SOX Auditor - IT Controls Manager
Kraken
Building the Future of Open Finance
Payward - the parent company behind Kraken, NinjaTrader, Breakout, xStocks, Payward Services and CF Benchmarks - has spent the last 15 years building one of the most modern and globally accessible financial infrastructure platforms in the industry, built to advance an open, global financial system.
Before you apply, we encourage you to explore our culture page to understand what drives us and how we work.
The Opportunity
You will lead Internal Audit's IT SOX controls testing program building the testing approach, workpapers, and institutional knowledge from the ground up. This is a hands-on role with real program ownership and you'll be doing it at a crypto exchange — where the technology stack spans blockchain-native infrastructure, digital asset custody systems, on-chain and off-chain processing, and a pace of engineering change that most companies never encounter. The systems are complex, the deployments are frequent, and the controls are consequential. If you want an IT SOX role where the tech is genuinely interesting and the stakes are real, this is it.
Responsibilities span the following areas:
- Lead the execution of independent testing of IT General Controls (ITGCs) across key control domains: access management, change management, and system operations.
- Evaluate the design and operating effectiveness of IT controls across in-scope applications and infrastructure, including systems that support blockchain-native operations, digital asset custody, and crypto trading platforms. Document testing procedures and results to meet Internal Audit and external auditor quality standards.
- Identify new systems, applications, or process changes that emerge during testing and assess their SOX implications in coordination with the SOX Compliance team.
- Build and maintain testing programs, templates, and workpapers that create a repeatable, scalable foundation for IT SOX testing.
- Identify opportunities to leverage AI-enabled workflows and data analytics to improve testing coverage and efficiency across IT control domains.
- Independently validate the remediation of open SOX findings, including material weaknesses and significant deficiencies, across ITGC control areas.
- Evaluate control deficiencies by performing root cause analysis and assessing the severity and pervasiveness of exceptions to inform deficiency classification.
- Assess whether management's remediation actions are adequately designed and operating effectively before closing findings.
- Track remediation progress, escalate delays or gaps, and report status to Internal Audit leadership and the Audit Committee as required.
- Coordinate with the SOX Compliance team to ensure alignment on remediation expectations, timelines, and evidence requirements.
- Serve as a trusted Internal Audit point of contact for IT control owners across Engineering, Infrastructure, Security, and IT Operations. Bridge the gap between audit methodology and engineering culture — these teams speak a different language than accountants, and you need to be fluent in both.
- Contribute to Internal Audit reporting to the Audit Committee, external auditor, and senior leadership on IT SOX testing coverage, findings, and remediation status.
- Partner with the business process SOX tester and co-sourced resources to ensure coordinated testing coverage across the full SOX program.
What You Bring
- 8+ years of experience in IT audit, internal audit, external audit, or SOX compliance, with significant exposure to IT general controls testing.
- Experience in crypto, fintech, payments, or technology-intensive environments with complex, rapidly evolving infrastructure.
- CISA and CPA certifications required. Candidates with one certification who are actively pursuing the other will be considered.
- Strong knowledge of ITGC frameworks, SOX compliance requirements, COSO, COBIT, and PCAOB auditing standards as they apply to IT controls.
- Hands-on experience testing ITGCs across access management, change management, and system operations.
- Technical fluency with enterprise technology environments — you don't need to be an engineer, but you need to understand how systems, databases, and deployment pipelines work to effectively test the controls around them.
- Understanding of how IT controls underpin the reliability of financial reporting — you can connect an ITGC failure to its downstream impact on business process controls and the financial statements.
- Experience working with or alongside external auditors (Big 4 preferred) on SOX engagements.
- Experience operating across multi-entity structures or multiple jurisdictions.
- Effective communicator who can translate technical IT audit findings for control owners, engineering teams, senior leadership, and external stakeholders.
Nice to Haves
- Familiarity with blockchain infrastructure, digital asset custody systems, on-chain transaction processing, or crypto-native technology environments.
- Experience with CI/CD pipelines, GitLab or similar version control systems, cloud infrastructure (AWS, GCP), and modern deployment practices.
- Prior experience building or scaling an IT SOX testing program in a growth-stage or first-year SOX company.
- Familiarity with audit management platforms such as AuditBoard or Workiva.
- Familiarity with AI-assisted audit tools and willingness to adopt emerging technologies.
Unless a specific application deadline is stated in the job posting, applications are accepted on an ongoing basis.
