
US-IT Audit Manager
- USA
- $61,357-110,424 per year
- Permanent
- Full-time
- Strong understanding of how to document IT controls including IT General Controls (ITGC) testing for use by external auditors. This includes understanding of IT audit sampling methodology or ability to interpret and follow defined audit sampling methodology per audit industry standards
- Broad audit experience across various areas of IT, including IT security, IT infrastructure, access management, IT application controls, IT general controls and automated audit techniques
- Possess advanced knowledge of auditing network and application vulnerability assessments, IT practices, logical security, risk assessment practices, change control, data privacy, and business continuity processes
- Execute and review assigned controls and deliver end to end responsibilities at desired quality with minimum supervision
- Facilitate automated evidence collection and analytic auditing processes
- Work with business stakeholders, primarily in IT, to confirm that controls are communicated, in place and effective to meet third party auditing requirements
- Confirm controls are completely and accurately aligned to frameworks (e.g., SOC 1, SOC 2, PCI, HITRUST, HIPAA)
- Use excellent judgment and rationale to prioritize findings and recommendations and communicate audit results and action plans to effectuate change
- Prioritize work appropriately based on priorities and needs of multiple internal and external stakeholders to enable delivery of exceptional service
- Prior IT Audit experience testing, documenting and reviewing workpapers for IT controls is required;
- Experience with auditing various IT systems including cloud environments, databases, networks, security tools, and other technologies;
- Working with various levels within an organization; and
- Presentation, verbal, and written communication.
- 4-10 years of IT audit experience, Big 4 a plus;
- Degree in an IT or related field (e.g., Business Management, Information Technology, Information Security, Computer Science, Accounting);
- Understanding of HIPAA, Data Privacy, PCI a plus; and
- CISA or relevant certifications preferred but not required.