Internal IT Audit: Cloud Risk Specialization
Wilmington Trust
Hybrid Role in Internal Audit IT
This role is hybrid, with four days per week onsite, based out of Buffalo, NY; Bridgeport, CT; or Wilmington, DE. Will consider Boston, MA or NYC applicants as well. Candidates must be within a commutable distance or willing to relocate.
Job Description
This individual contributor position will be a part of the Technology Domain Audit Team and will be responsible for the following:
- Providing senior level expertise and contributing to delivery of assurance services specific to the Bank's Cloud and Colo Data Center Migration. This position will play an important role in carrying out the Division's strategic approach to cloud auditing along with assessing the adequacy of the structures and processes put into place by management to govern the organization's migration of systems to both Microsoft Azure public cloud and Colo data center facility destinations.
- Providing subject matter expertise and leading the execution of audit procedures over cloud-based infrastructure and cybersecurity capabilities, all while ensuring high quality deliverables in accordance with division and professional standards.
- Owning the delivery of assurance services across other areas of the Technology and Cybersecurity domains, as needed. This could include leading other audit engagements in these domains, completing issue validation procedures, executing continuous auditing activities, etc.
Primary Responsibilities
- Plan, coordinate and maintain full ownership over execution of assurance work specific to core technology infrastructure and cybersecurity audits, with a particular focus on assessing cloud risk management practices at the Bank. This role is expected to operate with a high level of independence and to deliver high quality deliverables given associated experience.
- Assist the Audit Division in execution of its strategy specific to the holistic coverage of cloud risks across the Audit Plan and in development of cloud specific audit programs.
- Stay abreast of best practices, industry developments, and changing or emerging technology and cloud risks, consult with Audit teams to ensure their coverage is appropriate in applicable audits given this information, and ensure senior management in Audit is kept apprised of impacts to the Division's assurance work.
- Responsible for becoming intimately familiar with the organizational structure for the Bank's Technology Division and developing relationships with key members of management.
- Organize and complete work within established budgets and time frames with minimal direction from audit management.
- Incorporate the use of data analytics/AI throughout all phases of the audit process.
- Make sound decisions independently, exhibiting initiative and intuitive thinking.
- Maintain ongoing communication with the 1st and 2nd line Risk Management/Oversight organizations to align assurance activities, share risk information, etc.
- Supervise other Audit staff as needed, based on the body of work being completed.
Leadership, Decision Making, and Communication
- Possess strong management and interpersonal skills, make sound decisions independently, exhibiting initiative and intuitive thinking.
- Proactively communicate with senior management members of the audit team and line of business senior and executive regarding the status of audits and potential issues identified.
- Build strong partnerships with business stakeholders and audit team members.
- Demonstrates strong judgment, political astuteness, and sensitivity to cultural commitment.
Developing Others
- Coach and mentor junior audit team members through knowledge sharing, tailoring the approach based upon their skills and experience.
Other Responsibilities
- Adhere to applicable compliance/operational risk controls in accordance with Company or regulatory standards and policies.
- Promote an environment that supports belonging and reflects the M&T Bank brand.
- Maintain M&T internal control standards, including timely implementation of internal and external audit points together with any issues raised by external regulators, as applicable.
- Complete other related duties as assigned.
Scope of Responsibilities
- This role operates independently within a matrix reporting environment and is responsible for the timely delivery of high quality, value-added audit reports for a variety of business activities (complex in nature), which meet the requirements of the Audit Committee and regulatory expectations. Ensures ongoing conformance with professional auditing standards.
- This position directly communicates with Senior, Middle and Line Management and External Auditors. Builds strong partnerships with business stakeholders and other audit team members.
- This role also requires periodic interaction with external regulatory agencies.
Supervisory/ Managerial Responsibilities
- May provide coaching opportunities for certain audit professionals but is not responsible for performance management, compensation planning, or other similar duties.
