IT Audit Manager
$113.2k - $164.05kMoody's Investors Services Inc
At Moody's, we unite the brightest minds to turn today's risks into tomorrow's opportunities. We do this by striving to create an inclusive environment where everyone feels welcome to be who they are-with the freedom to exchange ideas, think innovatively, and listen to each other and customers in meaningful ways. Moody's is transforming how the world sees risk. As a global leader in ratings and integrated risk assessment, we're advancing AI to move from insight to action-enabling intelligence that not only understands complexity but responds to it. We decode risk to unlock opportunity, helping our clients navigate uncertainty with clarity, speed, and confidence.
If you are excited about this opportunity but do not meet every single requirement, please apply! You still may be a great fit for this role or other open roles. We are seeking candidates who model our values: invest in every relationship, lead with curiosity, champion diverse perspectives, turn inputs into actions, and uphold trust through integrity.
Skills and Competencies- Minimum 5 years of experience in a Big 4 accounting firm and/or a global organization within an audit, risk, or controls role
- Strong technical knowledge and understanding of risk and controls across a variety of technologies and IT infrastructure platforms, including cloud environments (AWS, Azure, GCP), identity and access management, infrastructure and endpoint controls, and cybersecurity domains
- Deep knowledge and experience in internal control frameworks and risk standards (COSO, COBIT, ISO, NIST), Sarbanes-Oxley requirements, and financial systems and related technology
- Experience performing assurance work over software development, SaaS solutions, secure coding, and cloud and data processes; working knowledge through compliance, risk management, or consulting roles within the fintech or technology sector is also valued
- Demonstrated ability to apply data analytics tools such as Excel, Power BI, and Tableau to enhance audit testing, identify trends, and build continuous monitoring capabilities
- Innovative, results-oriented, and able to demonstrate strong communication, interpersonal, persuasion, leadership, team management, project management, and critical thinking skills
- Proficiency in the Microsoft Office suite; fluency in written and spoken English required; ability to work both independently and as a member of a team in a fast-paced environment while managing multiple priorities
- Demonstrated proficiency in artificial intelligence concepts, with hands-on experience using AI tools to streamline workflows and enhance operational efficiency. Proven ability to implement AI-powered solutions to solve business challenges. Demonstrates a growing awareness of AI risk management and a commitment to responsible and ethical AI use.
- Bachelor's degree or higher, preferably in computer science, computer engineering, information technology, information systems, or a related field
- CISA, CISSP, or CRISC certification (or equivalent professional qualification) required
- Plan and execute risk-based IT and integrated audits, performing hands-on testing on complex and high-risk areas while directing the overall engagement
- Develop and maintain a deep understanding of the technology environment, key business processes, and associated IT risks and controls across business segments, applying this knowledge during scoping, walkthroughs, and testing
- Perform and oversee testing of design and operating effectiveness across IT and technology risk domains, including cloud environments, identity and access management, infrastructure controls, vulnerability and patch management, IT change management, data governance, and AI/ML and generative AI governance
- Manage the end-to-end audit lifecycle - including scoping, timelines, information gathering, documentation, and reporting - ensuring all work is performed in accordance with departmental and Institute of Internal Auditors standards
- Translate technical and control-level findings into clear, business-relevant risk insights; draft observations, impact statements, and practical recommendations, and coach team members to do the same
- Partner and communicate effectively with Technology, Data, and Product teams while maintaining independence throughout the audit lifecycle and driving meaningful, risk-based remediation
- Validate remediation of audit findings and track timely issue closure, including evaluating action plans, independently reviewing and retesting evidence, and confirming sustainable control improvements
- Coach and develop junior team members through the audit lifecycle, including communicating roles and expectations, reviewing workpapers, providing feedback, and reinforcing accountability for deliverables, hours, and cycle time
For US-based roles only: the anticipated hiring base salary range for this position is$113,200.00-$164,050.00, depending on factors such as experience, education, level, skills, and location. This range is based on a full-time position. In addition to base salary, this role is eligible for incentive compensation. Moody's also offers a competitive benefits package, including not but limited to medical, dental, vision, parental leave, paid time off, a 401(k) plan with employee and company contribution opportunities, life, disability, and accident insurance, a discounted employee stock purchase plan, and tuition reimbursement.
Moody's is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, sex, gender, age, religion or creed, national origin, ancestry, citizenship, marital or familial status,sexual orientation, gender identity, gender expression, genetic information, physical or mental disability, military or veteran status, or any other characteristic protected by law. Moody's also provides reasonable accommodation to qualified individuals with disabilities or based on a sincerely held religious belief in accordance with applicable laws. If you need to inquire about a reasonable accommodation, or need assistance with completing the application process, please email View email address on click.appcast.io. This contact information is for accommodation requests only, and cannot be used to inquire about the status of applications
For San Francisco positions, qualified applicants with criminal histories will be considered for employment consistent with the requirements of the San Francisco Fair Chance Ordinance.
