Location: Washington, DC
Direct Hire
No C2C or third-party candidates accepted at this time
Position Overview
We are seeking an experienced IT Audit Director – Cybersecurity, AI & Cloud to provide technical and strategic leadership across complex technology audits involving artificial intelligence, cybersecurity, cloud infrastructure, IT governance, resiliency, operating systems, and enterprise technology platforms.
This is a hands‑on leadership position for someone who can take ownership of sophisticated technology audits from planning through execution and reporting while also serving as a technical authority, mentor, and trusted advisor.
The successful candidate will combine deep IT Audit, IT Risk, or Information Security expertise with current knowledge of emerging technologies. Particular emphasis will be placed on AI and agentic AI risk, cybersecurity, cloud environments such as AWS, data analytics, and technology resiliency.
Key Responsibilities
- Lead and oversee complex technology audits involving:
- Artificial Intelligence and Agentic AI
- Cybersecurity
- Cloud infrastructure
- IT governance
- Operating systems and enterprise infrastructure
- Own audits and technical reviews from planning and risk assessment through testing, reporting, and final recommendations.
- Apply specialized technical expertise to evaluate complex technology environments and controls.
- Identify current and emerging technology risks and assess their potential organizational impact.
- Determine areas requiring deeper analysis and adjust audit approaches based on identified risk.
- Participate in annual audit planning with a focus on significant and emerging IT risks.
- Develop innovative audit and testing approaches for complex technical environments.
- Perform hands‑on testing of highly technical subject areas rather than functioning solely as a people manager.
- Provide project management and technical oversight to IT Audit team members.
- Set audit direction and review testing approaches and completed work.
- Coach, mentor, and provide actionable feedback to audit professionals.
- Develop points of view and risk assessments covering emerging areas such as AI, cybersecurity, cloud, and resiliency.
- Serve as a subject matter resource for complex technical domains.
- Build and maintain strong relationships with technology and business leadership.
- Communicate audit findings, technical risks, and recommendations effectively to both technical and non‑technical stakeholders.
- Identify opportunities to incorporate data analytics, automation, and AI into audit testing and execution.
- Personally develop and execute analytics while helping other team members expand their technical capabilities.
- Promote innovative approaches that improve audit efficiency, effectiveness, and risk visibility.
Required Qualifications
- 8+ years of experience in IT Audit, IT Risk Management, Information Security, or a closely related discipline.
- Expert‑level knowledge in one or more of the following:
- Cybersecurity
- Cloud infrastructure and security
- Strong understanding of cloud technologies, particularly Amazon Web Services (AWS) or comparable cloud platforms.
- Experience leading complex technology audits or risk assessments.Strong project management and audit execution skills.
- Previous experience coaching, mentoring, and providing feedback to audit professionals.
- Ability to communicate effectively with highly technical subject matter experts.
- Excellent written, verbal, and executive‑level communication skills.
- Strong critical‑thinking and risk‑analysis abilities.
Data Analytics
- Strong experience identifying, designing, and implementing data visualizations.
- Experience with visualization and analytical tools such as:
- Power BI
- Tableau
- Plotly
- Seaborn
- Programming and data analytics experience using Python.
- Experience with technologies and libraries such as SciPy, NumPy, and/or PySpark.
- Experience using AI solutions to improve audit effectiveness and efficiency.
- Demonstrated experience auditing AI solutions and evaluating AI‑related risks.
- Knowledge of agentic AI architectures and associated risks.
- Ability to evaluate emerging AI technologies from technology‑risk, cybersecurity, governance, and audit perspectives.
- Demonstrated curiosity and adaptability in learning and responsibly applying emerging technologies.
Preferred Qualifications
- 10+ years of experience in IT Audit, IT Risk Management, or Information Security.
- 5+ years specifically within IT Audit.
- Bachelor’s degree or equivalent professional experience.
- Master’s degree or MBA in a relevant discipline preferred, including:
- Computer Science
- Information Systems
- Cybersecurity
- Mathematics
- Related technical disciplines
- One or more relevant professional certifications preferred:
- CISA
- CISSP
- CISM
- CRISC
- CEH
Ideal Candidate
The ideal candidate is not simply a traditional IT auditor or people manager. We are looking for someone who remains technically hands‑on and can independently evaluate sophisticated technology environments while leading other audit professionals.
Strong candidates will have a combination of IT Audit, cybersecurity, cloud, and emerging AI risk expertise, with the ability to examine technologies at a meaningful technical depth and translate those findings into business and enterprise risk.
Experience assessing AI/ML systems, generative AI, agentic AI architectures, cloud infrastructure, cybersecurity controls, and technology resiliency will be especially valuable.
This individual should be equally comfortable reviewing technical controls and analyzing data, challenging technical SMEs, coaching audit staff, and communicating risk to senior leadership.