
AVP Technology Audit and Controls
Role Summary:
Seeking a AVP technology audit professional to lead and execute third line of defense audits focused on core infrastructure, Technology review. The role requires hands-on experience in performing technical audits covering cloud environments (AWS), firewall implementations, SIEM, DLP, and related technologies.
Candidates with experience limited to ITGC, SOX, or SOC reviews will not meet the criteria. The ideal candidate brings strong exposure to technology controls, design reviews, and cloud infrastructure assessments within internal audit or equivalent risk functions.
Key Responsibilities:
- Lead and conduct technology audits with emphasis on cyber and infrastructure risks.
- Evaluate design and effectiveness of technical controls across cloud and on-premise environments.
- Review and test controls around cloud implementation (especially AWS) and network security components (firewalls, proxies, etc.).
- Perform deep-dive audits in areas like SIEM, DLP, endpoint protection, and privileged access.
- Assess the adequacy of technology governance, change management, and design control mechanisms.
- Document findings and communicate risks to senior stakeholders.
- Collaborate with global audit teams and contribute to the broader internal audit plan.
Required Experience:
- 7-12 years of experience in technology audit, preferably within financial services.
- Strong knowledge of cybersecurity frameworks (NIST, ISO 27001), infrastructure architecture, and risk assessments.
- Proven audit experience in areas such as:
- Cloud infrastructure reviews (AWS)
- Firewall and network security audits
- SIEM / DLP / IAM technologies
- Strong technical acumen with understanding of design controls and technology implementation risks.
- Familiarity with internal audit methodologies and tools.
Didn’t find the job appropriate? Report this Job