Senior Internal Auditor Technology
Payward, Inc. is a global financial infrastructure company and the parent organization behind Kraken. It provides trading, custody, payments, lending, staking, tokenized assets, derivatives, and market data infrastructure to consumers, professional traders, institutions, enterprises, fintechs, banks, exchanges, asset managers, and onchain platforms.
Funding history
Investors
Projects
About Payward, Inc.
Payward, Inc. operates a unified financial infrastructure platform powering a portfolio of products including Kraken, NinjaTrader, Breakout, xStocks, CF Benchmarks, and Payward Services. Its shared architecture provides global liquidity, risk and margin management, collateral and settlement, compliance and licensing, and operational infrastructure across crypto, tokenized assets, and traditional markets. Through Payward Services, the company offers APIs and infrastructure for crypto trading, custody, on/off-ramps, tokenized equities, derivatives, staking and yield, payments, and benchmark data. Payward operates across more than 190 jurisdictions and serves consumers, professional traders, institutional investors, enterprises, fintechs, banks, exchanges, asset managers, and DeFi/onchain protocols.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You execute technology audits across cybersecurity, cloud, access management, software development, data, privacy, resilience, and AI. You lead audit engagements, document findings, validate remediation, communicate conclusions to stakeholders, and improve audit methodologies using AI-enabled workflows and analytics.
Requirements
- 5-8 years of experience in IT audit, information security, or technology risk
- Broad IT audit experience
- Knowledge of cybersecurity, identity and access management, ITGCs, cloud, SDLC, change management, data, privacy, resilience, and third-party technology risk
- Knowledge of ISO 27001, NIST CSF, SOC 2, or COBIT
- Knowledge of AWS, GCP, or Azure
- Working knowledge of data governance and privacy
- Exposure to AI governance, security, and privacy
- Technical fluency with enterprise technology, systems, databases, and deployment pipelines
- Ability to communicate findings to engineers and senior leaders
- Ability to apply generative AI responsibly with human oversight
- CISA, CISSP, CRISC, CIA, or equivalent certification
- Familiarity with blockchain infrastructure or digital asset custody
- Experience with CI/CD pipelines, version control, or modern deployment practices
Responsibilities
- Plan and execute technology audits
- Assess security controls for systems holding customer records and identity documentation
- Assess operational resilience, incident management, technology risk, and third-party technology oversight
- Review data governance, privacy, and data-lake controls
- Assess AI governance, security, and privacy
- Test IT general controls and application controls against established frameworks
- Identify gaps and perform root cause analysis
- Apply AI-enabled testing, anomaly detection, and analytics
- Lead multiple audit engagements
- Document audit findings and prepare workpapers and reports
- Track and validate issue remediation
- Improve audit methodologies and frameworks
- Lead engagement teams and coordinate co-sourced specialists
- Communicate audit results and control improvements
- Translate technical findings for non-technical stakeholders and senior leadership