Please note, applicants are permitted to redact or remove information on their resume that identifies age, date of birth, or dates of attendance at or graduation from an educational institution.
We consider qualified applicants with criminal histories for employment on our team, assessing candidates in a manner consistent with the requirements of the San Francisco Fair Chance Ordinance.
Our Commitment
Payward is powered by people from around the world and we celebrate the diverse talents, backgrounds, contributions, and unique perspectives that everyone brings to the table. We hire based on merit, seeking out people with the right abilities, knowledge, and skills for the job. We encourage you to apply for roles where you don't fully meet the listed requirements, especially if you're passionate or knowledgeable about crypto.
We may ask candidates to complete job-related skills or work-style assessments as part of our hiring process. These assessments evaluate competencies relevant to the role and are applied consistently across candidates for similar positions. Results are considered alongside experience and interviews, and are not the sole basis for any employment decision.
As an equal opportunity employer, we don't tolerate discrimination or harassment of any kind, whether based on race, ethnicity, age, gender identity, citizenship, religion, sexual orientation, disability, pregnancy, veteran status, or any other protected characteristic as outlined by federal, state, or local laws.
$74k - $112k
Freddie Mac is seeking a Finance Risk and Controls Testing professional for a role focused on non-IT SOX control testing. The position requires a strong understanding of Sarbanes-Oxley requirements and collaboration with various stakeholders. Ideal candidates will have...Suggested- A recruitment agency is seeking a Senior SOX Auditor to join its Atlanta team. This remote role focuses on ensuring SOX 404 compliance, strengthening internal controls, and enhancing financial reporting reliability. Responsibilities include leading SOX testing and documentation...SuggestedRemote job
- ...looking for a Senior Internal Auditor at our headquarters in Mooresville... ...the effectiveness of internal controls over financial reporting while... ...planning and execution of the SOX program. The ideal candidate... .... This position also involves managing project timelines and client...Suggested
$89.2k - $121.12k
Matson, Inc. in Walnut Creek, California, is looking for a Senior SOX Compliance Auditor. This role focuses on internal controls compliance and provides an opportunity to develop SOX compliance skills at a successful public company. You will participate in compliance testing...Suggested- First Fed is looking for an Internal Auditor responsible for performing evaluations and tests of internal controls, especially under the SOX COSO framework. The position requires collaboration with management, oversight of audits, and contributing to annual assessments...Suggested
$110k - $140k
Withum is seeking an IT Internal Controls Audit Lead/Manager in Red Bank, NJ. This hybrid position involves leading audit teams in testing General IT Controls and managing SOX compliance processes. Ideal candidates possess a BA/BS in Accounting or Finance and at least...$110k - $140k
Withum is seeking an experienced IT Internal Controls Audit Lead/Manager in East Brunswick Township, NJ. This role involves planning and testing IT controls as part of SOX compliance. Candidates should have a BA/BS in Accounting or Finance and at least 4 years of public...Work at office$95k - $120k
...client-focused recruitment agency is seeking a Senior Internal Auditor (IT Audit) in Boston, MA. This role involves executing IT audit engagements, supporting SOX compliance, and assessing IT general controls. Candidates should possess a Bachelor's degree and at least 3...- SOX & Internal Controls Compliance IT Manager - CoStar Group Location: Arlington, VA | In office, Monday-Friday Role Overview The SOX & Internal Controls Compliance IT Manager supports Sarbanes-Oxley (“SOX”) compliance, internal controls, and enterprise risk management...Work at officeMonday to Friday
- ...Wilmington, MA is seeking a Senior Internal Auditor to enhance our Internal Audit function. The successful candidate will execute our SOX compliance program and perform... ...analytics to uncover risks and improve internal controls. This hybrid position requires a Bachelor...
$75k - $95k
Graham Healthcare Group in Plano, TX is looking for an Internal Auditor to execute and support the quarterly and annual SOX compliance program. The role includes testing internal controls and updating procedures. This position offers a compensation range of $75,000 to $...$70k - $100k
...company located in Rancho Santa Margarita is seeking a Senior Internal Auditor to provide independent, objective assurance and advisory services. You will assess internal controls, coordinate SOX testing, and prepare audit reports. The ideal candidate holds a Bachelor...- ...position focuses on assisting with Sarbanes-Oxley compliance, managing internal controls, and will require collaboration across various teams. Ideal... .../Accounting and have auditing experience, preferably with SOX. The role promises a dynamic work environment with...
