Back to jobs

Director of Internal Audit, Security and Engineering

Menlo Park, CA; New York, NY

Join a leading fintech company that’s democratizing finance for all.

Robinhood Markets was founded on a simple idea: that our financial markets should be accessible to all. With customers at the heart of our decisions, Robinhood and its subsidiaries and affiliates are lowering barriers and providing greater access to financial information. Together, we are building products and services that help create a financial system everyone can participate in.

With growth as the top priority...

The business is seeking curious, growth-minded thinkers to help shape our vision, structures and systems; playing a key-role as we launch into our ambitious future. If you’re invigorated by our mission, values, and drive to change the world — we’d love to have you apply.

About the team + role

The Internal Audit Team at Robinhood assists the company’s Audit Committee of the Board with protecting assets, reputation, and sustainability of the organization. The Internal Audit function provides independent, objective, reliable, valued and timely assurance regarding the effectiveness of internal controls that mitigate current and emerging risks and help strengthen the internal controls ecosystem.

Robinhood Markets (RHM) is the parent company of various lines of business, including Brokerage, Crypto, and Cash services. We are looking for a Director of Internal Audit, Security & Engineering to join our dynamic team of auditors. You will be charged with specifically overseeing the execution of audits in the areas of Engineering, Security, Privacy, BCP/ DR and technologies leveraging artificial intelligence. Additionally, in this role you will be supporting integrated audits (i.e. underlying technology controls over business operations) across the various lines of businesses.

This position requires a leader with expert understanding of risks in a regulated Fintech setting. The successful candidate is a proven leader, collaborative, analytical, technical expert that can lead audits across multiple disciplines such as information security, software development privacy, cloud technology etc. The preferred location for this position is in or around Robinhood's offices in Menlo Park, CA or New York, NY with in-office work capabilities, as may be required by management, but remote work in limited geographies within the U.S. may be considered. Check with your recruiter for more information.

This position reports to the VP of Internal Audit and Enterprise Risk.

The role is located in the office location(s) listed on this job description which will align with our in-office working environment. Please connect with your recruiter for more information regarding our in-office philosophy and expectations.

What you’ll do

  • Assist Audit leadership with the development of the Internal Audit plan and the overall strategic direction of the Internal Audit program
  • Be accountable for the achievement of Internal Audit objectives as they align to the internal audit strategy and company OKRs
  • Be responsible for the execution of end-to-end audit procedures in the audit lifecycle: plan, lead and execute audits to assess controls and processes in the areas of Engineering, Security, Privacy, BCP/ DR and technologies leveraging artificial intelligence
  • Operate with a hands-on and an attention-to-detail approach to managing the audit cycle, incl. the process of audit scoping, execution, quality reviews, reporting and remediation validation
  • Conclude on audit results and present ratings and recommendations to senior management, C-Team members and the Audit Committee as needed
  • Lead the discussion on enterprise-wide topics to various levels of management within Security & Engineering. Influence management to act on recommendations to strengthen the control environment and make process improvements
  • Establish and manage relationships with senior leaders and risk partners. Share perspectives including industry best practices, audit standards, regulatory requirements and global impact with key stakeholders
  • Support the creation of reports and presentations for the department, Robinhood entities, Audit Committee, regulators and external auditors
  • Partner on continuous development and enhancement of the Audit practice to align with the overall objective and goals of the Audit function (including development of frameworks, metrics, procedures, partnerships, communications and training programs).
  • Participate in special projects and perform other duties as assigned