This position may be considered a promotional opportunity, pursuant to the Colorado Equal Pay for Equal Work Act.
Click here to view our full EEO policy statement. Click here for more information on your EEO rights under the law. Click here to view our Pay Transparency Nondiscrimination statement.
Candidates for Moody's Corporation may be asked to disclose securities holdings pursuant to Moody's Policy for Securities Trading and the requirements of the position. Employment is contingent upon compliance with the Policy, including remediation of positions in those holdings as necessary.
Moody's Corporation is a Government contractor subject to the Vietnam Era Veterans' Readjustment Assistance Act of 1974, as amended by the Jobs for Veterans Act of 2002, 38 U.S.C. 4212 (VEVRAA), which requires Government contractors to take affirmative action to employ and advance in employment: (1) disabled veterans; (2) recently separated veterans; (3) active duty wartime or campaign badge veterans; and (4) Armed Forces service medal veterans.
VEVRAA Federal Contractor
We Request Priority Protected Veteran and Disabled Referrals for all of our locations
Please contact Donna Hutchinson, Assistant Vice President, Talent Attraction for any questions regarding this listing.
PDN-a29940a3-8b68-4108-a741-03e563561f0f$119k - $299.93k
...ApplicableSpecialismAssuranceManagement LevelSenior ManagerJob Description & SummaryThe OpportunityAs a Digital Assurance & Transparency - IT Audit Senior Manager, you will play a pivotal role in providing independent and objective assessments of financial statements, internal controls...SuggestedFull timeH1b$99k - $252.45k
...ApplicableSpecialismAssuranceManagement LevelManagerJob Description & SummaryThe OpportunityAs a Digital Assurance & Transparency - IT Audit Manager, you will play a pivotal role in providing assurance services over clients' digital environments, including processes and...SuggestedFull timeH1b$160k - $190k
...Position Title - Senior IT Audit Manager Location – New York City, New York (Hybrid 3 days in office – Midtown Manhattan) Summary The Senior IT Audit Manager is a newly opened opportunity due to organic company growth within a 100-year-old publicly traded financial...SuggestedWork at officeFlexible hours$225k - $275k
...operating companies help clinicians detect cancer earlier, identify and manage infectious diseases ranging from tuberculosis and HIV to sepsis... ...cyber assurance, including customer security questionnaires, audit response, ISO 27001, HITRUST, SOC 2, PCI DSS, and other...SuggestedFull timeRemote work- ...executes tasks needed to maintain trust across compliance, audits, risk management, vendor risk, privacy, and AI governance, enabling organizations... ...surfaces late, you walk back in as a peer and move it. Sales closes. The work you did upstream is why it lands. The...SuggestedFull timeWork at officeRemote workHome office
- ...Engineering, Product, Legal, People Operations, IT, and Go‑to‑Market to make clear, risk‑... ..., secure design reviews, vulnerability management, secrets and dependency management,... ...security diligence, including questionnaires, audits, penetration tests, security reviews, and...Work at officeImmediate startRemote workHome officeFlexible hours
- ...1, 2012. We are one of the largest asset managers in Asia and number one among Japanese financial... ...Coordinate with security operations, IT, Legal, Compliance, BCP, Head Office, and... ...examinations, internal/external audits, and management reviews. Track regulatory...Work at officeWork from homeFlexible hours2 days per week
$150k - $200k
...cybersecurity guidance and oversight to Vistrada clients by leading and managing their cybersecurity programs to help protect their... ...response coordination and oversight experience.Strong understanding of IT Risk and components, including application, infrastructure,...Work experience placementRemote workFlexible hours- ...responsibilities include assessing security risks, coordinating security audits, monitoring threat landscapes, and directing incident detection... ...compliance. The CISO also leads security awareness programs, manages security vendors and tools, prepares reports and briefings for...Full timeRemote work
- ...gallons of high-quality drinking water, managing wastewater and stormwater, and reducing air... ...within Information Technology (IT) and ensuring that projects, initiatives,... ...Participate in annual financial and technology audits for the agency. Examine computer systems...
- ...to engage and transact with leading asset managers and bank issuers on a massive scale through... ...relationships.Regulatory Compliance & Audit: Ensure compliance with financial industry... ...Collaboration: Partner with executive leadership, IT teams, and external stakeholders to align...