- ...an Internal Audit Senior to join the team at their Corporate Headquarters. The role involves planning and executing SOX implementation, identifying control gaps, and working with stakeholders to improve audit processes. The ideal candidate will have a background in...For contractors
- Q2 India is searching for an Internal Auditor to perform essential audit engagements, focusing on SOX compliance testing. This role will involve evaluating IT controls and contributing to audit projects, working closely with various departments. The ideal candidate will...Flexible hours
- ...vision to protect consumers and help them grow, manage and secure their digital and financial lives.... ...Manager in executing Gen’s business process SOX responsibilities Conduct and document test of design results from SOX control walkthroughs Prepare and maintain...Flexible hours
- NuVasive, LLC is seeking a Staff Auditor to perform internal audit projects and ensure compliance with SOX. This role involves communicating findings and assisting in... ...experience with risk assessments and internal controls. The position requires occasional domestic travel...
- DexCom Inc in San Diego is seeking an Internal Auditor to support its Global Internal Audit function. The role offers growth opportunities... ...s degree, 2-3 years of audit experience, and familiarity with SOX controls. The position supports a flexible work schedule as part-time...Remote jobPart timeWork at officeFlexible hours
$89k - $170.5k
...Lead and perform integrated and IT audit engagements of varying... ...conduct walkthroughs, assess control design, test control operating... ...Audit, IT Project or Product Management, IT Risk Management, IT Compliance... ...ITIL and NIST frameworks, and SOX regulations Strong...- ...provider is searching for an experienced IT GRC Manager to enhance its governance, risk, and... ...This pivotal role focuses on maintaining SOX compliance, facilitating IT risk assessments... ...have a strong background in compliance controls and relevant certifications. The...
- Visual Lease is seeking an IT Manager for SOX & Internal Controls Compliance in Arlington, VA. This role focuses on managing compliance with SOX, conducting risk assessments, and overseeing internal controls. The ideal candidate will hold a Bachelor's degree and have 7...
- UGI Corporation is hiring a Senior IT Auditor to conduct IT operational and SOX compliance audits across the enterprise. This role emphasizes strong project management skills and communication capabilities as it involves collaboration with various stakeholders. The ideal...
- CoStar Group, Inc. is looking for a SOX & Internal Controls Compliance IT Manager in Arlington, VA. This role focuses on supporting SOX compliance and internal controls, requiring a Bachelor's degree in Information Systems or similar. Candidates should have 7-8 years of...
- ...new team member to join our SOX & 17a-5 Controls Team in St. Petersburg, FL.... ...evaluate, and document the key IT controls within the current... ...with internal customers and management is required to identify,... ...Partner with the external auditor’s Technology Assurance team...Work experience placementFlexible hours
- Dycom Industries in West Palm Beach, Florida, is seeking a Senior Manager, IT Audit. In this role, you will oversee the IT Audit team, develop and execute compliance policies, and manage the IT SOX Compliance program. The ideal candidate has a Bachelor's degree or equivalent...Weekly pay
- The Cheesecake Factory Incorporated in Calabasas, CA, is searching for a Senior Internal Auditor. This role supports the SOX compliance program, conducts internal audits, and fosters strong relationships with external auditors. The ideal candidate should have a Bachelor...
- 091 CROWN Holdings, Inc. in Tampa, FL, is seeking an Internal Auditor focused on SOX testing and operational accounting. The role offers a chance to contribute to audit procedures while providing upward mobility and exposure to leadership. Ideal candidates should have...
$78k - $156k
...healthcare company in Chicago is seeking a Senior Global Finance Auditor to conduct financial audits of its international and domestic... ...This role will involve financial statement assessments, internal control evaluations, and traveling to various Abbott locations. The...- ...Stores Inc. is hiring a Corporate Internal Auditor in Tempe, Arizona. The role involves evaluating... ...the design and effectiveness of internal controls, preparing audit findings, and participating in discussions with management. Required qualifications include a Bachelor’...Full timeWork at office
- An established investment management firm in Boston is looking for a Senior Internal Auditor to execute audits and ensure compliance with internal controls. The ideal candidate will have over 4 years of audit experience, preferably within asset management, strong analytical...Work at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SOX Auditor - IT Controls Manager. Be the first to apply!
- assistant auditor United States
- work from home auditor United States
- sox auditor United States
- lease auditor United States
- sales auditor United States
- medical records auditor United States
- field auditor United States
- information system auditor United States
- energy auditor United States
- security auditor United States
