D

Internal IT Auditor - Regulated Fintech

Deriv

Dubai, United Arab Emirates · Full Time

Be the first to apply

Experience
5+ yrs
Salary
—
Openings
1
Posted
2 weeks ago
Work mode
In office
Education
Bachelor's degree in Computer Science, Cybersecurity, or IT
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

Role Overview

We are seeking a hands-on Internal IT Auditor to thoroughly evaluate the foundational technology systems used across our entire group, including innovative AI solutions under development. This position involves rigorously testing and validating technological controls to stand up to regulatory inspections, cyber threats, or operational disruptions.

Key Responsibilities

  • Conduct comprehensive audits of cloud environments such as AWS and GCP, DevOps pipelines, identity and access management, encryption and key management, trading platforms, payment systems, and related technologies.
  • Evaluate whether IT governance, change management, resiliency, and data protection mechanisms comply with internal policies and external regulatory mandates across all operational jurisdictions.
  • Assess AI and autonomous agent systems, including model governance, data permissions, system access, and result reliability to ensure accountability and containment of their actions.
  • Develop and implement automated audit tools, analytics, and agents that integrate into daily workflows to enable continuous, population-wide testing rather than sampling.
  • Generate actionable findings with clear criteria and remediation plans, communicate risks effectively to management and the Board, and oversee remediation until risk exposure is significantly reduced.

Candidate Profile

  • Minimum of 5 years' experience performing technology audits within regulated sectors such as fintech, banking, investment services, or Virtual Asset Service Providers (VASPs), with a strong emphasis on hands-on system evaluations rather than document reviews.
  • Strong technical proficiency auditing cloud platforms (AWS/GCP), IAM, encryption standards, continuous integration and deployment pipelines, and blockchain technologies, capable of examining configurations and code directly.
  • In-depth knowledge of technology risk frameworks and cybersecurity regulations such as DORA, ISO 27001, SOC 2, and International Institute of Auditors (IIA) standards, ensuring audit findings are defensible and compliant across multiple regions.
  • Relevant academic background in Computer Science, Cybersecurity, or IT; CISA certification required, with CRISC, CISM, or CISSP credentials considered advantageous.
  • Experience designing, deploying, and governing AI-driven automation, analytics pipelines or testing agents, embedding these tools into operational workflows beyond pilot phases.
  • Expertise in auditing AI systems by identifying potential model failures, monitoring agent permissions, evaluating audit trails, and maintaining accountable deployment practices while communicating effectively with both technical teams and executive leadership.

Minimum education

Bachelor's Degree

How they work

Communication Problem Solving Attention to Detail Accountability
🤖
Online · instant AI help
Broxer