Senior Manager Technology & Cybersecurity Audit

Eleo

Hartford (CT)

On-site

USD 140,000 - 200,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Eleo is seeking a Senior Manager, Cybersecurity & Technology Audit to lead the cybersecurity and technology risk component of the annual, risk-based Internal Audit plan from Hartford, CT. You will act as the subject matter expert for cybersecurity, advise on emerging technologies, and coordinate external audit support as needed.

You will drive independent assessments of cybersecurity governance, control effectiveness, and resilience across cloud, network, identity management, third-party risk,

Qualifications

  • Bachelor’s degree in cybersecurity, information systems, computer science, IT, engineering, accounting, or a related discipline.
  • At least one relevant certification such as CISA, CISSP, CISM, CRISC or CIA.
  • Additional certifications such as CCSP, GIAC, CEH, Security+, or relevant cloud security credentials preferred.

Responsibilities

  • Lead cybersecurity and technology risk components of the annual, risk-based Internal Audit plan.
  • Serve asInternal Audit’s subject matter expert for cybersecurity, technology risk, and emerging technologies.
  • Identify and assess evolving cyber, technology, regulatory, operational, and emerging risks.
  • Monitor external threat landscape, regulatory developments, and technology trends to maintain audit coverage.
  • Coordinate specialist, co-sourced, and external audit support as required.
  • Develop audit scopes, methodologies, and work programs for cybersecurity and technology risk engagements.
  • Lead planning, fieldwork, and execution of complex audits and advisory reviews.
  • Evaluate preparedness for cyber incidents, including incident response and disaster recovery.
  • Prepare executive-level reports outlining risks, gaps, and practical recommendations.
  • Mentor Internal Audit professionals and serve as the department’s technical resource for cybersecurity and technology risk.

Skills

Cybersecurity governance
Cloud security
IT risk management
SOX ITGC
Risk advisory
Data analytics
Stakeholder management

Education

Bachelor's degree in cybersecurity / information systems / CS / IT / engineering / accounting
CISA, CISSP, CISM, CRISC or CIA certification
CCSP, GIAC, CEH, Security+ or cloud security credentials preferred

Tools

NIST CSF
ISO 27001
CIS Controls
COBIT

Job description

Senior Manager, Cybersecurity & Technology Audit
Overview

The Senior Manager, Cybersecurity & Technology Audit provides senior leadership within Internal Audit, delivering independent assurance and advisory services across the organization’s cybersecurity, technology risk, and digital transformation landscape.

The role serves as Internal Audit’s subject matter expert for cybersecurity and technology risk, partnering with the VP of IT and senior business leaders to assess cyber resilience, technology governance, security controls, and emerging technology risks.

The Senior Manager leads complex cybersecurity and technology audits, advises on strategic technology initiatives, and helps strengthen the organization’s overall cyber and technology risk posture while maintaining Internal Audit independence.

