One of our well-known clients in the financial services space is looking to add a Senior IT Auditor to their team!
This Senior IT Internal Auditor will assist with planning and executing the IT Audit Plan, conduct audits of the efficiency and effectiveness of information technology processes and controls against regulatory requirements and best practices, and add value by providing advisory/consulting services over changes in IT operational and security processes.
You will work across cyber security, logging and monitoring, business continuity, vulnerability management, patch management, incident response, vendor management, system implementation, application integrity, data governance, and IT infrastructure. This role also involves mentorship of staff auditors and works directly with the Director!
Qualifications:
- Bachelor's degree in technology and/or business-related area of study.
- Minimum 3+ years’ experience in IT audit, in either internal audit, public accounting, compliance, or consulting with experience leading an IT audit function.
- Experience with IT processes or IT audits including cyber security, logging and monitoring, business continuity, vulnerability management, patch management, incident response, vendor management, system implementation, application integrity, data governance; and IT general controls such as access, change management, and operations.
- Experience with SOX compliance including IT general controls, application controls, and report.
- Understanding of relevant IT frameworks (such as ISO 27001, NIST 800-53, COBIT, and ITIL)
- Understanding of relevant regulations (such as NYDFS/NAIC, CCPA, PCI,
- General understanding of insurance and accounting concepts.
- Other related certifications such as CPA, CIA, CISSP, CRISC, CGEIT, or CPCU or willingness to obtain.
- Knowledge of systems software applications such as EAS, Duck Creek, and Clearwater; and system environments such as mainframe, iSeries, SQL, and Windows.
- Knowledge of IT infrastructure networks, routers, and firewalls.
- Knowledge of cloud security tools such as Okta, CrowdStrike, and CyberArk.
- Knowledge of audit workflow tools such as AuditBoard.