Principal Technology Auditor
Listed on 2026-01-13
-
IT/Tech
Cybersecurity, IT Consultant, IT Business Analyst, IT Project Manager
8901 - Corp Office West Crk - 12800 Tuckahoe Creek Parkway, Richmond, Virginia, 23238 Car Max, the way your career should be!
About this jobAre you collaborative, self-motivated, and seek opportunities for innovation and continuous improvement? Do you listen with intent to understand problems and provide valuable business insights and impactful solutions? Do you enjoy a variety of work at a company that has a strong mission, purpose and values?
Great! Keep reading to learn more about joining our Car Max Audit Services team as Principal Technology Auditor.
This role will broadly support the Car Max Audit Services team through the development and execution of the department’s audit plan. This is a unique opportunity to build a strong understanding of Car Max’s technology and business processes as well as partner with teams throughout the organization in both an audit and advisory role. The variety of work provides ample opportunity to learn, grow, and mentor others and includes reviews of technology processes, applications, and infrastructure;
system implementations; emerging risks in areas such as security, privacy, artificial intelligence; and other operational audits and reviews of processes, policies and procedures. The Principal Auditor in Technology serves as a subject matter expert (“SME”) on complex projects, supports the development of technical skills of other auditors, and provides advisory risk management support.
As a Principal Technology Auditor, you’ll wear many hats such as thought leader, risk champion and advisor, project manager, coach, and brand ambassador. In all instances, you’ll leverage your broad experience with audit and consulting activities at a technology intensive organization to deliver results and partner with senior levels within the organization to enhance awareness and understanding of risk, controls, and risk mitigation best practices.
Technical expertise and collaboration are key to achieve outcomes in this ever changing, fast-paced environment.
Here are a few of the ways you’ll drive value at Car Max:
Provide assurance: Execute and lead high-impact technology audits and reviews of various regulatory, operational and/or technological processes and controls, including integrated audits.
Collaborate as a trusted Risk Advisor: Consult with a risk-based mindset across the organization to provide clear, strategic insights, guidance, and assurance to senior leaders throughout pre-implementation reviews, company initiatives, and other process and system enhancements as requested by the business; ensure controls are implemented to mitigate risks (operational, regulatory, reputational, strategic, and financial risk)
- Focus on areas of higher complexity, where deep experience and technical expertise is warranted, without close supervision or direction from CAS management.
- Partner with technology and initiative teams to stay informed on new product pipelines and initiatives, evaluate risks, and provide guidance on controls.
- Use and develop critical tools such as risk assessments, audit programs, and testing/review procedures so you can identify risk, tailor work appropriately, reach conclusions, and explore solutions.
- Lead and execute fieldwork to prepare high-quality work papers summarizing procedures performed.
- Maintain strong business relationships and coordinate cross-functionality to align on risk, scope of work and results.
- Promote innovative and forward-looking problem solving to target root cause; provide recommendations contributing to operational excellence.
- Leverage your creativity to organize and present key project information through a variety of communication methods and tools, focusing on high-impact, high-value deliverables.
Provide technical guidance and assistance: Serve as a technical SME across the Audit Services department and provide highly technical expertise and guidance to Audit Services team members as it relates to specific technologies and audit techniques.
- Help lead the research and analysis of emerging technology and technology/cyber/data-related regulatory standards. Partner with technology management and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).