What are the responsibilities and job description for the Technical IT Architecture Auditor position at Five Rivers IT, Inc.?
Job Summary:
We are seeking a highly skilled and detail-oriented Technical IT Architecture Auditor to evaluate and assess the design, implementation, and governance of IT architectures across the enterprise. This role will focus on auditing critical components of the IT infrastructure, including application architectures, data platforms, network and cloud environments, and security frameworks, ensuring alignment with organizational policies, regulatory requirements, and industry best practices.
Key Responsibilities:
Conduct technical audits of IT architectures including application design, system integrations, cloud infrastructure (AWS, Azure, GCP), network topologies, and enterprise data flows.
Evaluate architecture compliance with internal standards, security controls (e.g., NIST, ISO 27001), and regulatory frameworks (e.g., SOX, HIPAA, GDPR).
Review solution and technical designs to identify gaps in scalability, availability, security, and compliance.
Perform risk assessments on architectural changes and new technology implementations.
Collaborate with enterprise architects, security teams, and DevOps to assess technical documentation, architecture diagrams, and deployment patterns.
Analyze system logs, configurations, and monitoring data to validate control effectiveness.
Document audit findings, prepare reports, and present recommendations to senior leadership and technical stakeholders.
Follow up on remediation activities and validate corrective actions.
Stay current with emerging technologies and evolving threats that impact architecture governance.
Qualifications:
Bachelor’s or Master’s degree in Computer Science, Information Systems, Cybersecurity, or related field.
5 years of experience in IT architecture, systems engineering, or enterprise IT auditing.
Strong understanding of cloud platforms (AWS, Azure, GCP), microservices, APIs, containerization, and identity/access management (IAM).
Familiarity with enterprise IT frameworks such as TOGAF, SABSA, COBIT, and ITIL.
Hands-on experience with auditing tools and technologies including logging, SIEMs, vulnerability scanners, and architecture modeling tools.
Knowledge of regulatory and compliance requirements – (NERC CIP would be a plus)
Excellent analytical, problem-solving, and written communication skills.
Relevant certifications such as CISA, CISM, CISSP, AWS/Azure Architect, or TOGAF are highly desirable.
Preferred Skills:
Experience auditing DevOps pipelines, CI/CD automation, and infrastructure as code (IaC)
Strong knowledge of data architecture, data governance, and security controls
Working knowledge of Zero Trust architecture, SASE, and secure cloud design principles
Ability to interpret complex technical environments and communicate risk in business terms