Key Responsibilities
Cybersecurity & Technology Risk
  • Lead the cybersecurity and technology risk component of the annual, risk-based Internal Audit plan
  • Serve as Internal Audit’s subject matter expert for cybersecurity, technology risk, and emerging technologies
  • Identify and assess evolving cyber, technology, regulatory, operational, and emerging risks
  • Monitor the external threat landscape, regulatory developments, and technology trends to maintain relevant audit coverage
  • Coordinate specialist, co-sourced, and external audit support as required.
Cybersecurity Assurance
  • Lead independent assessments of cybersecurity governance, control effectiveness, and resilience across areas includiing:
  • Security governance and operations
  • Identity and privileged access management
  • Cloud, network, infrastructure, and endpoint security
  • Vulnerability management and threat detection
  • Incident response and ransomware preparedness
  • Data protection and encryption
  • Third-party and supply chain cyber risk
  • Disaster recovery and business continuity
  • AI governance and security
  • Secure software development and DevSecOps
  • Operational Technology (OT/ICS), where applicable
  • Evaluate cybersecurity programs against leading frameworks such as NIST CSF, NIST 800-53, ISO 27001, CIS Controls, COBIT, and applicable regulations.
Advisory & Strategic Support
  • Provide independent, risk-focused advice to the VP of IT and senior business leaders.
  • Support major technology initiatives including cloud transformation, ERP implementations, AI programs, identity modernization, Zero Trust, and digital transformation.
  • Participate in technology governance forums and strategic initiatives to identify risks and control considerations early.
  • Conduct cybersecurity risk assessments, maturity reviews, tabletop exercises, and control design assessments.
  • Benchmark cybersecurity capabilities against industry practices and identify opportunities to improve resilience through automation, analytics, and continuous monitoring.
Audit Execution & Reporting
  • Develop audit scopes, methodologies, and work programs for cybersecurity and technology risk engagements.
  • Lead planning, fieldwork, and execution of complex audits and advisory reviews.
  • Assess cybersecurity governance, cloud security, security architecture, identity management, third-party risk, and technology resilience.
  • Perform targeted ITGC reviews where appropriate, coordinating with the leader responsible for ITGC and SOX assurance.
  • Evaluate preparedness for cyber incidents, including incident response, vulnerability management, disaster recovery, and business continuity.
  • Prepare executive-level reports outlining key risks, control gaps, business impact, root causes, and practical recommendations.
  • Monitor remediation and elevate significant unresolved risks to senior management, the VP of Internal Audit, and Audit Committee as appropriate.
  • Drive the use of data analytics, automation, continuous auditing, and AI-enabled techniques within Internal Audit.
  • Maintain current knowledge of cybersecurity threats, regulatory requirements, and technology developments.
  • Enhance cybersecurity audit methodologies and technology risk assessment capabilities.
  • Mentor Internal Audit professionals and serve as the department’s technical resource for cybersecurity and technology risk.
Qualifications
Education & Certifications
  • Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, IT, Engineering, Accounting, or a related discipline.
  • At least one relevant certification required, such as CISA, CISSP, CISM, CRISC or CIA.
  • Additional certifications such as CCSP, GIAC, CEH, Security+, or relevant cloud security credentials preferred.
Experience & Skills
  • 8–12+ years of progressive experience in cybersecurity, technology risk, cyber assurance, consulting, or IT audit, with significant enterprise cybersecurity experience.
  • Experience in a large, complex organization, Fortune 500 company, Big Four cyber risk practice, or leading cybersecurity consultancy preferred.
  • Demonstrated experience leading complex cybersecurity audits and advisory engagements.
  • Strong knowledge of cybersecurity governance, cloud security, cyber resilience, operational resilience, and technology risk management.
  • Working knowledge of ITGC and SOX requirements.
  • Strong understanding of NIST, ISO 27001, CIS Controls, COBIT, and relevant cybersecurity and privacy regulations.
  • Experience working with CISOs, technology executives, and senior business leaders.
  • Excellent executive communication, presentation, stakeholder management, and report-writing skills.
  • Ability to translate complex technical risks into clear business impacts and actionable recommendations.
  • Experience using data analytics, automation, or continuous monitoring to improve audit effectiveness.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Manager, Cybersecurity & Technology Risk Audit
Senior Manager, Cybersecurity & Technology Risk Audit

Amphenol • Wallingford (CT)

On-site
USD 130,000 - 160,000
Senior Information Technology Audit Manager
Senior Information Technology Audit Manager

Smith Arnold Partners • Connecticut

On-site
USD 120,000 - 160,000
Director - Digital Technology Audit
Director - Digital Technology Audit

Constellation Energy Corp. • Northern (KY)

Hybrid
USD 195,000 - 217,000
Bonus program
401(k) with company match
Employee stock purchase program
+3
Director - Digital Technology Audit
Director - Digital Technology Audit

Constellation Energy Corp. • Baltimore (MD)

On-site
USD 195,000 - 217,000
Bonus program
401(k) with company match
Employee stock purchase program
+3
Director - Digital Technology Audit
Director - Digital Technology Audit

Constellation • Kennett Square

On-site
USD 195,000 - 217,000
Senior IT Audit Manager
Senior IT Audit Manager

Madison-Davis, LLC • New York (NY)

Hybrid
USD 127,000 - 150,000
Cyber & Technology Auditor
Cyber & Technology Auditor

WestRock Company • Atlanta (GA)

Hybrid
USD 78,000 - 105,000
Information Technology Audit Manager
Information Technology Audit Manager

Frederick Fox • Norfolk (VA)

On-site
USD 120,000 - 170,000
Senior IT Audit Manager – $145-165K Plus 10-20% Bonus
Senior IT Audit Manager – $145-165K Plus 10-20% Bonus

ACCsurance, LLC • Washington

On-site
USD 120,000 - 150,000
Senior Analyst, Cyber Security
Senior Analyst, Cyber Security

Jobtailor • South Carolina

On-site
USD 90,000 - 120,000