Senior Audit Manager
Amalgamatedbank · New York, NY, US · United States · Hybrid
Pay: USD 160,000 – 190,000 a year
Posted Jul 29, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Purpose of Position:
The Senior Audit Manager supports the Deputy Chief Audit Officer (DCAO) in planning, supervising, and executing the Internal Audit plan, with a primary focus on Information Technology and Information Security risks. The role serves as a subject matter expert in technology and cyber risk while also providing audit coverage across other critical areas of Amalgamated Bank, including Commercial Banking, Risk Management, and Operations. This position is responsible for leading complex, risk-based audits; assessing governance, risk management, and control effectiveness; and ensuring audit activities align with professional standards, regulatory expectations, and industry best practices.
Essential Job Functions:
Lead and supervise internal audits and targeted reviews with a primary emphasis on Information Technology, Information Security, cybersecurity, technology governance, third-party risk management, data protection, and system development life cycle controls.
Serve as the Internal Audit subject matter expert for IT and Information Security, includingidentifyingemerging technology and cyber risks relevant to the Bank.
Plan and execute audits across multiple business lines, including IT, Commercial Banking, Risk Management, and Bank Operations, ensuringappropriate integrationof technology risks into all audits.
Integrate data analytics and AI audit methodologies into the overall audit framework.
Develop audit scopes, perform risk assessments, oversee testing,validateissues, and ensureappropriate coverageof IT-dependent controls.
Identifycontrol deficiencies, assess rootcausesandimpact, and recommend practical, risk-based remediation strategies.
Review and approve audit workpapers to ensure accuracy, completeness, and adherence to Internal Audit standards.
Prepare, review, and edit audit reports to clearly communicate technology, information security, and business risks from a senior management and Audit Committee perspective.
Evaluate management action plans andmonitorthe remediation of IT, information security, and business audit issues.
Coordinate audit activities with internal stakeholders, regulators, and external or co-source auditors, particularly for targeted technology and cybersecurity reviews.
Support enterprise risk assessment, SOX, and regulatory examination activities where technology or data risks are present.
Provide coaching, technical guidance, and performance feedback to audit staff and managers.
Stay current on regulatory guidance, industry standards, and emerging risks related to IT and information security, including FFIEC, NIST, and cybersecurity frameworks.
Assist the DCAO with departmental initiatives, strategic projects, and regulatory or Board-level requests as assigned.
Knowledge, Skills and Experience Requirements :
Bachelor’s degree in Accounting , Finance, Information Systems, Computer Science, or a related field.
Minimum of 8–10 years of progressive…