Job detail for IT Audit Specialist
Use AI to assess how you fit
.
Overview
Within the Chief Audit Officer Department, you will join the ICT and Security Audit team and contribute to strengthening the Group's digital resilience. The role involves conducting audits on ICT processes and Artificial Intelligence and Generative AI systems, with the goal of evaluating their governance, reliability, transparency, and compliance in an international, innovative, and constantly evolving context.
What your activities will be
- Conduct audits on ICT processes and Artificial Intelligence and Generative AI systems, evaluating their governance, reliability, transparency, and compliance.
- Assess the adequacy of the AI Governance framework, verifying roles and , approval processes, use case classification, risk management, and continuous monitoring.
- Verify the entire lifecycle of AI solutions: design, development, training, validation, release, monitoring, and decommissioning.
- Analyze controls related to data quality, explainability, bias, hallucinations, prompt injection, data leakage, and misuse of information.
- Prepare audit reports and monitor the implementation of action plans agreed upon with the involved departments.
- Contribute to the evolution of audit methodologies and the analysis of risks related to Artificial Intelligence, collaborating with technical and business stakeholders.
Who we are looking for
If you have the following characteristics, we are waiting for you:
- Degree in Computer Science, Engineering, Mathematics, Economics, or related fields
- Information Technology, Artificial Intelligence, Data Governance, Risk Management, or Internal Audit
- Artificial Intelligence, Machine Learning, and Generative AI, including their lifecycles.
- AI system risks: bias, hallucinations, prompt injection, data leakage, data quality, explainability, and misuse of information.
- AI Governance, risk management, and major AI platforms and technologies.
- English language at least at B2 level according to the CEFR scale and availability for short business trips, including abroad.
Knowledge of the AI Act, NIST AI Risk Management Framework, ISACA AI Framework, ISO IEC 42001, COBIT, and ISO IEC 27001, as well as certifications in Artificial Intelligence, Data Analytics, Internal Audit, or Risk Management, will be considered a plus.
3 years of experience in the following areas are required: Cybersecurity, IT Audit, Information Security, or related activities.
What we offer you
- Gross annual salary starting from €39.000
- The Group provides a variable component of remuneration as regulated by the Remuneration Policies available on the Group's website
- Complementary elements regulated by the National Collective Labor Agreement for the Credit Sector and second-level company agreements
- Professional development initiatives to support the growth of our people
- Extensive training offer through the Corporate Academy dedicated to the continuous development of professional, managerial, and soft skills at all levels
- Possibility to join flexible work arrangements and the 4x9 short week
- Modern and integrated corporate welfare system ( link)
- Health coverage and supplementary pension scheme starting from the date of hiring
- Advantages on the Group's banking products and services
About us
We are leaders in Italy and one of the main banking groups in Europe. Join us and be part of our success story! With over 20 million customers in Italy and abroad, we are a true engine of sustainable growth with a strong commitment to the environment and a tangible impact on society.
People are at the center; we take care of them by committing to creating an inclusive culture within the Group where everyone feels like a protagonist and valued.
Join our international reality. The future is not waited for, it is chosen!
#sharingfuture
We guarantee an inclusive and equal opportunity environment. We will consider all applications regardless of race, religion, sexual orientation, gender identity, marital status, age, disability, or any other protected category in compliance with Legislative Decrees 198/2006, 215/03, and 216/03.
For the evaluation of applications, the data will be used by Intesa Sanpaolo S.p.A. as Data Controller. We invite you to read the dedicated Privacy Policy.