Senior Internal Auditor, Technology

GitLab
Canada, United States
Workplace: RemoteFull timeUSD 86,400 - 146,400 annuallyFunction: Finance & AccountingEducation: bachelorsSkills: ["Communication","Risk assessment","Stakeholder management","Documentation","Self-directed prioritization"]

Execute technology-focused internal audits to assess SOX compliance, IT general/application controls, cybersecurity, and control adequacy across multi-cloud environments including AWS and Google Cloud. Partner with Engineering, IT Operations, Security, and business teams to translate technical risks into business impact, maintain audit documentation, and drive remediation closure. Use data analytics, automation, and generative AI tools to improve audit efficiency, coverage, and quality while supporting planning through reporting.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
GitLab
GitLab
1 month ago

Senior Internal Auditor, Technology

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 16 hours agoStatus: Live

Job Summary

Execute technology-focused internal audits to assess SOX compliance, IT general/application controls, cybersecurity, and control adequacy across multi-cloud environments including AWS and Google Cloud. Partner with Engineering, IT Operations, Security, and business teams to translate technical risks into business impact, maintain audit documentation, and drive remediation closure. Use data analytics, automation, and generative AI tools to improve audit efficiency, coverage, and quality while supporting planning through reporting.
Location: Canada, United States
Workplace: Remote
Employment Type: Full time
Job Function: Finance & Accounting
Seniority: Mid level

Key Responsibilities

  • •Execute technology audits covering SOX compliance, cloud infrastructure controls across AWS and Google Cloud Platform, application controls, cybersecurity, AI/ML systems, and DevSecOps practices.
  • •Design and test IT general controls, application controls, and entity-level controls with minimal supervision.
  • •Support the IT SOX program from planning through reporting, including risk-based audit planning, process walkthroughs, testing, and coordination with external co-source providers.
  • •Maintain high-quality audit documentation including risk and control matrices, process flows, test procedures, findings, and business impact assessments.
  • •Partner with process owners to drive remediation, validate effectiveness before closure, and provide leadership status updates while collaborating to assess emerging risks and new implementations for control adequacy.

Pay and Benefits

Salary: USD 86,400 - 146,400 annually
Equity and Bonus:Equity
Perks:Health InsurancePaid LeaveEquity CompensationParental LeaveHome Office

Key Requirements

  • •Experience executing technology audits and risk management work, including audit planning, testing, reporting, and remediation in complex technology environments.
  • •Experience supporting IT SOX programs and designing/testing IT general controls and application controls.
  • •Knowledge of IT control frameworks including COBIT, NIST, ITIL, ISO 27001, and the COSO Internal Control Framework.
  • •Knowledge of cloud security and cybersecurity fundamentals including network security, encryption, identity and access management, vulnerability management, and Zero Trust principles.
  • •Bachelor’s degree in Accounting, Information Technology, Computer Science, Finance, or related field and an active relevant professional certification (e.g., CPA, CIA, CISA, CISSP, CISM, CRISC or equivalent).
Education:Bachelor's in Accounting, Information Technology, Computer Science, Finance, or a related field
Skills:CommunicationRisk assessmentStakeholder managementDocumentationSelf-directed prioritization
Certifications:Certified Public Accountant (CPA)Certified Internal Auditor (CIA)Certified Information Systems Auditor (CISA)Certified Information Systems Security Professional (CISSP)Certified Information Security Manager (CISM)Certified in Risk and Information Systems Control (CRISC)
Tech Stack:Amazon Web Services (AWS)Google Cloud PlatformSOXSarbanes-Oxley ActCOBITNational Institute of Standards and Technology (NIST)Information Technology Infrastructure Library (ITIL)ISO 27001Committee of Sponsoring Organizations of the Treadway Commission (COSO)IT general controlsApplication controlsCybersecurityNetwork securityEncryptionIdentity and access management (IAM)Vulnerability managementZero TrustAgileDevOpsDevSecOps

Company Brief

GitLab
Provides a single application for the complete DevSecOps lifecycle, offering source code management, CI/CD, security, and collaboration tools to help teams deliver software faster and more securely.
Industry: Developer Tools
Company Size: Enterprise (1,001+ employees)
Revenue: USD 250M to 500M
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: San Francisco, United States
Founded: 2011
WebsiteLinkedIn