Deriv.com logo
Deriv.comPosted 1 month ago

Internal IT Auditor (Regulated Fintech)

On-siteDubai, Dubai, United Arab Emirates

Full TimeSenior LevelLarge

Job Summary

Conduct technology risk-based regulatory audits across banking, virtual asset, and investment service entities, evaluating internal controls, infrastructure vulnerabilities, and DevOps pipelines. Audit specialized core systems including VASP wallets, cryptographic key management, and algorithmic trading platforms to mitigate operational risks and prevent cybersecurity breaches. Collaborate directly with engineering and InfoSec teams to integrate robust technical controls into daily workflows and drive remediation plans to completion. Report tech risk findings and cyber posture insights to senior management and audit committees while tracking global standards such as DORA, ISO 27001, and SOC 2.

Required Qualifications

  • 5+ years in IT audit or technology compliance
  • Ideally with experience gained inside a regulated fintech, banking, investment services, or VASP environment
  • Deep understanding of IT regulatory frameworks
  • Knowledge of technology risk guidelines, cybersecurity mandates, and frameworks like DORA
  • Proven experience auditing cloud environments (AWS/GCP)
  • Proven experience auditing containerized systems (Kubernetes/Docker)
  • Experience auditing IAM
  • Experience auditing encryption standards
  • Experience auditing blockchain tech
  • Degree in CS, Cybersecurity, or IT
  • CISA certification
  • Excellent spoken and written English
  • Integrity and discretion required to handle sensitive compliance matters

Desired Qualifications

  • Experience gained inside a regulated fintech, banking, investment services, or VASP environment
  • CRISC certification
  • CISM certification
  • CISSP certification

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce