Audit Manager, Technology
Listed on 2026-08-02
-
IT/Tech
Cybersecurity, IT Business Analyst, IT Project Manager
We’re building a relationship‑oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients. At CIBC, we embrace your strengths and your ambitions, so you are empowered team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute. To learn more about CIBC, please visit
What you’ll be doingThe Audit Manager, Technology is responsible for the development, execution, and timely completion of a risk‑based IT audit plan and procedures to ensure that IT audits are conducted to high standards of accuracy, completeness, rigor, and consistency with regulatory and industry standards. These responsibilities include evaluation of audit findings, preparation of audit reports, and making value‑added recommendations to senior management to improve the organization’s information technology in the United States.
The IT Audit Manager will also be responsible for coaching and mentoring staff and seniors on IT audits and developing relationships with senior management. At CIBC we enable the work environment most optimal for you to thrive in your role. You’ll have the flexibility to manage your work activities within a hybrid work arrangement where you’ll spend 2+ days per week on-site, while other days will be remote.
you’ll succeed
- Audit focused :
Understand technology and business processes and risks to be able to identify key controls for audit engagement. - Finalize scope and develop testing strategies for team members along with managing multiple team members on audit engagements.
- Effectively identify deficiencies and draft issue language by identifying root causes rather than symptoms of control weaknesses and assist management in developing appropriate action plans.
- Work with limited oversight to lead and support execution of technology and applications audits (i.e. Access Management, Change Management, Incident Management, Technology Governance, Infrastructure Management, SDCL audits) and integrated audits.
- Collaboration :
Work collaboratively with audit management and other audit team members to plan and execute risk‑based audits. - Capable of identifying, assessing and testing design and operating effectiveness of IT general controls within various business process/Integrated audits.
- Teamwork :
Coach and manage personnel effectively on assigned audits and projects. - Contribute to the positive and team‑oriented culture by maintaining cooperative relationships (assisting other project teams when necessary), facilitating the resolution of conflicts, sharing information, and accepting and providing feedback.
- Manage special projects as requested by management.
You have a Bachelor’s degree in Computer Science, Information Technology, Finance, or a related field. Advanced degrees or certifications (e.g., MBA, MSc in Cybersecurity) are advantageous. Professional Certifications such as Certified Information Systems Auditor (CISA). Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), Certified in Risk and Information Systems Control (CRISC) and other relevant certifications (e.g., AWS Certified Solutions Architect, Microsoft Certified: Azure Security Engineer) highly preferred.
You can demonstrate 6‑8 years of extensive experience in planning and executing SOX and/or IT audits including but not limited to Access Management, Change Management, SDLC, ITGC and integrated audits. You should have the ability to travel up to 5%. Values matter to you. You bring your real self to work and you live our values - trust, teamwork, and accountability.
residents — your privacy rights regarding your actual or prospective employment
This position has an expected salary range of $120,000 USD – $150,000 USD for the market based on experience, qualifications, and location of the position (salary differential for other locations will be discussed at the time of the interview). The successful candidate may be eligible to participate in the relevant business unit’s incentive compensation plan, which may also include a discretionary…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).