Education and Experience Required
- Bachelor's degree, preferably in Computer Science, MIS, Technology, Cybersecurity or other related technical field and 7 years of relevant experience, inclusive of 2 years of work leadership experience. In lieu of degree, a combined minimum of 11 years higher education and/or work experience including 7 years of relevant work experience and 2 years of work leadership experience.
- Detailed knowledge of audit theory
- Detailed knowledge and experience in conducting audits of controls in cloud-based environments (notably Microsoft Azure) or assessing cloud architecture.
- Detailed understanding of industry frameworks guiding management of cloud computing risks
- Relevant professional certification, or actively pursuing professional certification.
- Demonstrates strong judgment, political astuteness, and sensitivity to cultural diversity.
- Possesses strong project management and interpersonal skills, makes sound decisions, exhibiting initiative and critical thinking.
- Effective negotiation skills, a proactive and 'no surprises' approach in communicating issues and strength in sustaining independent views.
- This individual must be an articulate and effective communicator, both orally and in writing, with an energetic, charismatic and approachable style.
Education and Experience Preferred
- MBA or Master's degree in an appropriate field preferred.
- Working knowledge and experience in auditing compute, database, network and storage infrastructure risks, technology governance and risk management concepts, modern software engineering practices, mainframe technology, and IT service management disciplines.
- Cloud risk or cloud audit-oriented certification is a definite asset (e.g. CCSK or CCAK), as are certifications such as CISSP.
- Understanding of regulatory requirements/expectations as they relate to technology and cybersecurity risks in the financial services industry;
- Excellent verbal and written communication skills. Ability to convey complex conceptual information/ideas on issues requiring extensive interpretation and opinion. Experience in applying appropriate discretion when dealing with sensitive issues and conveying technical concepts in an easy to understand manner;
- Proven ability in managing multiple bodies of work simultaneously under tight deadlines;
- Proven leadership skills, with the ability to develop and motivate; and
- Strong organizational and resource management skills.
- Financial Services Industry experience preferred
Location: Buffalo, New York, United States of America
$89.6k - $149.3k
...Audit Manager Leads and executes audits over the Bank... ...Information Technology (IT) functions. Responsible... ...and executing annual risk assessments, audit examinations... ...brand. Maintain M&T internal control standards,... ...(CIA, CPA, CISA, CISSP, cloud certification, or similar...CloudRiskWork experience placement$128.9k - $214.9k
...for full ownership of the Audit Division's assurance product... ...leading a diverse team of IT Audit staff and guiding the risk-based prioritization of... ...environments, and public cloud platforms is required as the... ...implement, maintain and enhance internal controls to mitigate risk...CloudRiskWork experience placementShift work$93k - $125k
...outside of work. Moog's Internal Audit Team in Corporate Group... ...will plan and execute IT and information systems... ...leaders to assess risks, evaluate controls (ITGCs... ...risk assessments across cloud, infrastructure,... ...for employment and need special assistance or an accommodation...CloudRiskLocal areaFlexible hours$110k - $140k
...of Withum Plus You - that's the Power in the Plus! The Risk Advisory practice at Withum is experiencing significant growth... ...and assurance services. Our team is seeking an experienced IT Internal Controls Audit Lead/Manager with experience performing Sarbanes Oxley (SOX...RiskWork at officeLocal area$100k - $115k
...IT Operations & Team Management Manage day-to-day IT operations... ...across all sites Servers, cloud platforms, and data storage... .... Cybersecurity & Risk Management Support the implementation... .... Coordinate with internal stakeholders to ensure technology...CloudRiskRemote work$90k - $110k
...Job Description IT AUDITOR (Permanent) Our... ...Responsibilities: Audit the effectiveness/... ...activities to highlight any key risks Analyze identified... ...appropriately through internal controls Ensure... ...Regularly participate in special projects, often acting...RiskPermanent employmentFull timeWork at officeWork from homeRelocation$84.63k - $112.84k
