Financial Services Cybersecurity Internal Audit Manager
Manager
Audit Management
Cyber Resilience
Cybersecurity Tools
Data Governance
Data Security
Incident Response
Information Security
Information Technology (IT)
Infosec
Internal Audit
Iso 27001
IT Audit
Management
Nist Cybersecurity Framework
Risk Management
Security
Security Compliance
Third Party Risk Management
Job Description
Crowe is seeking a Financial Services Cybersecurity Internal Audit Manager to lead internal audits and advisory engagements for cybersecurity within financial services clients, delivering findings and recommendations to strengthen security posture and regulatory compliance across engagements.
Compensation
Salary: USD 104,500 - 213,800 per year.
Location
Dallas, TX (onsite).
Responsibilities
- Plan and execute internal audits across cybersecurity and IT infrastructure domains, covering areas such as Security Operations Centers (SOC), Data Services and Data Governance, Third Party Risk Management (TPRM), Cyber Resilience and Incident Response, and infrastructure risk control frameworks including 2LOD reviews.
- Oversee infrastructure-level Incident and Problem Management audits.
- Coordinate Integrated Cyber Auditing alongside business and operational auditors to align with client objectives.
- Assess the design and operational effectiveness of technical cybersecurity controls against regulatory expectations and industry frameworks (NIST CSF, COBIT, ISO 27001).
- Prepare comprehensive audit documentation, reports, and deliverables independently and on schedule.
- Communicate audit procedures, findings, and recommendations directly to client stakeholders, addressing both technical and non-technical audiences.
- Maintain audit quality and responsiveness throughout the engagement lifecycle to ensure client satisfaction and confidence.
Requirements
- Minimum of 5 years of total professional experience, including at least 3 years performing internal audits in cybersecurity, IT general controls, or infrastructure risk within a financial services or consulting environment.
- Strong working knowledge of cybersecurity operations, controls, and governance practices.
- Ability to independently complete audits from planning through reporting with minimal oversight.
- Excellent written and verbal communication skills, especially for documenting observations and explaining results to clients.
- Bachelor's degree required.
- One or more relevant professional certifications: CISSP, CISA, or equivalent.
Technologies and Frameworks
- NIST CSF
- COBIT
- ISO 27001