Job Openings IT Auditor Cloud and Cyber -New York, NY -Hybrid

About the job IT Auditor Cloud and Cyber -New York, NY -Hybrid

IT Auditor Cloud and Cyber -New York, NY -Hybrid

FinTrust Connect

Share Your Resume and Build Your Future!

Join our Talent Community for New York. You will audit technology and cloud controls across banks and fintechs, aligning coverage to FFIEC expectations and NIST and ISO and COBIT while partnering with cyber and platform teams. 

As an IT Auditor you will plan and execute audits over cloud platforms and identity and network and data protection and change and access and resiliency. You will deliver examiner ready workpapers and clear issues that drive timely remediation.

Requirements:

  • 4 to 8 years in IT audit or cyber audit in financial services
  • Control frameworks NIST CSF and NIST 800 53 and ISO 27001 and COBIT and SOX ITGCs
  • Cloud and security technologies AWS or Azure or GCP and IAM and logging and SIEM and EDR and Kubernetes basics
  • Experience testing SDLC and change and access and backup and recovery and vendor controls
  • CISA or CISSP or CIA preferred

Responsibilities:

  • Risk assessment and audit planning for apps and infra and cloud
  • Design and perform testing for identity and privileged access and logging and encryption and configuration and backups and DR
  • Evaluate control design against FFIEC guidance and bank policy and produce board level summaries.
  • Track findings to closure with evidence and operate issue validation

Outcomes we track:

  • Workpapers complete and cross referenced 100%

  • RFIs answered 100% on time

  • Repeat findings reduced 30% in 2 quarters

Compensation and terms:

  • Consultant pay $95 to $185 per hour based on depth and scope NYC rates supported by current market ranges. 
  • Contract Hybrid New York NY or Remote US W2 or 1099

How to apply:


Follow FinTrust Connect on LinkedIn


Keywords
IT Audit, Cyber Audit, FFIEC, NIST CSF, NIST 800 53, ISO 27001, COBIT, SOX ITGC, Cloud Audit, AWS, Azure, GCP, IAM, PAM, Logging, SIEM, Sentinel, Splunk, GuardDuty, Security Hub, Change Management, Vendor Risk, Evidence, Workpapers, NYC