Senior IT Auditor – ITGC, Cybersecurity

Posted 1 day ago

This is a fully remote position, open to applicants in Brazil.

📋 Description

• Formulate IT audit strategies, schedules, and plans

• Organize working papers for Test of Design (TOD) and Test of Operating Effectiveness (TOE) assessments of IT and Operational Technology (OT) controls

• Create test plans for TOD and TOE, including verification criteria

• Develop Risk and Control Matrices (RCMs), audit programs, and control-specific request lists

• Conduct interviews, kick-off meetings, wrap-up meetings, and closing discussions with business and technology teams

• Perform TOD/TOE testing while interpreting regulations and frameworks

• Identify root causes of findings and issues discovered during testing

• Organize and summarize audit points and recommendations

• Formulate action plans for identified findings and issues

• Generate testing results reports and comprehensive executive IT audit reports

• Evaluate IT General Controls (ITGC) and cybersecurity measures, including access controls, change management, operations/infrastructure, incidents, vulnerabilities, hardening, network protection, encryption, malware, logging, and data loss prevention

• Present results and executive recommendations to stakeholders at various organizational levels


⛳️ Requirements

• A Bachelor’s degree is required in Information Systems, Computer Science, Computer Engineering, Information Security, Information Technology, IT Auditing, or a related discipline

• At least 3 years of experience in IT auditing

• Proven experience in conducting ITGC audits

• Proven experience in conducting cybersecurity audits

• Experience in developing working papers, Risk and Control Matrices (RCMs), and audit programs

• Experience in conducting interviews and workshops with business and technology teams

• Familiarity with TOD and TOE testing

• Experience in preparing executive audit reports

• Experience in highly regulated and technologically complex environments

• Knowledge of the NIST Cybersecurity Framework (CSF), COBIT 2019, ITIL 4, ISO/IEC 27001, ISO/IEC 27002, the 5W2H methodology, IT risk management, and risk-based auditing

• Experience with Big Four firms, SOX audits, industrial and automation environments (OT/ICS), Operational Technology (OT), IoT, AI, Data & Analytics, cyber assessments, security maturity assessments, and corporate internal audits is an advantage


🏝️ Benefits

• Option for remote work

• Opportunities for professional development in IT auditing, ITGC, cybersecurity, IT governance, and risk management

People also viewed

Lonza17 hours ago

Compliance Auditor

GB flagUnited Kingdom OnlyFull-timeAuditor
ApplyView job
GEICO22 hours ago

Lead Staff Counsel – Procedural Review Auditor

US flagUnited States OnlyFull-timeAuditor$134.3k – $210.1k/year
ApplyView job
State of Vermont1 day ago

Tax Field Auditor II

US flagVermont OnlyFull-timeAuditor$28 – $43/hour
ApplyView job
Welo Global1 day ago

Linguistic Quality Auditor – IPA Phonetic Transcription Review

GB flagUnited Kingdom OnlyFreelanceAuditor
ApplyView job
ICC NTA, LLC1 day ago

Quality Auditor – Building Inspections

US flagUnited States OnlyFull-timeAuditor
ApplyView job
Elevance Health1 day ago

Clinical Provider Auditor II

US flagFlorida, +3 more statesFull-timeAuditor
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers