We are looking for a Senior Auditor who is capable of conducting risk-based internal audits across both technology and non-technology areas. The ideal candidate should have a strong understanding of banking technology processes and risk-based auditing, including non-IT areas such as financial audit, procurement, legal/contract, HR/payroll, compliance, operations, and governance, as well as IT audit areas such as IT General Controls (ITGC) and application controls.
The ideal candidate should have strong business process audit experience, a good understanding of internal controls and fraud risk, strong audit report writing skills, and sufficient awareness of IT risks within technology and banking-related companies. Experience in banking, fintech, payment, SaaS, managed services, consulting, listed companies, or companies preparing for an IPO will be an advantage.
Key Qualifications:
- Bachelor's degree (S1) in Accounting, Information Systems, Information Technology, Management, Finance, or other relevant fields;
- Minimum 4 years of professional experience in internal audit, IT audit, business process audit, risk management, compliance, external audit, or assurance;
- Minimum 2 years of experience in business process/non-IT audits, covering at least two of the following areas: finance/accounting, procurement, vendor management, HR/payroll, legal/contract, compliance, operations, sales/revenue assurance, or governance;
- Strong understanding of risk-based internal audit concepts, internal controls, the audit lifecycle, risk rating, root cause analysis, and audit report preparation;
- Understanding of fundamental financial and operational controls, including segregation of duties, maker-checker-approver, authorization matrix, document completeness, reconciliation, exception monitoring, and audit trails;
- Ability to prepare Risk Control Matrices (RCM), identify key controls, perform Test of Design (ToD) and Test of Operating Effectiveness (ToE), conduct audit sampling, and develop audit findings;
- Understanding of operational audit processes, with the ability to prepare working papers, audit reports, recommendations, and effectively follow up on audit findings;
- High level of integrity and strong communication skills, with the ability to communicate effectively with both technical and non-technical stakeholders.
Additional Qualifications / Preferred:
- Audit experience in banking, core banking vendors, switching/payment companies, fintech, financial technology companies, SaaS, or Big Four/second-tier consulting firms;
- Understanding of Bank Indonesia (BI) and Financial Services Authority (OJK) regulations and regulatory expectations related to banking support providers, payment systems, information security, risk management, governance, and reporting;
- Experience in IT process or application system audits, covering areas such as ITGC, user access management, change management, IT operations, incident/problem management, backup/recovery, and application controls;
- Experience conducting audits or assessments related to SOX-like controls, ICFR, governance readiness, audit committee reporting, or policy improvement initiatives, particularly within companies preparing for an IPO;
- Ability to utilize data analytics for audit purposes, such as Advanced Excel, basic SQL, Power BI, basic Python, ACL/IDEA, or other relevant audit tools;
- Understanding of the business or technology landscape within banking, fintech, payment, SaaS, or managed services;
- Professional certifications such as CIA, CISA, CRMA, CRISC, Lead Auditor/Implementer, CPA/CA, or other relevant audit, risk, or security certifications are preferred;
- Candidates without relevant certifications should demonstrate a commitment to obtaining an appropriate certification within 12–24 months of joining the company.