What you bring

  • Master’s degree in a relevant field of study (e.g. Computer Science, Information Systems, Data Science or Computer Engineering)
  • 10+ years of technology auditing experience, including Technology and Operations auditing, risk management, Technology Compliance, Information Security, or software development
  • Financial Services knowledge and financial product knowledge is preferred
  • Ability to partner with business, engineering, data and product teams to strengthen controls environment using automated techniques
  • Experience in end-to-end project management, system evaluation, and cross-functional collaboration
  • Experience with information system lifecycle processes, including source code management, continuous integration, scalable architecture concepts, and decentralized software development governance.
  • Deep understanding of infrastructure components and corresponding relevant risk mitigation techniques.
  • Audit experience related to systems reliability, cloud computing, artificial intelligence design and usage, software development processes, database design, setup and administration, product design and configuration of complex financial and regulatory requirements with systems
  • Experience assessing environments for privacy/security risk using privacy/security fundamentals (i.e., cookies, encryption, anonymization, perimeter defense, etc.)
  • Experience auditing Cyber and Cloud Computing/AWS, data privacy, business continuity planning and disaster recovery
  • Experience conducting audits using frameworks such as COBIT, ISO, IT General Controls (ITGC), NIST, GDPR, NYDFS and/or other industry standard control frameworks to document and assess Cybersecurity & IT processes.
  • CISA, CISSP, CRISC, CDPSE or CISM certifications

What we offer

  • Market competitive and pay equity-focused compensation structure
  • 100% paid health insurance for employees with 90% coverage for dependents
  • Annual lifestyle wallet for personal wellness, learning and development, and more!
  • Lifetime maximum benefit for family forming and fertility benefits
  • Dedicated mental health support for employees and eligible dependents
  • Generous time away including company holidays, paid time off, sick time, parental leave, and more!
  • Lively office environment with catered meals, fully stocked kitchens, and geo-specific commuter benefits


We use Covey as part of our hiring and / or promotional process for jobs in NYC and certain features may qualify it as an AEDT. As part of the evaluation process we provide Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound on September 19, 2024.

Please see the independent bias audit report covering our use of Covey here.

Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected salary range for this role is based on the location where the work will be performed and is aligned to one of 3 compensation zones. This role is also eligible to participate in a Robinhood bonus plan and Robinhood’s equity plan. For other locations not listed, compensation can be discussed with your recruiter during the interview process.

Zone 1 (Menlo Park, CA; New York, NY; Bellevue, WA; Washington, DC)

$213,000 - $250,000 USD

Zone 2 (Denver, CO; Westlake, TX; Chicago, IL)

$187,000 - $220,000 USD

Zone 3 (Lake Mary, FL)

$166,000 - $195,000 USD

Click here to learn more about available Benefits, which vary by region and Robinhood entity.

We’re looking for more growth-minded and collaborative people to be a part of our journey in democratizing finance for all. If you’re ready to give 100% in helping us achieve our mission—we’d love to have you apply even if you feel unsure about whether you meet every single requirement in this posting. At Robinhood, we're looking for people invigorated by our mission, values, and drive to change the world, not just those who simply check off all the boxes.

Robinhood embraces a diversity of backgrounds and experiences and provides equal opportunity for all applicants and employees. We are dedicated to building a company that represents a variety of backgrounds, perspectives, and skills. We believe that the more inclusive we are, the better our work (and work environment) will be for everyone. Additionally, Robinhood provides reasonable accommodations for candidates on request and respects applicants' privacy rights. Please review the specific Robinhood Privacy Policy applicable to the country where you are applying.

Create a Job Alert

Interested in building your career at Robinhood? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Select...
Select...
Select...
Select...
Select...
Select...
Select...

Equal Employment Opportunity Information

At Robinhood, we care deeply about diverse representation in our workforce as it supports our mission to democratize finance for all. In support of this goal, we encourage applicants to voluntarily identify demographic information. This information helps us to continue building a more inclusive workplace and to ensure effective recruiting programs that are inclusive of individuals across all backgrounds. 

Self-identifying in this section is completely voluntary and if you choose not to provide any information, please select the “I don't wish to answer” option under that question. Whatever your decision, data that you provide in this section will not be considered in the hiring process or thereafter.  Individuals seeking employment at Robinhood are considered without regard to race, color, religion, national origin, age, sex, sexual orientation, marital status, ancestry, physical or mental disability, neurodivergence, veteran status, gender identity or expression, or any other characteristic protected by law.  

You are being given the opportunity to provide the following information in order to help us comply with federal and state Equal Employment Opportunity recordkeeping, reporting, and other legal requirements, and to be used in our efforts to recruit a diverse workforce. Any information that you do provide will be recorded and maintained in a confidential manner. For more information on EEOC definitions, please reference this document.

Select...
Select...
Select...
Select...
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Robinhood’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.