Description
Robert Half's enterprise client is looking for an experienced IT Auditor to support a 100% remote, long-term contract opportunity.
This role focuses on examining technology risk and control environments across cloud platforms, cybersecurity operations, software delivery practices, and service reliability programs.
The position also contributes to reviews involving AI governance and control frameworks, helping stakeholders strengthen oversight of both traditional technology services and emerging intelligent systems.
Responsibilities
- Conduct technology audits covering cloud environments, cybersecurity controls, platform operations, and enterprise risk areas.
- Examine security configurations across cloud infrastructure, including identity administration, privileged access, and governance over core services.
- Review software delivery ecosystems by assessing CI/CD pipelines, release processes, and engineering controls that support secure deployments.
- Evaluate DevSecOps practices, vulnerability remediation workflows, and safeguards related to software components and supply chain risk.
- Assess credential protection measures such as secrets storage, key management settings, and rotation procedures for sensitive access assets.
- Analyze operational quality practices including monitoring, resiliency testing, incident response, and production service observability.
- Review release governance methods such as phased rollout strategies, feature control mechanisms, and safe deployment standards.
- Assess governance models for AI and responsible use of intelligent technologies, including lifecycle oversight, model risk, and controls for agent-based solutions.
- Work closely with engineering, security, data, and governance teams to identify deficiencies, recommend control enhancements, and communicate audit results clearly.
Requirements
- At least 5 years of experience in IT audit, cybersecurity, cloud engineering, DevOps, platform engineering, or a closely related field.
- Strong understanding of cloud security principles, cybersecurity control frameworks, identity and access management, and Azure-based environments.
- Hands-on experience reviewing CI/CD processes and secure software development or deployment practices.
- Familiarity with tools and concepts such as Azure DevOps, GitHub Actions, Infrastructure as Code, vulnerability management, and secrets management.
- Ability to assess service reliability, operational governance, and production monitoring practices within complex technology environments.
- Proven skill in developing audit findings and translating technical issues into practical recommendations for leadership.
- Knowledge of audit and control concepts related to information systems, including IT audit programs, audit findings, and frameworks such as CobiT.
- Experience with AI governance, responsible AI, or cloud environments spanning large-scale or multi-tenant platforms is preferred.
Technology Doesn't Change the World, People Do.