Kyndryl
Kyndryl
Kyndryl is an IT infrastructure services company that helps enterprise organizations design, operate, and modernize complex technology environments. Its work spans consulting, cloud services, cybersecurity, data and AI, and digital workplace transformation, supporting organizations in industries including automotive, healthcare, banking, and logistics. Kyndryl combines infrastructure expertise with technology partnerships to address mission-critical systems, reduce operational complexity, and help businesses adapt to changing technology needs.

IT Systems Implementation Auditor (Brazil Remote)

Lead risk-based audits and System Pre-Implementation Reviews for Kyndryl’s ERP, cloud, SaaS, integration, and AI transformation programs. This full-time remote position is based in Brazil.

Description

  • Conduct risk-based audits and System Pre-Implementation Reviews (SPIRs)
  • Set audit objectives while evaluating processes and associated risks
  • Design and carry out control testing
  • Determine whether controls adequately address identified risks
  • Explain how findings affect business and project objectives
  • Recommend improvements and produce final reports documenting control effectiveness for each risk
  • Present issues, risks, and technical matters clearly to both technical and non-technical stakeholders
  • Manage IT audit teams performing SPIRs for ERP implementations, cloud migrations, SaaS rollouts, system integrations, and AI solutions
  • Review governance, solution architecture, security controls, data migration, testing, segregation of duties, operational readiness, and go-live risks

Requirements

  • At least five years of professional experience in information technology, IT audit, technology risk, system implementations, IT operations, application development, cloud technologies, or a related technical field
  • Experience participating in or evaluating large-scale technology implementations, ERP transformations, cloud migrations, SaaS deployments, system integrations, AI initiatives, or other enterprise transformation programs
  • Experience with cybersecurity, SOX, risk management, or IT auditing
  • Strong understanding of cybersecurity laws, regulations, and standards
  • Familiarity with COBIT, ISO 27001/27002, NIST, COSO, and established security practices
  • Ability to conduct risk-based audits and evaluate control effectiveness
  • Strong understanding of cybersecurity processes, including incident response, secure software development, security governance, cloud computing, SDLC, third-party risk, penetration testing, vulnerability management, disaster recovery, segregation of duties, audit logging, physical security, access management, and configuration management
  • Experience leading cybersecurity audits and reviews and performing security assessments for a global organization
  • Excellent time-management abilities
  • Professional communication skills in English and Portuguese for technical and non-technical audiences
  • Preferred bachelor’s or master’s degree in information security, information systems, computer science, or a related discipline
  • Relevant certifications are preferred, including CISA, CISSP, CISM, CRISC, CIA, CDPSE, ITIL, cloud, or SAP certifications

Benefits

  • Flexible and supportive work environment
  • Focus on employee well-being
  • Be Well programs covering financial, mental, physical, and social health
  • Individualized development objectives
  • Ongoing feedback
  • Certification opportunities with Microsoft, Google, and Amazon
  • Coaching and practical learning experiences
  • Advanced learning opportunities
  • Support for career progression and professional development

Related Jobs

Control Risks

Business Analyst, Crisis and Resilience at Control Risks - Remote UK

Control Risks

Control Risks is seeking a Business Analyst to support crisis management, business continuity, employee readiness, and resilience initiatives for a technology client. The role covers global preparedness programs, executive training, emerging-risk projects, and resilience planning.

Open