IT Audit Manager
$113.2k - $164.05kMoody's Investors Services Inc
At Moody's, we unite the brightest minds to turn today’s risks into tomorrow’s opportunities. We do this by striving to create an inclusive environment where everyone feels welcome to be who they are—with the freedom to exchange ideas, think innovatively, and listen to each other and customers in meaningful ways. Moody’s is transforming how the world sees risk. As a global leader in ratings and integrated risk assessment, we’re advancing AI to move from insight to action—enabling intelligence that not only understands complexity but responds to it. We decode risk to unlock opportunity, helping our clients navigate uncertainty with clarity, speed, and confidence.
If you are excited about this opportunity but do not meet every single requirement, please apply! You still may be a great fit for this role or other open roles. We are seeking candidates who model our values: invest in every relationship, lead with curiosity, champion diverse perspectives, turn inputs into actions, and uphold trust through integrity.
Skills and Competencies
- Minimum 5 years of experience in a Big 4 accounting firm and/or a global organization within an audit, risk, or controls role
- Strong technical knowledge and understanding of risk and controls across a variety of technologies and IT infrastructure platforms, including cloud environments (AWS, Azure, GCP), identity and access management, infrastructure and endpoint controls, and cybersecurity domains
- Deep knowledge and experience in internal control frameworks and risk standards (COSO, COBIT, ISO, NIST), Sarbanes-Oxley requirements, and financial systems and related technology
- Experience performing assurance work over software development, SaaS solutions, secure coding, and cloud and data processes; working knowledge through compliance, risk management, or consulting roles within the fintech or technology sector is also valued
- Demonstrated ability to apply data analytics tools such as Excel, Power BI, and Tableau to enhance audit testing, identify trends, and build continuous monitoring capabilities
- Innovative, results-oriented, and able to demonstrate strong communication, interpersonal, persuasion, leadership, team management, project management, and critical thinking skills
- Proficiency in the Microsoft Office suite; fluency in written and spoken English required; ability to work both independently and as a member of a team in a fast-paced environment while managing multiple priorities
- Demonstrated proficiency in artificial intelligence concepts, with hands-on experience using AI tools to streamline workflows and enhance operational efficiency. Proven ability to implement AI-powered solutions to solve business challenges. Demonstrates a growing awareness of AI risk management and a commitment to responsible and ethical AI use.
Education
- Bachelor's degree or higher, preferably in computer science, computer engineering, information technology, information systems, or a related field
- CISA, CISSP, or CRISC certification (or equivalent professional qualification) required
Responsibilities
Lead and execute risk-based IT and integrated audits across the organization, managing the full audit lifecycle while partnering with senior stakeholders and coaching team members.
- Plan and execute risk-based IT and integrated audits, performing hands-on testing on complex and high-risk areas while directing the overall engagement
- Develop and maintain a deep understanding of the technology environment, key business processes, and associated IT risks and controls across business segments, applying this knowledge during scoping, walkthroughs, and testing
- Perform and oversee testing of design and operating effectiveness across IT and technology risk domains, including cloud environments, identity and access management, infrastructure controls, vulnerability and patch management, IT change management, data governance, and AI/ML and generative AI governance
- Manage the end-to-end audit lifecycle — including scoping, timelines, information gathering, documentation, and reporting — ensuring all work is performed in accordance with departmental and Institute of Internal Auditors standards
- Translate technical and control-level findings into clear, business-relevant risk insights; draft observations, impact statements, and practical recommendations, and coach team members to do the same
- Partner and communicate effectively with Technology, Data, and Product teams while maintaining independence throughout the audit lifecycle and driving meaningful, risk-based remediation
- Validate remediation of audit findings and track timely issue closure, including evaluating action plans, independently reviewing and retesting evidence, and confirming sustainable control improvements
- Coach and develop junior team members through the audit lifecycle, including communicating roles and expectations, reviewing workpapers, providing feedback, and reinforcing accountability for deliverables, hours, and cycle time
About the Team
The Moody's Internal Audit team is dedicated to providing independent, objective assurance and advisory services designed to add value and improve the Company's operations and the effectiveness of its control, risk management, and compliance processes. By joining our team, you will be part of a highly collaborative and intellectually rigorous environment that leverages emerging technologies, data analytics, and AI-driven capabilities to advance audit quality across the enterprise. Our team works closely with senior leaders and key stakeholders globally to deliver meaningful insights and drive sustainable improvements across Moody's operations worldwide.
For US-based roles only: the anticipated hiring base salary range for this position is $113,200.00 - $164,050.00, depending on factors such as experience, education, level, skills, and location. This range is based on a full-time position. In addition to base salary, this role is eligible for incentive compensation. Moody’s also offers a competitive benefits package, including not but limited to medical, dental, vision, parental leave, paid time off, a 401(k) plan with employee and company contribution opportunities, life, disability, and accident insurance, a discounted employee stock purchase plan, and tuition reimbursement.