...administrator, for both on-premise and cloud based infrastructure. Primary... ...provide support directly to internal stakeholders throughout the... ...best practices/procedures, risk assessments, contingency planning... ...skills across the full IT technology stack Strong interpersonal...CloudRiskFull timeTemporary workWork from home$144k - $329.1k
...relationships in the sector. Your specialized knowledge in project... ...quality and effective risk management. You will... ...others and interpret internal/external issues to... ...Applications Integration Cloud Computing and Cloud... ...Business Analysts, and IT teams) to define data requirements...CloudRiskSummer holidayFlexible hours- ...responsible for managing IT onboarding and... ...and network deployments, cloud and collaboration platform... ...visibility into timelines, risks, and dependencies while... ...scheduling of internal resources, subcontractors... ...MSP in North America, specializing in IT solutions for mid...CloudRiskFor subcontractorWork at officeRelocationFlexible hours
$86.68k - $109.65k
...Financial, Accounting, Auditing Salary Grade 23 Bargaining... ...dynamically-paced and specialized cybersecurity audits at... ...projects of advanced IT matters, IT auditing... ..., addressed areas of risk; evaluated systems and... ...limited to, conducting cloud security, artificial intelligence...CloudRiskPermanent employmentFull timeContract workWork at officeLocal areaRemote workVisa sponsorshipFlexible hoursShift work- ...IT Project Manager The IT Project Manager plays a critical role in driving the successful... ...coordination, detailed status reporting, risk management, and ensuring the timely... ...in facilities and energy solutions. We specialize in integrating systems, providing energy-...RiskWork experience placement
$124k - $280k
...customer, and governance, risk and compliance. As... ...journey enabled by Oracle Cloud ERP and EPM. You will... ...development framework. It gives us a single set of... ...knowledge in area of specialism. Contribute to an environment... ...audiences, clients and internal staff and management....CloudRiskFull timeH1b- ...Microservices, Azure Cloud) Buffalo, NY (... ...support activities and special projects. Often... ...to the Company's risk and regulatory... ...brand. Maintain M&T internal control standards,... ...internal and external audit points together... ...issues? Yrs. of IT exp. overall? Yrs...CloudRiskContract workWork experience placementWork at officeImmediate startRemote workRelocation
$91k - $321.5k
...Specialty/Competency: IFS - Risk & Quality (R&Q) Industry/... ...landscapes and enhance their internal controls to mitigate risks... ...refer to specific PwC tax and audit guidance), the Firm's code... ...technology managed services - IT infrastructure, cloud, data analytics, application...CloudRiskFull timeContract workH1b$103k - $171.6k
...enabling the next generation of cloud-native analytics. You'll... ...to maintain clean, auditable, and collaborative pipelines... ...tasks, dependencies, and risk mitigation. Work with internal and external stakeholders... ...representative on special committees or cross-functional...CloudRiskWork experience placement$130k - $160k
...Manufacturing, Supply Chain, Quality, and IT teams to architect solutions... .../ ERP ecosystems Secure cloud and hybrid environments AI... ...Conduct architecture risk assessments and mitigation planning... ...applying for employment and need special assistance or an accommodation...CloudRiskLocal areaRelocationRelocation packageFlexible hours- ...Cloud Infrastructure Solutions Architect This role provides the... ...business stakeholders to gather IT infrastructure requirements.... ...designing new solutions. Serves as internal mentor for peers. Leads... ...of security, compliance, and audit policies/procedures....CloudWork experience placementWork at officeHome officeFlexible hours
- ...threat hunting across endpoint, cloud, and identity environments... ...security posture, threats, and risk Translate technical findings... ...Collaborate cross-functionally with IT, engineering, and leadership... ...requirements. If you have a disability or special need that requires reasonable...CloudRiskTemporary workLocal areaRemote workVisa sponsorshipWork visa
$99k - $232k
