yoinka

Staff IT Auditor (SOX & Cybersecurity)

AMD

Penang, MalaysiaFull TimeStaff
Sign in to applyVerified 1h ago
Location
Penang, Malaysia
Employment
Full Time
Work model
On-Site
Level
Staff

Skills

CybersecuritySAP

About this role

WHAT YOU DO AT AMD CHANGES EVERYTHING   At AMD, our mission is to build great products that accelerate next-generation computing experiences—from AI and data centers, to PCs, gaming and embedded systems. Grounded in a culture of innovation and collaboration, we believe real progress comes from bold ideas, human ingenuity and a shared passion to create something extraordinary. When you join AMD, you’ll discover the real differentiator is our culture. We push the limits of innovation to solve the world’s most important challenges—striving for execution excellence, while being direct, humble, collaborative, and inclusive of diverse perspectives. Join us as we shape the future of AI and beyond.   Together, we advance your career.

THE ROLE

We are seeking an experienced Staff IT Auditor with 5+ years of progressive IT audit experience and a strong background in cybersecurity and SOX IT General Controls (ITGC). Reporting to the IT Audit Director, this role will lead risk-based audit engagements and provide independent assurance over the design and effectiveness of technology controls across the organization.   THE PERSON: The ideal candidate brings deep knowledge of IT systems, cybersecurity frameworks, regulatory compliance, and risk management practices. This individual will independently plan and execute complex audits, assess system implementations, and deliver practical, risk-based recommendations that strengthen governance, enhance security, and support business objectives. Experience within a Big 4 or nationally recognized public accounting firm or a global public company is highly desirable.

KEY RESPONSIBILITIES

Audit Planning & Risk Assessment Lead the planning and execution of risk-based IT, cybersecurity, and SOX audit engagements, including defining scope, objectives, and testing strategies. Perform comprehensive IT risk assessments across business processes, applications, infrastructure, and cloud environments. Align audit activities with organizational objectives, regulatory requirements, and the company’s evolving risk profile.   IT Controls & SOX Compliance Evaluate the design and operating effectiveness of IT controls, with emphasis on SOX IT General Controls (access management, change management, and IT operations). Perform testing of automated application controls, system configurations, and interface controls supporting key business processes. Conduct key report testing, including validation of report logic, data sources, completeness, and accuracy to support reliance for financial reporting purposes. Execute SOX ITGC testing to support financial reporting compliance and coordinate with business and external audit stakeholders as appropriate. Assess adherence to internal policies and external standards, including ISO, NIST, COBIT, PCI DSS, and COSO frameworks. Perform system implementation and post-implementation reviews to ensure appropriate governance and control integration.   Cybersecurity Analysis Evaluate the effectiveness of the organization’s cybersecurity governance, risk management, and control framework. Assess key security domains including identity and access management, privileged access, network and endpoint security, vulnerability management, encryption, logging and monitoring, and incident response. Review security architecture across on-premises and cloud environments to ensure appropriate protection of company and customer data. Identify control gaps and emerging risks and provide actionable recommendations to strengthen the organization’s cybersecurity posture. Communicate cybersecurity risks clearly to technical teams and senior leadership, translating technical findings into business impact.   Reporting, Analytics & Continuous Improvement Prepare clear, concise audit reports with well-supported findings and practical recommendations. Track and validate remediation efforts to ensure timely resolution of identified issues. Leverage data analytics to enhance audit

Staff IT Auditor (SOX & Cybersecurity) at AMD, Penang, Malaysia | Yoinka