
Description:
The Internal Audit Manager, Digital Assets Technology is responsible for providing independent and objective assurance over the Groups Digital Assets technology and integrated business audits.
This role is accountable for end-to-end internal audit coverage, including audit planning, risk assessment, audit execution, reporting and continuous business monitoring of digital asset products, platforms, governance and risk management frameworks.
Leading and executing IT audits of applications supporting the digital assets business. The role ensures that digital asset activities are conducted within Groups risk appetite, in compliance with regulatory expectations, and in line with internal policies.
The role works closely with other Group Internal Audit teams and key stakeholders across the business, risk, technology and compliance functions to deliver a coordinated and integrated audit approach, and to provide senior management and the Board with clear insight into digital assets risks, control effectiveness and emerging issues.
Responsibilities:
- Develop and maintain a risk-based audit plan for digital assets technology in accordance with IIA Standards and the Group Internal Audit methodology.
- Auditing digital asset technology auditing includes operating systems involving cryptocurrencies, tokens, custody solutions, blockchain based applications, smart contracts, and wallet security.
- Perform periodic and continuous risk assessments to identify and assess key risks arising from digital assets programmes and relevant technologies, new initiatives, regulatory changes and external developments.
- Plan and perform internal audit engagements in line with IIA Standards, including defining audit objectives, scope, and criteria for digital asset technology audits.
- Obtain sufficient, reliable, relevant and useful information to provide a reasonable basis for audit conclusions, including through walkthroughs, control testing, data analysis, and interviews.
- Evaluate the design and operating effectiveness of governance, risk management and internal
control processes over digital assets activities.
- Assess whether digital asset activities are conducted in line with the Groups risk appetite, internal policies and applicable laws and regulations.
- Identify and clearly document audit findings, root causes, risk implications, and control weaknesses in accordance with Group Internal Audit standards and documentation requirements.
- Communicate audit result through clear, accurate, and timely reporting to management and relevant governance forums and/or committees.
- Monitor and follow up on management actions plans to ensure effective and timely remediation of audit issues.
- Maintain independence and objectivity while providing credible and constructive challenge to management.
- Coordinate with other Group Internal Audit teams to ensure adequate coverage, avoid duplication, and support a consistent and integrated assurance approach.
- Contribute to quality assurance and improvement activities within Group Internal Audit, including methodology enhancements and peer reviews.
- Maintain up-to-date knowledge of digital asset technology risks, regulatory expectations, and industry practices to continuously enhance audit effectiveness.
Risk Management:
- Complete relevant risk assessment activities in a timely and effective manner, including the completion of the Risk Assessment template.
- Assist in continuous auditing and monitoring of key risks in the portfolio.
- Utilise the risk assessment process and stakeholder engagement to determine an anticipatory audit plan.
Governance:
- Continuous engagement of stakeholders and establish good working relationship to help the businesses improve the control environment.
- Escalate delays in the execution of audit work, both to business and GIA management.
- Be able to clearly explain issues, along with the risks and root causes to GIA and business management.
Regulatory & Business Conduct:
- Display exemplary conduct and live by the Groups Values and Code of Conduct.
- Display exemplary conduct and live by the Groups Values and Code of Conduct.
- Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across Standard Chartered Bank.
- This includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct.
- Effectively and collaboratively identify, escalate, mitigate and resolve risk, conduct and compliance matters.
Key Stakeholders:
- Designated business and technology stakeholders, typically related to individual audit assignments and the assigned portfolio; and
- GIA stakeholders team leaders, team members, team managers, Product, Functional, Country and Regional Heads of Audit.
Our Ideal Candidate:
- A robust IT audit background (cybersecurity, blockchain, infrastructure) with 5+ years of experience.
- Deep knowledge of blockchain and distributed ledger technologies (DLT), including differences between public and private chains.
- Expertise in crypto custody and security, including private key management, cold/hot storage, and wallet infrastructure.
- Good understanding of smart contract logic, programming, and DeFi protocols.
- Experience executing riskbased audit methodologies.
- Strong analytical skills, attention to detail, and intellectual curiosity.
- Excellent written and verbal communication skills, with the ability to translate complex technical issues into businessfriendly language.
- Strong interpersonal skills and the ability to build effective working relationships across GIA, business, and technology teams.
- High level of responsibility, selfmotivation, and ability to work independently while managing multiple tasks effectively.
- Ability to think critically and creatively in analysing information to support audit planning, fieldwork, and reporting.
- Proactive attitude, willingness to learn, and ability to seek guidance when appropriate.
- Handson experience with analytics/visualisation tools (e.g., PowerBI, Tableau) and the ability to interpret and generate insights.
- Ability to design and perform data analytics. Certifications in analytics or AI/GenAI are an advantage.
Role Specific Technical Competencies:
- Internal Audit
- Blockchain/Distributed Ledger Technology (DTL)/Smart Contracts
- Risk Management
- Technology
- Data analysis
- Product and Process
- Audit Report writing
Didn’t find the job appropriate? Report this Job