Moody’s is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, sex, gender, age, religion or creed, national origin, ancestry, citizenship, marital or familial status, sexual orientation, gender identity, gender expression, genetic information, physical or mental disability, military or veteran status, or any other characteristic protected by law. Moody’s also provides reasonable accommodation to qualified individuals with disabilities or based on a sincerely held religious belief in accordance with applicable laws. If you need to inquire about a reasonable accommodation, or need assistance with completing the application process, please email View email address on powertofly.com . This contact information is for accommodation requests only, and cannot be used to inquire about the status of applications
For San Francisco positions, qualified applicants with criminal histories will be considered for employment consistent with the requirements of the San Francisco Fair Chance Ordinance.
This position may be considered a promotional opportunity, pursuant to the Colorado Equal Pay for Equal Work Act.
Click here to view our full EEO policy statement . Click here for more information on your EEO rights under the law . Click here to view our Pay Transparency Nondiscrimination statement .
Candidates for Moody's Corporation may be asked to disclose securities holdings pursuant to Moody’s Policy for Securities Trading and the requirements of the position. Employment is contingent upon compliance with the Policy, including remediation of positions in those holdings as necessary.
- ...JCW is partnering with a leading regional bank to hire a Senior IT Audit Manager for their expanding Internal Audit team. This is a high-impact role within a well-established financial institution, offering the opportunity to drive meaningful improvements to the bank'...SuggestedFull time
$99k - $232k
Industry/SectorNot ApplicableSpecialismBusiness ControlsManagement LevelManagerJob Description & SummaryThe OpportunityAs an IT Audit Controls/SOX Manager, you will play a pivotal role in delivering comprehensive internal audit services across various industries. Within our...SuggestedFull timeH1b$160k - $190k
...Position Title ~ Senior IT Audit Manager Location – New York City, New York (Hybrid 3 days in office – Midtown Manhattan) Learn more about the general tasks related to this opportunity below, as well as required skills. Summary The Senior IT Audit Manager...SuggestedWork at officeFlexible hours$99k - $252.45k
...ApplicableSpecialismAssuranceManagement LevelManagerJob Description & SummaryThe OpportunityAs a Digital Assurance & Transparency - IT Audit Manager, you will play a pivotal role in providing assurance services over clients' digital environments, including processes and...SuggestedFull timeH1b$150k - $175k
...role offering the opportunity to help shape the future of the IT Audit function, work closely with senior leadership, and drive the adoption... ...and a hands-on, proactive approach to audit. The VP, IT Audit Manager, will perform audits with a focus on all aspects of technology,...SuggestedFull time- ...A leading global financial institution is seeking a Technology Audit Manager to join its New York-based Internal Audit team. This is a hands... ...walkthroughs, control testing, and detailed audit procedures. Evaluate IT processes, technology controls, governance, and risk management...Full time
- ...involvement in cyber risk, regulatory compliance, vulnerability management, remediation, incident readiness, and security governance. The... ...communicate material risks to senior management. Partner with Risk, Audit, Compliance, technology, and business stakeholders. Role...Full timeWork at officeLocal area
$225k - $275k
...operating companies help clinicians detect cancer earlier, identify and manage infectious diseases ranging from tuberculosis and HIV to sepsis... ...cyber assurance, including customer security questionnaires, audit response, ISO 27001, HITRUST, SOC 2, PCI DSS, and other...Full timeRemote work$225k - $275k
...biopharma R&D digitalization), IDBS (BioPharma lifecycle data management software), IDT (custom oligonucleotides and genomic solutions),... ...platform cyber assurance, including customer security questionnaires, audit response, ISO 27001, HITRUST, SOC 2, PCI DSS, and other...Full timeContract workRemote work- ...executes tasks needed to maintain trust across compliance, audits, risk management, vendor risk, privacy, and AI governance, enabling organizations... ...surfaces late, you walk back in as a peer and move it. Sales closes. The work you did upstream is why it lands. The...Full timeWork at officeRemote workHome office
- ...head of security operations at an enterprise organization. Firsthand experience owning a security program, including building teams, managing budgets, and reporting to boards. An established network and respected reputation within the CISO community. Deep fluency in...
- ...Engineering, Product, Legal, People Operations, IT, and Go-to-Market to make clear, risk-... ..., secure design reviews, vulnerability management, secrets and dependency management,... ...security diligence, including questionnaires, audits, penetration tests, security reviews, and...Work at officeImmediate startRemote workHome officeFlexible hours
- ...mindset across Varo's product and engineering organizations.Skills & QualificationsBanking & Fintech Expertise: Extensive experience managing information security within a regulated bank or financial services institution, with a solid grasp of OCC/FDIC compliance...Work at officeShift work
- ...1, 2012. We are one of the largest asset managers in Asia and number one among Japanese financial... ...Coordinate with security operations, IT, Legal, Compliance, BCP, Head Office, and... ...examinations, internal/external audits, and management reviews. Track regulatory...Work at officeWork from homeFlexible hours2 days per week
- ...gallons of high-quality drinking water, managing wastewater and stormwater, and reducing air... ...within Information Technology (IT) and ensuring that projects, initiatives,... ...Participate in annual financial and technology audits for the agency. Examine computer systems...