- ...fintech company delivering cloud-based trading communications and managed connectivity solutions to financial institutions worldwide. Our... ...trust & commercial enablement Support client security reviews, audits, certifications, due diligence, and RFP activities to...Full timeWork at officeRemote workWorldwideFlexible hours
- ...sets the strategic direction for the firm’s Information Security Management System, security governance, risk management, incident response... ..., risk assessment, control monitoring, executive reporting, audit readiness, certification support, and continuous improvement. Serves...Work at officeRemote workRelocationVisa sponsorshipRelocation package
$1,000 per month
...guided tools, coaching, therapy, medication management, and specialty care. With outcomes... ...security, technology risk, compliance, and IT strategy. This leader will ensure the protection... ..., including security reviews, audits, RFPs/RFIs, customer escalations, and technical...Work at officeWorldwideRelocationSleeping nights2 days per week3 days per week- ...information assets and technologies are adequately protected. Risk Management: Identify, assess, and mitigate information security risks to... ...architecture, solutions architecture, network architecture and/or IT infrastructure systems; or 2. A baccalaureate degree from an...Full timeLocal area
- ...thoughtful, responsible innovation. And through it all, we lead with purpose, love, and... ...you inherit a legacy infrastructure, manage a large team, and maintain the status quo.... ...ensuring they operate within defined boundaries, audit their own actions, and surface anomalies...Full timeFor contractorsRemote workDay shift
$100k - $130k
...global publishing firm. They seek a Senior IT Auditor to join their Manhattan, NY... ...ResponsibilitiesLead information systems audits, technology risk assessments, and internal... ...organizationPrepare audit reports, present findings to management, and build strong relationships with...Work at officeRemote work$260k - $280k
...integrity across market data operations. The Chief Information Security Officer (CISO) leads the enterprise-wide cybersecurity and risk management program, overseeing Reg SCI, SOC 1/2, ISO 27001, and GDPR compliance frameworks. This role designs and governs the information...Local area$78.68k - $157.88k
Position Summary Audit and Assurance Information Technology Auditor - Senior Consultant Do you thrive in times... ...within professional services, external audit, or IT auditDemonstrated ability to plan and manage engagements along with ensuring deliverables meet work...Work experience placementWork at officeLocal areaVisa sponsorship$350k - $400k
...cybersecurity operations and compliance management. The CISO will play a critical leadership... ...beyond traditional perimeter defense and audit-driven compliance programs. We now face a... ...performance-based culture. Partner with IT, Legal, Risk, HR, and other business...Contract workLocal areaShift work$250k
...strategy to protect the firm’s clients, information, and reputation. The CISO leads all aspects of cybersecurity, privacy, and risk management in alignment with the firm’s strategic objectives and professional obligations. We offer competitive compensation and in...Work at office- ...the company include leading the team in maintaining compliance with cybersecurity regulations, managing incidents and attacks, and continuously monitoring threats to the IT and OT environments. The role also involves developing and documenting cybersecurity policies, procedures...
- ...demands a strategic leader with a strong background in commercial SaaS agility, public sector governance, and public company risk management. Key responsibilities include developing a security vision and roadmap, fostering a security-first culture, and ensuring...
- Varo Bank is seeking a hands-on Chief Information Security Officer to lead, protect, and scale our digital banking platform serving millions of customers. This executive role blends strategy with practical cybersecurity leadership across cloud-native infrastructure, threat...
$350k - $400k
...the company's foremost authority on information security, risk management, and compliance. This leader will partner across Engineering, Product... ...ensure ongoing CPRA compliance, with direct accountability to audit and regulatory requirements Build and continuously mature a...Flexible hours- ...objectives and lead a high-performing team to counter evolving threats. The role involves guiding security architecture, incident management, threat intelligence, and compliance across product development and operations. Travel to engage with customers and industry...
- ...across Varo's product and engineering organizations. Skills & Qualifications Banking & Fintech Expertise: Extensive experience managing information security within a regulated bank or financial services institution, with a solid grasp of OCC/FDIC compliance...Work at officeShift work
$215k - $290k
...environment Synthesize complex datasets (e.g. metrics, event trends, audit findings) into actionable insights using Excel, Qlik, or... ...Experience in information security, technology risk, or cyber risk management, preferably within a financial services or highly regulated...Temporary workFor contractorsWork experience placement- ...Specialties cloud backup aws cloud infrastructure backup google cloud platform microsoft azure cloud backup posture management (cbpm) enterprise cloud storage cloud solutions cloud compliance resilience data resilience and ai enablement...
- The Security Executive Council is seeking a Group Chief Information Security Officer to lead the organization’s enterprise security program across the US and UK. You will drive a unified security strategy spanning governance, risk, incident response, and enterprise resilience...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Audit Manager. Be the first to apply!
- information technology and services consultant New York, NY
- it risk analyst New York, NY
- remote health information technology New York, NY
- IT coordinator New York, NY
- IT infrastructure New York, NY
- IT student New York, NY
- IT delivery manager New York, NY
- information technology intern New York, NY
- IT internship New York, NY
- IT software development manager New York, NY




