IT Systems Implementation Auditor (Remote)

Kyndryl · Hortolândia, SP, BR

**Who We Are** At Kyndryl, we run and reimagine the mission\-critical technology systems that drive advantage for the world’s leading businesses. We are at the heart of progress; with proven expertise and a continuous flow of AI\-powered insight, enabling smarter decisions, faster innovation, and a lasting competitive edge. For our people—Kyndryls—that means doing purposeful work that powers human progress. Join us and experience a flexible, supportive environment where your well\-being is prioritized and your potential can thrive. **The Role** **The Role** Experience with system implementations and cybersecurity, knowledge of IT security, internal controls, auditing, and risk management frameworks, including ISO 27000, COSO, NIST, COBIT, IPPF, and ITIL. Experience auditing or reviewing IT controls, processes, and security configurations, including change, incident, access, patch, API, inventory, vulnerability, operations, database, and risk management; authentication and authorization; secure system and application configuration; data integrity and protection; data migration, system integrations and application controls; security assessments; and business continuity and disaster recovery. SOX experience is a plus. Execute risk\-based audits and System Pre\-Implementation Reviews (SPIRs) by defining objectives, evaluating processes and related risks, designing, and performing control testing, assessing whether controls effectively mitigate risks, communicating impacts on objectives, developing recommendations, and preparing final reports that clearly state the effectiveness of controls for each identified risk. Communicate issues, risks, and technical information clearly and professionally in English to both technical and non\-technical audiences. Demonstrate strong analytical and critical\-thinking skills. Lead teams of IT auditors in conducting SPIRs for technology transformation initiatives, including Enterprise Resource Planning (ERP) implementations, cloud migrations, Software as a Service (SaaS) deployment, system integrations, and AI solutions. Assess project governance, solution design, security controls, data migration, testing, segregation of duties, operational readiness, and go\-live risks. Demonstrate excellent time\-management skills. **Who You Are** You are good at what you do and possess the required experience to prove it. However, equally as important – you have a growth mindset; keen to drive your own personal and professional development. You are customer\-focused – someone who prioritizes customer success in their work. And finally, you are open and borderless – naturally inclusive in how you work with others. **Being You** Diversity is a whole lot more than what we look like or where we come from, it is how we think and who we are. We welcome people of all cultures, backgrounds, and experiences. But we are not doing it single\-handedly: Our Kyndryl Inclusion Networks are only one of many ways we create a workplace where all Kyndryls can find and provide support and advice. This dedication to welcoming everyone into our company means that Kyndryl gives you – and everyone next to you – the ability to bring your whole self to work, individually and collectively, and support the activation of our equitable culture. That is the Kyndryl Way. **Who You Are** **Required Technical and Professional Expertise** * 5\+ years of professional experience in Information Technology, IT Audit, Technology Risk, System Implementations, IT Operations, Application Development, Cloud Technologies, or a related technical field * Experience participating in or assessing large\-scale technology implementations, ERP transformations, cloud migrations, SaaS deployments, system integrations, AI initiatives, or other enterprise transformation programs. * Experience in cybersecurity, SOX, risk management, or IT auditing. * Strong knowledge of cybersecurity laws, regulations, and standards. * Familiarity with COBIT, ISO 27001/27002, NIST, COSO, and general security practices. * Ability to execute risk\-based audits by defining objectives, assessing processes and risks, testing control effectiveness, communicating impacts, developing recommendations, and reporting an effectiveness conclusion for each risk. * Strong knowledge of cybersecurity processes and concepts, including incident response, secure software development, security governance, cloud computing, SDLC, third\-party risk management, penetration testing, vulnerability management, disaster recovery, segregation of duties, audit logging, physical security, access management, and configuration management. * Experience leading cybersecurity audits and reviews and conducting security assessments for a global organization. * Excellent time\-management skills. Ability to communicate issues, risks, and technical information clearly and professionally in English and Portuguese to technical and non\-technical audiences. * **Preferred Technical and Professional Expertis