Senior SOX IT Auditor
Workday
- Location
- IND.Pune
- Work model
- On-Site
- Level
- Senior
- H-1B history
- 103 approvals (FY2023)
- Posted
- Aug 14, 2026
Skills
About this role
Your work days are brighter here. We’re obsessed with making hard work pay off, for our people, our customers, and the world around us. As a Fortune 500 company and a leading AI platform for managing people, money, and agents, we’re shaping the future of work so teams can reach their potential and focus on what matters most. The minute you join, you’ll feel it. Not just in the products we build, but in how we show up for each other. Our culture is rooted in integrity, empathy, and shared enthusiasm. We’re in this together, tackling big challenges with bold ideas and genuine care. We look for curious minds and courageous collaborators who bring sun-drenched optimism and drive. Whether you're building smarter solutions, supporting customers, or creating a space where everyone belongs, you’ll do meaningful work with Workmates who’ve got your back. In return, we’ll give you the trust to take risks, the tools to grow, the skills to develop and the support of a company invested in you for the long haul. So, if you want to inspire a brighter work day for everyone, including yourself, you’ve found a match in Workday, and we hope to be a match for you too.
About the Team
The SOX and Internal Controls team works within the accounting and finance organization. We prioritize the development and training of team members so that they become well-rounded professionals with the skills vital for the next generation. We are committed to working hard and having fun while maintaining work-life balance.
About the Role
We are seeking a highly motivated and experienced Senior SOX IT Auditor to join our SOX and Internal Controls organization in Pune. This role will lead and execute risk-based assessments of IT controls supporting financial reporting, helping ensure the design and operating effectiveness of controls across our technology environment. Reporting to the SOX IT Manager, you will partner with Technology, Finance, Accounting, business-process owners, and external auditors to evaluate IT risks, test controls, support remediation, and drive continuous improvement. You will bring sound judgment, strong technical audit expertise, and a collaborative approach to helping teams build scalable, audit-ready processes. This role directly supports the organization’s evaluation of internal control over financial reporting. Under SOX Section 404, management and external auditors report on the adequacy of those controls. The team’s work includes evaluating controls across system and transaction flows, partnering with technical and business owners on control design, and supporting the testing that informs management’s conclusion on internal controls. For major SOX-scoped implementations, the team may engage throughout UAT to confirm that testing is satisfactorily completed and documented. Responsibilties: Lead end-to-end, risk-based SOX testing for IT general controls, automated application controls, and IT-dependent manual controls. Assess the design and operating effectiveness of controls across logical access, privileged access, change management, system development lifecycle, interfaces, job scheduling, data integrity, and key system configurations. Partner with control and system owners to understand end-to-end business and technology processes, identify financial-reporting risks, and define effective control activities. Review requirements, solution designs, implementation plans, and evidence for significant changes affecting SOX-scoped systems and processes. Evaluate UAT and associated documentation for SOX-scoped implementations and significant system changes, where applicable. Develop clear test plans, workpapers, evidence requests, testing conclusions, and issue documentation in accordance with internal methodology. Communicate control findings, root causes, and practical remediation recommendations to technical and business stakeholders. Track remediation plans, validate corrective actions, and escalate risks or