IT Internal Auditor, Senior
Shift4 View all jobs
- Valletta, Malta Island
- €45,000-50,000 per year
- Permanent
- Full-time
- Plan and execute IT regulatory and operational audits across the full audit lifecycle, including audit planning, risk assessment, fieldwork, reporting, and follow-up.
- Assess the design and effectiveness of IT controls across key domains, including IT governance, access, change and release management, SDLC, application and interface controls, information security and cybersecurity, IT operations, third-party risk, data integrity, and IT resilience, business continuity, and disaster recovery.
- Identify and communicate technology risks, control gaps, and regulatory issues, including potential business and compliance impacts.
- Prepare clear, concise, and actionable audit reports with practical recommendations aligned to business and regulatory requirements.
- Perform audit follow-ups to validate remediation actions and ensure timely closure of issues.
- Document audit work in accordance with IIA standards, ensuring workpapers are complete and support audit conclusions.
- Maintain the IT audit universe and risk assessments to support risk-based audit planning.
- Provide independent advisory support to management, including pre-implementation reviews, risk assessments, and guidance on control design, automation, regulatory readiness, and emerging technology and governance risks.
- Participate in special reviews and ad hoc projects, such as system implementations, cybersecurity assessments, or regulatory initiatives.
- Collaborate with global Internal Audit, IT, Compliance, Risk Management, and external auditors to promote an efficient, coordinated audit approach.
- Support SOX ITGC activities on a limited, as needed basis.
- Bachelor's Degree in Information Systems, Computer Science, or a related field.
- 4-5 years of IT audit experience in a regulated environment (industry or public accounting).
- Solid understanding of IT control frameworks, including COSO and COBIT, and their application in regulated environments.
- Strong working knowledge of IT audit domains including IT governance and risk management, access controls, change and release management, system development and implementation (SDLC), application and interface controls, information security and cybersecurity, IT operations, third-party and outsourcing risk, data integrity, and IT resilience, business continuity, and disaster recovery.
- Professional certification: CISA.
- Exposure to SOX environments.
- Big 4 or top-tier consulting experience.
- Experience supporting audits in financial services, payments, fintech, or other regulated industries.
- Familiarity with audit management tools and data analytics techniques.
- Strong analytical, organizational, and communication skills, with the ability to engage effectively with both technical and non-technical stakeholders.
- Advanced proficiency in Microsoft Office applications (Excel, Word, PowerPoint).
- Excellent command of English, both written and spoken.