$150k - $200k
...cybersecurity guidance and oversight to Vistrada clients by leading and managing their cybersecurity programs to help protect their... ...response coordination and oversight experience.Strong understanding of IT Risk and components, including application, infrastructure,...Work experience placementRemote workFlexible hours$299k - $344k
...guided tools, coaching, therapy, medication management, and specialty care. With outcomes... ...security, technology risk, compliance, and IT strategy. This leader will ensure the protection... ..., including security reviews, audits, RFPs/RFIs, customer escalations, and technical...Work at officeWorldwideRelocationSleeping nights2 days per week3 days per week- ...responsibilities include assessing security risks, coordinating security audits, monitoring threat landscapes, and directing incident detection... ...compliance. The CISO also leads security awareness programs, manages security vendors and tools, prepares reports and briefings for...Full timeRemote work
$160k - $200k
...1, 2012. We are one of the largest asset managers in Asia and number one among Japanese financial... ...Coordinate with security operations, IT, Legal, Compliance, BCP, Head Office, and... ...examinations, internal/external audits, and management reviews. Track regulatory...Full timeWork at officeWork from homeFlexible hours2 days per week- ...to engage and transact with leading asset managers and bank issuers on a massive scale through... ...relationships.Regulatory Compliance & Audit: Ensure compliance with financial industry... ...Collaboration: Partner with executive leadership, IT teams, and external stakeholders to align...
- ...fintech company delivering cloud-based trading communications and managed connectivity solutions to financial institutions worldwide. Our... ...trust & commercial enablement Support client security reviews, audits, certifications, due diligence, and RFP activities to...Full timeWork at officeRemote workWorldwideFlexible hours
- ...thoughtful, responsible innovation. And through it all, we lead with purpose, love, and... ...you inherit a legacy infrastructure, manage a large team, and maintain the status quo.... ...ensuring they operate within defined boundaries, audit their own actions, and surface anomalies...Full timeFor contractorsRemote workDay shift
- ...information assets and technologies are adequately protected. Risk Management: Identify, assess, and mitigate information security risks to... ...architecture, solutions architecture, network architecture and/or IT infrastructure systems; or 2. A baccalaureate degree from an...Full timeLocal area
- ...sets the strategic direction for the firm’s Information Security Management System, security governance, risk management, incident response... ..., risk assessment, control monitoring, executive reporting, audit readiness, certification support, and continuous improvement. Serves...Work at officeRemote workRelocationVisa sponsorshipRelocation package
- ...Mission ButterflyMX is on a mission to empower people to open and manage doors & gates from a smartphone. Our products are installed in... ...strategic and hands‑on role. You’ll set direction, manage budgets, lead audits and certifications, but also dive into architecture reviews,...Full timeRemote workWorldwideFlexible hours
$20 - $25 per hour
...AuditSuisse Assurance is a professional audit and assurance firm focused on helping high... ...We are seeking motivated, detail-oriented IT Auditors to join our growing cybersecurity... ...Senior IT Auditor, Lead Auditor, and Audit Manager roles. Responsibilities Assist with...Full timeRemote work$100k - $130k
...global publishing firm. They seek a Senior IT Auditor to join their Manhattan, NY... ...ResponsibilitiesLead information systems audits, technology risk assessments, and internal... ...organizationPrepare audit reports, present findings to management, and build strong relationships with...Work at officeRemote work$260k - $280k
...integrity across market data operations. The Chief Information Security Officer (CISO) leads the enterprise-wide cybersecurity and risk management program, overseeing Reg SCI, SOC 1/2, ISO 27001, and GDPR compliance frameworks. This role designs and governs the information...Local area- ...and market trends. Mentor internal teams and contribute to the evolution of the global Field CISO program. Work with product managers, business, and other teams at Check Point. Qualifications • 10+ years of experience in cybersecurity, including leadership...
- ...demands a strategic leader with a strong background in commercial SaaS agility, public sector governance, and public company risk management. Key responsibilities include developing a security vision and roadmap, fostering a security-first culture, and ensuring...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Audit Manager. Be the first to apply!
- information technology and services consultant New York, NY
- it risk analyst New York, NY
- remote health information technology New York, NY
- IT coordinator New York, NY
- IT infrastructure project manager New York, NY
- IT infrastructure New York, NY
- IT student New York, NY
- IT delivery manager New York, NY
- information technology intern New York, NY
- IT internship New York, NY





