Risk Cyber Internal Audit Manager
$138k - $172.5kGrant Thornton LLP
As a member of Grant Thornton’s Cybersecurity Internal Audit (IA Cybersecurity) team, you will have the opportunity to collaborate with our clients and deliver consulting and advisory services across a broad spectrum of areas related to cybersecurity. You will support clients in evaluating and enhancing their Cybersecurity risk posture through internal audits, control testing, and maturity assessments. You’ll work closely with cross-functional across risk and compliance teams to assess risks, test controls, and provide actionable insights aligned with industry standards and regulatory frameworks.As an IA Cybersecurity Risk Manager, you will get the opportunity to contribute to our clients' business needs and grow within our practice by applying a collection of Cybersecurity capabilities, including governance, risk assessments, control testing, and technology operations for the Cybersecurity practice, all with the resources, environment, and support to help you excel. From day one, you’ll be empowered by the greater Cyber & Risk Advisory team to help clients make the moves that will help them achieve their vision and help you grow your Cybersecurity knowledge. Your day-to-day may include: Assist in planning and executing Cybersecurity internal audits, risk assessments, and control testing engagements.Lead walkthroughs, interviews, and workshops with client stakeholders to understand security processes and technology environments.Perform Cybersecurity control testing and Cybersecurity program capability assessments.Conduct Cybersecurity maturity assessments using frameworks such as NIST CSF, CSA CCM, ISO/IEC 27001, COBIT, and HITRUST.Support assessments for regulatory compliance including HIPAA, FedRAMP, GLBA, GDPR, and state-led data breach notification laws.Document process, risk and control improvement considerations, develop risk-based recommendations, and develop client deliverables.Identify emerging technology risks (i.e., AI, Cloud, Quantum-computing risks), deep-dive into AI model risks, supply-chain risks, document control deficiencies and develop risk mitigation strategies. Develop roadmaps to help clients mitigate Cyber risks and enhance overall Cybersecurity posture.Stay current on Cybersecurity trends, threat landscapes, and regulatory developments. This includes technical familiarity with common Cybersecurity tools, cloud environment/architecture, and threat vectors. Provide mentorship and training to junior team members by reviewing their work, offering guidance on risk assessment methodologies, and supporting their professional development to enhance overall team capability.Contribute to project management tasks such as scheduling, documentation, and status reporting to ensure smooth execution of projects.Support client engagements from start to finish, which includes planning, fieldwork (including control testing), and reporting.Participate in professional development activities and training sessions on regular basis.Assist with business development initiatives, including proposal preparation, research, and developing client presentations.Adhere to the highest degree of professional standards and strict client confidentiality.Other job duties as assigned.You have the following technical skills and qualifications: Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field is required.Master’s degree in Cybersecurity related field preferred 5+ years of experience in Cybersecurity, internal audit, or IT risk.CISA, CISSP or similar professional certifications (CISA, and CISSP) required.Experience as a client serving professional for a consulting firm desired.Familiarity with Cybersecurity frameworks and standards including (but not limited to): NIST CSF, NIST 800-53, NIST 800-171NIST AI RMFCSA CCMISO/IEC 27001, ISO/IEC 27002HIPAA, FedRAMP, GLBA, CCMCOBIT, HITRUST, PCI DSSFunctional understanding of IT, Cybersecurity, AI, cloud security, data protection, vulnerability management, and incident response.Strong understanding of the cloud shared responsibility model and how that may impact clients. Ability to communicate clearly and effectively (oral and written) with all internal and external stakeholders.Ability to deliver presentations to clients on Cybersecurity risk assessments, findings, and recommendationsStrong project management skills and the ability to execute multiple engagements and competing priorities in a rapidly growing, fast-paced, interactive, results-based team environment.Ability to travel to client locations (as needed).The base salary range for this position is between $138,000 and $172,500. Placement within the pay range is at Grant Thornton’s discretion, and it is based on multiple factors, including but not limited to, job -related knowledge/skills, experience, business needs, progression within the role, geographic location, and internal equity. At Grant Thornton, compensation decisions are dependent upon the facts and circumstances of each position and candidate. #Hybrid #LI-LG1At Grant Thornton, we believe in making business more personal and building trust into every result – for our clients and you. Here, we go beyond your expectations of a career in professional services by offering a career path with more: more opportunity, more flexibility, and more support. It’s what makes us different, and we think being different makes us better. In the U.S., Grant Thornton delivers professional services through two specialized entities: Grant Thornton LLP, a licensed, certified public accounting (CPA) firm that provides audit and assurance services ― and Grant Thornton Advisors LLC (not a licensed CPA firm), which exclusively provides non-attest offerings, including tax and advisory services. In 2025, Grant Thornton formed a multinational, multidisciplinary platform with Grant Thornton Ireland. The platform offers a premier Trans-Atlantic advisory and tax practice, as well as independent American and Irish audit practices. With $2.7 billion in revenues and more than 50 offices spanning the U.S., Ireland and other territories, the platform delivers a singular client experience that includes enhanced solutions and capabilities, backed by powerful technologies and a roster of 12,000 quality-driven professionals enjoying exceptional career-growth opportunities and a distinctive cross-border culture. Grant Thornton is part of the Grant Thornton International Limited network, which provides access to its member firms in more than 150 global markets.The team you’re about to join is ready to help you thrive. Here’s how:
- Whether it's your work location, weekly schedule, or flex time off, we empower you with the options to work the way that it best serves your clients and your life. Consistent with the firm's hybrid work model, this position will require in-person attendance at least three days per week, either at a GT office or client site.
