Home
/
Accounting and Finance
/
Internal Audit - Technology Risk & Cybersecurity, Vice President
Internal Audit - Technology Risk & Cybersecurity, Vice President-February 2024
New York
Feb 11, 2026
ABOUT GOLDMAN SACHS
At Goldman Sachs, your skills and experiences will create a world of possibilities for our clients. From the latest IPO and market insights to investments in clean energy and infrastructure, each one
10,000+ employees
Financial Services
VIEW COMPANY PROFILE >>
About Internal Audit - Technology Risk & Cybersecurity, Vice President

  INTERNAL AUDIT

  In Internal Audit, we ensure that Goldman Sachs maintains effective controls by assessing the reliability of financial reports, monitoring the firm's compliance with laws and regulations, and advising management on developing smart control solutions. Our group has unique insight on the financial industry and its products and operations. We're looking for detail-oriented team players who have an interest in financial markets and want to gain insight into the firm's operations and control processes.

  WHO WE ARE

  The Goldman Sachs Group, Inc. is a leading global financial services firm providing investment banking, securities and investment management services to a substantial and diversified client base that includes corporations, financial institutions, governments and high-net-worth individuals. The firm is headquartered in New York and maintains offices in London, Frankfurt, Tokyo, Hong Kong and other major financial centers around the world.

  BUSINESS UNIT OVERVIEW

  The primary role of Internal Audit is to help protect the assets, reputation and sustainability of the organization. Internal Audit independently assesses the firm's internal control structure. We provide assurance that financial reporting is reliable, that there is compliance with applicable laws and regulations and that the firm's operations are effectively controlled. We assist management in identifying risk and commercially managing risk by providing advice in developing control solutions and monitoring the implementation of management's control measures. IA assists the firm's Board of Directors Audit Committee in fulfilling its oversight responsibilities and regularly interacts with the external independent auditors. Internal Audit is organized into global teams of business and technology auditors:

  - Securities - covers the Firm's Sales, Trading and Insurance businesses; including related supporting control functions such as Operations, Technology, Product Control and Divisional Compliance.

  - Investment Banking - covers the firm's banking activities and Global Investment Research operations.

  - Investment Management - covers the firm's Private Wealth Management, Asset Management and Merchant Banking businesses.

  - Corporate - covers the firm's Risk Management, Finance, Corporate Governance, Legal, Compliance and Regulatory Reporting areas as well as Human Capital Management, Services and the Executive Office.

  - Core Engineering - covers the firm's core technology infrastructure and software development lifecycle control groups

  - Technology Risk & Cybersecurity - covers firm-wide technology risk, including information and cyber security, business resilience, technology governance and vendor technology risk management

  For each assigned review you will report to an experienced audit manager. You will be expected to:

  Assist / Lead the risk assessment, scoping and planning of a review. Assist / Lead in executing the review. Specifically focusing on the following: Design and execute tests to validate identified application system controls, which may require data analysis, code inspection and re-performance of system processes. Analyze the design of controls around the underlying system architecture in the context of information technology controls such as security, availability and performance and their impact on business-aligned technology groups. Analyze the business and technology processes to evaluate the effectiveness of the relevant technology controls. Validate that system features meet business, technology and regulatory requirements. Validate the quality of internal SOX assessments. Document the results of the test steps executed within the IA automated document project repository. Assist/Lead in the report preparation Assist/Lead in presenting the scope, progress and results of the review to internal, technology and business stakeholders.

  Mandatory Qualifications

  8+ years' work experience, and a degree in Computer Science, Information Security, Engineering or equivalent discipline Technology skills including: Deep understanding of Linux and Windows operating systems, experience of batch scripting and executing standard commands Internet infrastructure design and installation and support of network devices and firewalls Cloud computing concepts, technologies, risks and mitigating controls Systems and security administration and configuration of servers and desktops (UNIX, Windows, directory services etc.) Security risks related to web, mobile, web services, and client/server architectures Encryption schemes (symmetric, asymmetric, and hashing) and how they may be applied in an application architecture Vulnerability assessment and penetration testing methodologies and processes for web, thick client and mobile applications Experience with Splunk and/or other SIEM platforms would be useful but not required Threat modelling, intelligence and incident response Management, monitoring and operations of technology (backups, change management, system monitoring, incident/problem Management) Business continuity planning and disaster recovery design and implementation Security within the software development lifecycle Relevant technology standards and regulations - NIST Cyber Security Framework, FFIEC CAT, ISO 27001, GDPR, NYSDFS, data privacy rules, FFIEC IT handbooks etc. Data and log analysis (using SQL and Splunk) and visualization (using Spotfire, Tableau, QlikView or other) would be useful but not required Relevant certification or industry accreditation (CISA, CISSP, CISM, etc.) useful but not required Ability to work effectively across a large audit team, understanding the team's role in the overall strategy of the firm Written and verbal communication skills a must; strong interpersonal skills essential. Job requires frequent interaction with technology management Must be able to multitask while managing both time and work load Must be highly motivated with strong analytical skills, willing and able to learn new business and system processes quickly

  Salary Range

  The expected base salary for this New York, New York, United States-based position is $115000-$250000. In addition, you may be eligible for a discretionary bonus if you are an active employee as of fiscal year-end.

  Benefits

  Goldman Sachs is committed to providing our people with valuable and competitive benefits and wellness offerings, as it is a core part of providing a strong overall employee experience. A summary of these offerings, which are generally available to active, non-temporary, full-time and part-time US employees who work at least 20 hours per week, can be found here.

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Medicare Sales Field Agent - Los Angeles CA
Become a part of our caring community and help us put health first Are you passionate about the Medicare population, looking for an opportunity to work in sales with the ability to directly impact yo
Health Economics and Outcomes Research (HEOR) and Real World Evidence (RWE) Senior Manager
Job Description At Thermo Fisher Scientific, you'll discover meaningful work that makes a positive impact on a global scale. Join our colleagues in bringing our Mission to life - to enable our custom
Investor Services - Associate 2
AIS Investor Services Operations Job title: AIS Investor Services, Associate Reports to: AIS Investor Services Manager Position Description This position is within the Investor Services business unit
ROC Intern
Intern Job Description (Costa Rica D&A teams) Responsibilities: Moody's Investors Service is among the world's most respected and widely utilized sources for credit ratings and research. Our opin
Senior Financial Analyst - Basel III Transformation
Overview This position is responsible for the leadership and management of the Basel III Strategic Transformation program across First Citizens Bancshares, Inc. Gain expert level knowledge to collabo
Senior Associate, Accounting
West Creek 3 (12073), United States of America, Richmond, Virginia Senior Associate, Accounting Does the idea of working with professional, highly trained accountants inspire you? Are you an accounti
Commercial Underwriter II (Hybrid)
Overview This position supports the commercial lending team by underwriting at an advanced level of complexity for commercial portfolios. Provides guidance to structuring, servicing, and analysis for
Anti-Financial Crimes Lead Principal Auditor -Vice President
Job Description: Job Title Anti-Financial Crimes Lead Principal Auditor Corporate Title Vice President Location Cary, NC Overview Our Group Audit Anti-Financial Crime (AFC) team delivers audits and v
Banking Associate (US) Amherst
Hours 40 hours including weekends Job Details The Banking Associate is a banking professional that is integral to TD's Brand promise as they are accountable for delivering legendary Customer experien
Financial Services Representative - Boston, MA
Job Description: Financial Services Representative Have a passion for helping people? Join our team of Financial Services Representative where you'll have dedicated time to focus on growth and career
Copyright 2023-2026 - www.zdrecruit.com All Rights Reserved