We are seeking an experienced IT Audit leader with deep technical expertise across cybersecurity, artificial intelligence, cloud infrastructure, and emerging technology risks.
This is a highly hands-on leadership position within a lean audit team. The successful candidate will lead complex technology audits from planning through reporting while remaining directly involved in technical testing and risk assessment. You will work closely with technology leaders, business stakeholders, audit professionals, and technical subject-matter experts.
The role requires someone who can operate at both the strategic and technical levels: developing audit strategies and emerging-risk perspectives while also understanding the underlying technology well enough to challenge technical teams and perform sophisticated audit procedures.
This is a hybrid position requiring at least three days per week in the office.
Key Responsibilities
- Lead complex IT audits involving cybersecurity, artificial intelligence, cloud infrastructure, technology resiliency, systems architecture, and related emerging technologies.
- Develop audit scopes, risk assessments, testing strategies, project plans, and reporting deliverables.
- Perform hands-on technical audit testing across complex technology environments.
- Identify significant technology risks and evaluate their potential business impact.
- Participate in annual audit planning and help establish priorities around emerging technology and IT risks.
- Lead walkthroughs, evaluate controls and processes, document conclusions, and develop clear audit findings and recommendations.
- Present audit results and risk insights to management and technology stakeholders.
- Develop perspectives and points of view on emerging areas such as AI, cybersecurity, cloud, and resiliency.
- Manage audit projects while providing direction, coaching, and constructive feedback to other auditors.
- Mentor team members and help strengthen their technical, analytical, and audit capabilities.
- Build productive relationships with technology leaders and business partners.
- Apply data analytics, automation, and AI tools to improve audit effectiveness and efficiency.
- Identify innovative approaches to technical testing and help advance audit methodologies.
- Stay current with rapidly evolving technologies, architectures, and associated risks.
Required Qualifications
- At least 8 years of experience in IT Audit, IT Risk Management, or Information Security.
- Significant hands-on experience auditing complex technology environments.
- Deep technical expertise in one or more of the following: cybersecurity, artificial intelligence, cloud infrastructure, systems architecture, or information security.
- Experience with cloud technologies such as Amazon Web Services.
- Strong project management and audit leadership capabilities.
- Previous experience coaching, mentoring, and providing feedback to audit professionals.
- Excellent written and verbal communication skills, including the ability to communicate effectively with highly technical audiences.
- Strong critical-thinking and risk-assessment capabilities.
- Experience developing and implementing data visualizations and analyzing complex datasets.
- Experience with analytics and visualization tools such as Power BI, Tableau, Plotly, or Seaborn.
- Programming/data analytics experience using Python and related libraries or platforms such as SciPy, NumPy, or PySpark.
- Experience applying AI solutions to improve audit execution and efficiency.
- Demonstrated experience assessing AI solutions and associated risks.
- Understanding of agentic AI architectures and their related risks.
- Ability to learn and apply new technologies while assessing their associated risks and controls.
Preferred Qualifications
- 10+ years of experience in IT Audit, IT Risk Management, or Information Security.
- 5+ years of dedicated IT Audit experience.
- Experience performing internal audit within a large, complex organization.
- Experience in a Director or Manager-level IT Audit, infrastructure audit, cybersecurity audit, or related leadership position.
- Bachelor's degree or equivalent professional experience.
- Master's degree or MBA in Computer Science, Information Systems, Cybersecurity, Mathematics, or a related discipline.
- Professional certification such as CISA, CISSP, CEH, CRISC, or CISM.