Internal Auditor II (technology)

F5 F5 · Enterprise · Seattle, WA

Internal Auditor II (Technology) at F5, focusing on technology, cybersecurity, and digital risk within a risk-aligned audit program. The role involves assessing control design and effectiveness, investigating risks in real-world scenarios, and strengthening governance and resilience. Requires experience in IT audit, technology risk, or cybersecurity, with familiarity in frameworks like NIST and ISO 27001.

What you'd actually do

  1. Execute technology, cybersecurity, and digital risk audit engagements as part of a risk-based internal audit plan
  2. Perform audit fieldwork aligned to defined objectives while applying professional skepticism and curiosity to identify risks beyond standard audit procedures
  3. Assess the design and operating effectiveness of controls across technology domains including cloud infrastructure, identity and access management, network security, application security, logging and monitoring, vulnerability management, and incident response
  4. Go beyond “check‑the‑box” testing to understand how systems actually operate, where controls may fail, and how risk could evolve as the business and technology landscape change
  5. Conduct stakeholder interviews and walkthroughs to understand system architecture, processes, and risk trade‑offs

Skills

Required

  • IT audit
  • technology risk
  • cybersecurity
  • cloud platforms
  • SaaS operations
  • NIST
  • ISO 27001
  • COBIT
  • SOC 2
  • COSO

Nice to have

  • CISA
  • CISSP
  • CIA
  • CPA
  • CISM
  • CCSP
  • CRISC
  • AWS
  • Azure
  • GCP
  • secure software development practices
  • DevOps
  • DevSecOps

What the JD emphasized

  • dig deeper to identify emerging and non‑obvious risks
  • how systems actually operate