management and excellent customer service. Members are expected to lead with accountability, communicate effectively across functions, and adapt to dynamic challenges. The culture values technical excellence, continuous improvement, and global coordination, ensuring technology risks are well managed.

Base Salary Range: $83,940 - $120,032

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

10390- Auditor, Integrated Risk Management (SSRM)
10390- Auditor, Integrated Risk Management (SSRM)

Hyundai Autoever America • Irvine (CA)

On-site
USD 84,000 - 120,000
Sr. Risk Operation Analyst – Integrated Risk Management “IRM”
Sr. Risk Operation Analyst – Integrated Risk Management “IRM”

Hyundai Autoever America • Irvine (CA)

On-site
USD 120,000 - 170,000
Technology Auditor — Integrated Risk & Controls
Technology Auditor — Integrated Risk & Controls

Hyundai Autoever America • Irvine (CA)

On-site
USD 84,000 - 120,000
Tech Auditor – Integrated Risk Management
Tech Auditor – Integrated Risk Management

Hyundai Autoever America • Irvine (CA)

On-site
USD 84,000 - 120,000
10734 - Executive Principal, Finance (Controller)
10734 - Executive Principal, Finance (Controller)

Hyundai Autoever America • Irvine (CA)

On-site
USD 152,000 - 220,000
10244 - Cloud Security Engineer SAE
10244 - Cloud Security Engineer SAE

Hyundai Autoever America • Irvine (CA)

On-site
USD 97,000 - 138,000
10037 - Sr. Manager, IT Service Management
10037 - Sr. Manager, IT Service Management

Hyundai Autoever America • Irvine (CA)

On-site
USD 175,000 - 190,000
Professional growth opportunities
Agile work environment
Team collaboration focus
10760 – Senior Accountant II
10760 – Senior Accountant II

Hyundai AutoEver America • Irvine (CA)

On-site
USD 90,000 - 105,000
Comprehensive medical/dental coverage
Generous PTO
Education assistance
+1
10755 - Sr. Business Process Analyst (Corporate Planning)
10755 - Sr. Business Process Analyst (Corporate Planning)

Hyundai Autoever America • Irvine (CA)

On-site
USD 103,000 - 159,000
Medical/dental coverage
Paid time off (PTO)
Education assistance
20167 - Security Engineer III
20167 - Security Engineer III

Hyundai Autoever America • Savannah (GA)

On-site
USD 79,000 - 108,000
Medical and dental coverage
Generous PTO
Education assistance
+1