Regeneron Logo

Regeneron

Senior IT Auditor

Reposted 8 Days Ago
Be an Early Applicant
In-Office
Sleepy Hollow, NY
94K-153K Annually
Senior level
In-Office
Sleepy Hollow, NY
94K-153K Annually
Senior level
Plan, execute, and report IT audits assessing application, infrastructure, cloud, data management, SDLC, change management, and IT operations. Perform SOX control walkthroughs/testing, evaluate cybersecurity controls (IAM, vulnerability management, logging/monitoring, incident response), use data-analytics and automation (Dataiku/Alteryx), identify control deficiencies, and present findings and recommendations to Internal Audit leadership and stakeholders.
The summary above was generated by AI

The Senior IT Auditor is responsible for contributing towards planning, executing, and reporting on operational IT audits, evaluating risks and controls, including application, infrastructure, cloud, data management, SDLC, change management, and IT operations, in accordance with IIA standards and department methodologies. Perform IT SOX control walkthroughs and testing, along with preparing the related documentation. Assess the effectiveness of cybersecurity controls, including identity and access management, vulnerability management, logging and monitoring, incident response, and security governance. 
 

In this role, a typical day might include the following: 

  • Review controls related to cloud computing (e.g., AWS, Azure), SaaS platforms, data lakes, and analytics environments, including shared responsibility models. 

  • Design and execute data analytics‑driven audit procedures using tools such as Dataiku or equivalent, to identify anomalies, trends, and control gaps. 

  • Apply automation, continuous auditing techniques, and responsible use of AI, where appropriate, to improve audit efficiency, coverage, and insight, including assessing AI‑enabled business processes and controls. 

  • Manage timely completion of audit tasks, including communication of status to the auditee and the Manager/Director. 

  • Identify, document, and communicate control deficiencies, root causes, technology risks, and opportunities for improvement, providing practical, actionable recommendations aligned with business objectives. 

  • Present the results of audit work to Internal Audit Management and auditees, including practical recommendations to address identified risks and/or weaknesses in internal controls as well as opportunities to enhance operational efficiencies. 

  • Prepare clear, concise, and professional audit reports and executive‑level presentations for Internal Audit leadership, management, and key stakeholders. 

This role might be for you if have experience with :

  • Advanced knowledge of IT infrastructure, applications, cybersecurity, and automated controls  

  • Strong understanding of SOX, COSO, COBIT, NIST, GxP, GDPR, and other relevant regulatory and governance frameworks. 

  • Strong analytical, critical‑thinking, and problem‑solving skills, with the ability to independently assess risk and propose solutions. 

  • Comfortable working and learning independently and as part of a team 

  • Excellent interpersonal, communication and writing skills, strong organizational abilities, and attention to detail are required   

  • Experience with data analytical tools (e.g. Dataiku, Alteryx, etc.) 

  • Understanding of AI concepts, associated risks (e.g., model governance, data quality, access, ethical use), and internal controls relevant to AI‑enabled processes. 

To be considered for this role, you must have a Bachelor's degree with a minimum of 3 - 4 years of progressive experience in IT audit, information security, or technology risk.  CISA, CISM and/or CISSP certifications/license preferred. Experience auditing and evaluating infrastructure, cybersecurity risks/controls and auditing operating systems. Pharmaceutical, life sciences, or other regulated industry experience strongly preferred. Big 4 or public accounting experience preferred but not required. 

Does this sound like you? Apply now to take your first step towards living the Regeneron Way! We are committed to building a workplace with an inclusive culture. Regeneron is an equal opportunity employer and all  qualified applicants will receive consideration for employment without regard to race, color, religion or belief (or lack thereof), sex, sexual orientation, gender identity or expression, gender reassignment, marital or civil partnership status, civil status, pregnancy or parental status, age, disability, nationality, citizenship status, ethnic or national origin, membership of the Traveler community, familial status, genetic information, military or veteran status, or any other characteristic protected under applicable law. Where required, we will provide reasonable accommodation to applicants with known disabilities or chronic illnesses during the recruitment process, unless such accommodation would impose undue hardship.


Where necessary, we disclose salary ranges for roles in all countries in which we operate.  The final offer will be determined within the relevant range based on the country of employment, specific role level, and your skills and experience. In some countries, collective bargaining agreements (CBAs) may apply and influence certain elements of pay or benefits.  Regeneron offers a competitive and comprehensive total rewards package which may include, depending on country and role: annual bonuses or other incentive plans, equity awards, pension or retirement benefits, 401(k) company match, health and wellness programs, fitness centers, insurance benefits (e.g. medical, dental, vision, life and disability), paid time off, and family support benefits. For additional information about Regeneron benefits in the U.S., please visit https://careers.regeneron.com/en/working-at-regeneron/total-rewards/. For other locations, additional information will be provided during the recruitment process.  If you have any questions, please speak with your recruiter. 


Please be advised that at Regeneron, we believe we do our best work when we are together. For that reason, many roles are required to be performed on‑site. Please speak with your recruiter and hiring manager for more information about on‑site expectations for your role and location.


As part of the recruitment process, certain background checks may be conducted in accordance with the laws of the country where the position is based. The purpose of such checks is to verify certain information prior to the commencement of employment such as identity, right to work and educational qualifications.


For jobs in Canada: this posting is for an existing position.


Salary Range (annually)

$93,900.00 - $153,300.00

Regeneron Basking Ridge, New Jersey, USA Office

Basking Ridge, United States

Regeneron New York, New York, USA Office

81 Columbia Turnpike, Rensselaer, New York, New York, United States, 12144

Similar Jobs

3 Days Ago
In-Office
New York City, NY, USA
123K-145K Annually
Senior level
123K-145K Annually
Senior level
Artificial Intelligence • Legal Tech • Software
Own and build the company’s IT General Controls and technology risk audit program. Responsibilities include risk assessment, testing access, change management and system operations controls, reviewing SOC 1/SOC 2 reports, coordinating external and co-source auditors, assessing deficiencies, driving remediation, and implementing AI-driven automation to improve audit efficiency and coverage.
Top Skills: AclAuditboardAWSAzureChatgptClaudeGCPGeminiGitGoogle WorkspaceNetSuiteOktaPower BISalesforceSQLTableauVantaWorkday
One Month Ago
In-Office
115K-140K Annually
Senior level
115K-140K Annually
Senior level
Insurance • Agriculture
Lead and perform third-line IT internal audits and IT SOX testing across regions, assessing IT governance, ITGCs, cybersecurity, and infrastructure controls. Draft audit and SOX reports, track remediation, collaborate with external auditors, promote alignment with regulatory requirements and industry frameworks, and support audit planning and delivery within agreed timelines.
Top Skills: CloudCobitIso 27001Iso 27017It Service Management (Itsm)ItilNetwork SecurityNistTeammate
One Month Ago
In-Office
New York, NY, USA
100K-110K Annually
Mid level
100K-110K Annually
Mid level
AdTech • Marketing Tech
The Senior IT Auditor conducts internal audits, tests IT controls, reviews SOX compliance, and collaborates with management to enhance process effectiveness.
Top Skills: AclAuditboardServicenowSox ComplianceTeammate

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account