- Here, you are supported to prioritize your overall well-being through work-life integration options that work best for you and those in your household.
- We understand that your needs, responsibilities and experiences are different — and we think that’s a good thing. That’s why we support you with personalized and comprehensive benefits that recognize and empower all the identities, roles and aspirations that make you, well, you. See how at
- When it comes to inclusion, we are committed to doing more than checking boxes. Explore all the ways we’re taking action for diversity, equity & inclusion at what you can expect next:
- ...AnnuallyIndustry BankingSelling Points Lead impactful audits across IT and cybersecurity domains, ensuring... ...senior leadership to enhance governance and risk management.Job DescriptionInternal Audit Manager OverviewThe Internal Audit Manager oversees audit planning and...Risk
$175k - $205k
Actuarial Manager, PricingDRIVE PROFITABLE GROWTH FOR THE BUSINESSAbout At-BayAt-Bay is... ...the ground up to help businesses tackle cyber risk head on. By combining industry-leading insurance... ...not limited to market data, location, internal equitability, domain knowledge,...CyberRisk$24 per hour
...Sony Corporation of America (SCA) is offering an internship for Information Security Risk and Compliance in New York City. The role provides hands-on experience across risk domains, contributing to governance, risk, and compliance activities. The internship pays $24.0...CyberRiskHourly payInternship- ...Technology Operational Risk Vice President in Compliance, Conduct... ...Operational Risk Technology & Cyber Bring your expertise to JPMorganChase. As part of Risk Management and Compliance, you are at the... ...analysis of existing risks and internal and external events related to...CyberRisk
- ...Illinois, or Virginia. Price Professional lines (E&O, D&O, EPLI, Cyber, Management Liability, Lawyers), including rate indications,... ...Underwriting, and other key stakeholders to align pricing with risk profiles and market trends. Ideal candidate is ACAS or FCAS with...CyberRisk
- ...We are seeking a Managing Director to lead and expand our Cybersecurity Advisory practice serving the Private Equity (PE) sector. This... ...teams, boards, and portfolio company leadership to assess cyber risk, identify value creation opportunities, support transactions,...CyberRisk
- ...Responsibilities Reporting to the Managing Director & Head of Digital Investigations & Cyber Risk. Responsible for driving the expansion of the firm’s Digital... ...skills of interest include business valuation, internal controls assessment and advisory, and high‑volume...CyberRisk
- Govserviceshub is seeking a Risk Manager/ CMMC Specialist to review client secure enclave architecture, interpret CMMC controls, and provide... ...during formal CMMC assessments. This position requires strong cyber risk acumen and collaboration with client teams to achieve...CyberRisk
$133.8k - $179.6k
...success!The RoleWe are seeking a knowledgeable and collaborative Internal Audit Manager to join Andersen’s Internal Audit team focusing on financial... ..., and compliance audits to strengthen governance and risk management across the firm. Reporting directly to the Chief...RiskFull timeH1bLocal areaWork visa- ...THE POSITION: Reporting to the Managing Director & Head of Digital Investigations & Cyber Risk, the Managing Director will be responsible for helping to drive... ...Other skills of interest include business valuation, internal controls assessment and advisory, and high-volume...CyberRisk
$130k
...Underwriting Operations Lead specializing in Cyber & Political Violence. This is a permanent... ...unrest.Role & ResponsibilitiesLead and manage the underwriting operations team focused on... ...to ensure alignment with company goals and risk management strategies.Analyze and respond...CyberRiskPermanent employment$130k - $160k
...client is an integrated global trading company. They seek an Internal Audit Manager to join their Manhattan, NY office.ResponsibilitiesSupport... ...following internal audit methodologyParticipate in audit scoping, risk assessment, and planning, including pre-fieldwork review of...RiskWork at officeRemote work- ...Inc. is seeking an experienced claims professional to join our cyber claims team. You will handle intake of severe cyber events, coordinate... ...complex claims including cyber, tech, and media policies, manage litigation, and maintain precise file documentation across multiple...CyberRisk
- ...Diligent is seeking a Senior Product Manager for IT & Cyber Risk to set the strategic direction of AI-enabled risk detection and governance features. You will own the product vision, roadmap, and outcomes across the Diligent One Platform, partnering with engineering, data...CyberRisk
$155.6k - $306.8k
...The Team: The mission of Quality and Risk Management (QRM) is to manage the risk in our growing... ...reputation. Work you’ll do Deloitte’s Cyber QRM team is seeking a Quality & Risk Manager... ...for Cyber services.Facilitates internal compliance with contract terms, risk management...CyberRiskContract workFor subcontractorWork at officeLocal area- An international travel insurance company offers a paid summer internship focused on governance, risk, and compliance. The internship lasts approximately 8-9 weeks and allows interns... ...vendor assessments, and supporting audits. Candidates pursuing a degree in Information...CyberRiskInternshipSummer internshipRemote work
- ...A leading global investment and asset management organization is seeking an Internal Audit Manager to support its enterprise audit and SOX compliance programs... ...with senior business leaders to strengthen governance, risk management, and control environments. The ideal...Risk
$155k - $215k
...communities. This is a Technology Project Management- Risk & Controls Metrics position at the Vice... ...(SPE) is a Super Department in Cyber, Data, Risk and Resilience (CDRR). This... ...Coordinate across specialist teams.Engage with Audit and 2nd Line Assurance.Manage financial...CyberRiskTemporary work- ...Expertise to JPMorganChase. As part of Risk Management and Compliance, you are at the center of... ...and Operational Risk Technology & Cyber, you will lead oversight of large, complex... ...thematic analysis of existing risks and internal and external events related to AI and machine...CyberRisk
- Senior Information Technology Audit Manager New York City Metropolitan Area A top-tier alternative asset manager is looking for an IT Audit... ...IT general controls, cloud technology, networks, firewalls, cyber risk Experience leading IT audits, risk assessments, and process...CyberRiskFull time
- Datadog is seeking a Senior IT Auditor for their Internal Audit team in New York City. This role involves... ...testing and audit projects while collaborating with management across the organization to identify and mitigate risks. The ideal candidate has 4+ years of experience...CyberRisk
- ...incident response while building in-house and open-source security tools. You’ll gain hands-on experience across log sources, systems, and scalable security workflows, learning best practices, trade-offs, and risk communication within a finance environment. #J-18808-Ljbffr...CyberRiskFull timeInternship
$134.5k - $265.1k
Position Summary SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across... ...organizations manage SAP security and governance, risk, and compliance requirements across implementation and...CyberRiskLocal areaVisa sponsorship$120k - $150k
...the ground up to help businesses tackle cyber risk head on. By combining industry-leading insurance... ...an integrated solution to help manage risk is more critical than ever.At-Bay helps... ...) policies.Your impactCollaborate with internal team and external vendors to chart the...CyberRisk- ...similar are a plus5+ years of experience in risk management, insurance brokerage, or corporate... ...of commercial insurance programs (e.g., Cyber, D&O, Professional Liability, Casualty,... ...with adjusters, counsel, and internal stakeholdersExposure to contractual risk...CyberRiskContract workApprenticeship
$134.5k - $265.1k
Position Summary Cyber Defense & Resilience - Insider Risk Manager Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional...CyberRiskLocal areaVisa sponsorship- We are partnered with a global institutional asset manager on a second line of defense Op Risk hire in New York. This sits within the firm's Global Operational... ...Thematic reviews across third-party, change, cyber, and resilience What we're looking for: 8+ years of operational...CyberRisk
$170k - $300k
...,000.00 - $300,000.00Category: Risk Management, ExecutiveCompany: CitiThe Technology and Cyber Compliance and Operational Risk... ...frameworks, we aim to ensure that the internal controls that are designed to... ..., as well as regulatory and audit requirements.Appropriately...CyberRiskFull timeWork at office- McKinsey & Company is seeking a Manager for the Third-Party Risk Strategy pillar within Optimize's Third Party Risk & Social Responsibility team. Based... ...program, collaborating with Ethics, Finance, Legal, and Cyber to deliver risk programs across suppliers. You will lead...CyberRisk
$118.3k - $207.4k
Third‑Party IT Risk Manager is responsible for leading and modernizing Wolters Kluwer’s global third‑party cyber risk management capability across a highly distributed, market‑driven... ...protected in accordance with internal expectations.• Strong business acumen and...CyberRiskFull timeContract workWork at officeShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Risk Cyber Internal Audit Manager. Be the first to apply!
- clinical risk manager New York, NY
- director credit risk New York, NY
- head of risk management New York, NY
- risk analytics manager New York, NY
- risk management associate New York, NY
- operational risk manager New York, NY
- group risk manager New York, NY
- risk management specialist New York, NY
- director of risk management New York, NY
- senior risk manager New York, NY


