Senior IT Auditor- IT & Cyber
Listed on 2026-09-12
-
IT/Tech
Cybersecurity, Information Security & Data Protection
At Moody's, we unite the brightest minds to turn today’s risks into tomorrow’s opportunities. We do this by striving to create an inclusive environment where everyone feels welcome to be who they are—with the freedom to exchange ideas, think innovatively, and listen to each other and customers in meaningful ways. Moody’s is transforming how the world sees risk. As a global leader in ratings and integrated risk assessment, we’re advancing AI to move from insight to action—enabling intelligence that not only understands complexity but responds to it.
We decode risk to unlock opportunity, helping our clients navigate uncertainty with clarity, speed, and confidence.
If you are excited about this opportunity but do not meet every single requirement, please apply! You still may be a great fit for this role or other open roles. We are seeking candidates who model our values: invest in every relationship, lead with curiosity, champion diverse perspectives, turn inputs into actions, and uphold trust through integrity.
Skills and Competencies- Minimum of 3 years of experience in a Big 4 firm or global organization in IT audit, cybersecurity, risk, or controls
- Strong understanding of IT and cybersecurity risk management, controls, and governance frameworks (e.g., NIST, ISO, COBIT, COSO)
- Experience auditing cloud environments (AWS, Azure, SaaS) including security architecture, configurations, and access controls
- Knowledge of identity and access management (IAM, PAM, SSO, MFA) and privileged access oversight
- Understanding of secure development practices (SDLC, Agile, Dev Ops, Dev Sec Ops ) and application security controls
- Experience using data analytics tools (e.g., Excel, Power BI, Tableau) to support audit testing and insights
- Strong analytical, critical thinking, and communication skills with the ability to translate technical findings into business insights
- Demonstrated proficiency in artificial intelligence concepts, with hands‑on experience using AI tools to streamline workflows and enhance operational efficiency. Proven ability to implement AI‑powered solutions to solve business challenges. Demonstrates a growing awareness of AI risk management and a commitment to responsible and ethical AI use
- Bachelor’s degree required in cybersecurity, computer science, computer engineering, information technology, information systems, or a related field
- Professional certifications such as CISSP, CISA, or equivalent are preferred
This role is responsible for leading and executing risk‑based IT and cybersecurity audits while providing insights on emerging technology risks across the organization.
- Lead and execute IT and cybersecurity audits with a focus on cloud, AI, and modern technology risks
- Develop an understanding of technology environments, business processes, and associated risks and controls
- Plan audit scope through process analysis, risk assessment, and control identification
- Evaluate cybersecurity governance, cloud security, identity access management, infrastructure security, and data protection controls
- Execute audit testing and maintain high‑quality, well‑documented work papers
- Translate technical findings into clear, actionable business insights and recommendations
- Communicate effectively with stakeholders across Cyber, Technology, Data, and Product teams
- Track and validate remediation efforts to ensure sustainable control improvements
The Internal Audit team is dedicated to delivering independent, objective assurance and advisory services that enhance organizational value and strengthen risk management, control, and governance processes across Moody’s global operations.
For US‑based roles only: the anticipated hiring base salary range for this position is $82,400.00‑$,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).