This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Mercury is building a complete finance stack for startups. We work hard to create the easiest and safest banking* experience possible to simplify entrepreneurs' and business owners’ financial lives. To accomplish this mission, not only do we have to build/maintain a magical banking platform but must also develop and uphold the trust and safety of our customers and the financial industry. To contribute to this effort, we’re looking to hire a Senior IT Auditor to support the efforts of our Internal Audit function at Mercury in the execution of our audit plan. You’ll help drive audits internally within Mercury as well as support audits being conducted externally by partners and third parties. In this role, you’ll perform hands-on IT and security audits, assess Mercury’s technology risks and controls, and work cross-functionally to improve Mercury’s control environment.
Job Responsibility:
Assist in identifying, analyzing, and assessing risk, specifically IT, cybersecurity, and data security related, throughout Mercury
Scope and plan multiple audits across Mercury products and operations
Conduct process walkthroughs and execute audit testing to confirm the design and operational effectiveness of internal controls
Assess compliance with Mercury’s compliance obligations
Socialize, document, and report audit issues identified
Collaborate with teams to develop appropriate action plans, track audit issue remediation, and conduct issue follow up testing
Other duties as assigned
Requirements:
Experience scoping and planning new, complex audits
Comfortable conducting walkthroughs, creating audit test plans, and executing internal controls testing
Experience working with financial services companies
Working knowledge of laws, regulations and risk management standards for financial services
Familiarity with IT control frameworks (e.g., NIST, ISO 27001, COBIT)
Exposure to cloud environments (e.g., AWS) and related security controls
Experience with security and threat assessments
Ability to quickly grasp and understand complex business processes
Ability to build relationships/partnerships and work cross-functionally to drive time-sensitive deliverables, issues tracking, and reporting
Excellent written and verbal communication skills
Ability to manage their own schedule to ensure deadlines are met
Be a self-starter, someone who likes to innovate and think about how we can do things differently to be more efficient and effective