...capital, customer, and governance, risk and compliance. As part of... ...journey enabled by Oracle Cloud ERP and EPM. You will be part... ...leadership development framework. It gives us a single set of... ...industry audiences, clients and internal staff and management; Communicates...CloudRiskFull timeH1b$90 - $100 per hour
...with our client to fill their Senior Azure Cloud Security Engineer position! This is a 12... ..., operational constraints, and security risks, leading unit testing, system integration,... ...infrastructure architecture, virtual technologies, and IT Service Management best practices ~...CloudRiskContract work- ...WORK OBJECTIVE: The Information Technology (IT) Program Manager is responsible for overseeing all aspects of any project in the... ...Program Manager will set and monitor the goals of the projects, manage risks, and the project schedule. ESSENTIAL FUNCTIONS:...RiskWork experience placementWork at office
$116.8k - $198.7k
...a vital role in the worldwide IT sales channel, bringing products... ...technology manufacturers and cloud providers to business-to-... ...with business area objectives. Internally recognized technical or business... ...all stakeholders Champion risk governance, compliance, and operational...CloudRiskTemporary workLocal areaRemote workWorldwideFlexible hoursShift work$155k - $410k
...refer to specific PwC tax and audit guidance) the Firm's code of conduct... ...Opportunity As part of the Cloud Business Group team you lead... ...demonstrating three years of specialized training and/or progressively... ...Identifying and managing risks associated with digital integration...CloudRiskFull timeTemporary workWork experience placementH1b$125.5k - $230.2k
...environments, including cloud and on premises. You... ...working with business, IT, and operations leaders... ...while meeting regulatory, audit, cybersecurity, and... ...complex, judgmental and/or specialized issues surrounding... ...regulated operating models, risk tolerance, safety...CloudRiskFull timeWork experience placementSummer holidayFlexible hours$99k - $232k
...to specific PwC tax and audit guidance), the Firm's... ...demonstrating three years of specialized training and/or... ...Azure-based platforms and cloud migration initiatives,... ...delivery and execution risks, evaluate trade-offs, and... ..., build, and evolve internal developer platforms that...CloudRiskFull timeWork experience placementH1b- ...JOB OPEN - Buffalo, NY P&C Insurance - Risk- Based AUDIT MANAGER Hybrid work week Working this with our split partner. Here is your ground-floor opportunity to create and lead a Risk-Based Internal Audit Unit! You will set strategy, protocols, create training manuals,...Risk
$124k - $280k
...to specific PwC tax and audit guidance), the Firm's... ...Opportunity As part of the Cloud Business Group team you... ...three years of specialized training and/or progressively... ..., identify delivery risks, evaluate trade-offs,... ...design, build, and evolve internal developer platforms...CloudRiskFull timeWork experience placementH1b$58.72 - $97.86 per hour
...blockchain architecture, crypto coin systems, cloud-native platforms, and financial systems... ...phases (Agile/DevOps) Conduct risk assessments, security reviews, and disaster... ...About CTG CTG, a Cegeka company, delivers IT and business solutions that enhance clients...CloudRiskContract workLocal areaRemote work$116.4k - $194k
...support activities and special projects. Primary... ...optimized for resilience and auditability Advanced... ...of: Entra Connect (Cloud Sync and Traditional)... ...aligned to regulatory and risk-based controls Hybrid... ...GLBA, PCI DSS, SOC 2 Internal risk management and...CloudRiskWork experience placementWork from home1 day per week$100.1k - $170.3k
...population, we play a vital role in the worldwide IT sales channel, bringing products and services from technology manufacturers and cloud providers to business-to-business... ...challenge the status quo, take calculated risks, display, and champion innovation, and reduce...CloudRiskTemporary workWorldwide
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Internal IT Audit: Cloud Risk Specialization. Be the first to apply!
- senior cloud service delivery manager Buffalo, NY
- oracle cloud technical Buffalo, NY
- cloud engineer azure Buffalo, NY
- junior cloud administrator Buffalo, NY
- technology risk Buffalo, NY
- risk assurance Buffalo, NY
- IT analyst Buffalo, NY
- IT associate Buffalo, NY
- it operations coordinator Buffalo, NY
- intern IT Buffalo, NY


