Senior It Auditor – Contract Manufacturing Partners

NVIDIA NVIDIA · Semiconductors · Santa Clara, CA

This role is for a Senior IT Auditor focused on assessing the IT general controls, cybersecurity posture, data integrity, and operational resilience of NVIDIA's Global Manufacturing Operations and External Partner ecosystem. The auditor will evaluate IT environments against industry frameworks, focusing on supply chain automation, IP protection, B2B data exchanges, and shop-floor control systems.

What you'd actually do

  1. Plan, lead, and execute complex IT and security audits focusing on manufacturing systems (MES), Product Lifecycle Management (PLM), Enterprise Resource Planning (ERP - SAP), and supply chain B2B integrations.
  2. Evaluate the IT risk and security posture of external manufacturing partners (Foundries, OSATs, and Subcontractors). Assess their compliance with NVIDIA’s security standards, data protection protocols, and intellectual property safeguards.
  3. Serve as the primary on-site IT contact for factory users and stakeholders within the North and South America regions, ensuring effective communication and coordination with remote and global IT teams across multiple domains (including networking, storage, and applications). Additionally, manage urgent Tier-3 escalations with third-party IT vendors regarding network connectivity, servers, client systems, and production tools.
  4. Audit network segmentations, access controls, APIs, and data transmission protocols that facilitate automated data exchange between NVIDIA and external manufacturing facilities.
  5. Evaluate IT environments against industry frameworks (ISO 27001 / SOX) to ensure data privacy, financial integrity, and regulatory compliance.

Skills

Required

  • Bachelor’s degree in Management Information Systems, Computer Science, Cybersecurity, Supply Chain Management, or a related technical field (or equivalent experience).
  • 8+ years of experience in IT Audit, IT Security, or Tech Risk Management, preferably within high-tech/semiconductor manufacturing companies.
  • Deep understanding of automated manufacturing environments, supply chain logistics, and B2B integration technologies (e.g., EDI, APIs, SFTP).
  • Familiarity with Shop Floor Control and Manufacturing Execution Systems (MES).
  • Strong knowledge of cloud security (AWS/Azure), identity and access management (IAM).
  • Exceptional verbal and written communication skills, with the ability to articulate complex technical risks to non-technical business leaders and external vendors.
  • Ability to travel domestically and internationally (up to 15-20%) to conduct on-site partner assessments when required.

Nice to have

  • Professional certification such as CISA (Certified Information Systems Auditor) or CISSP (Certified Information Systems Security Professional) is highly preferred.
  • Hands-on experience with data analytics and visualization tools (e.g., SQL, Python, Tableau, or Power BI) to automate audit testing.
  • A proven track record of auditing intellectual property (IP) protection controls in a collaborative engineering or manufacturing environment.
  • Ability to drive and engage third-party IT teams to complete tasks remotely in accordance with NVIDIA IT standards. Energetic, proactive, and possessing a strong “can-do” attitude; comfortable communicating with both IT and non-IT personnel

What the JD emphasized

  • manufacturing systems
  • supply chain B2B integrations
  • external manufacturing partners
  • data protection protocols
  • intellectual property safeguards
  • automated data exchange
  • regulatory compliance