Manager of Internal Audit and Information Security

Request Technology - Craig Johnson

Posted on May 27, 2024 by Request Technology - Craig Johnson
Chicago, IL, 60601
IT
Immediate Start
$140k - $160k Annual
Full-Time

*We are unable to sponsor for this permanent Full time role*

*Position is bonus eligible*

Prestigious Financial Institution is currently seeking a Manager of Internal Audit and Information Security. Candidate will manage independent assessments of the Information Technology and Security environment, risk management, and other objectives as needed. The role is responsible for defining the proper scope, approach, and quality are integrated into each audit and that regulatory, operational, and strategic risks are sufficiently mitigated by Management. This role will also be required to present recommendations for improvements to the Internal Audit Leadership and finding owners. In addition, as a manager you will own the coaching of your direct reports, developing their skills and supporting their career development.

Responsibilities:

  • Aid in the development of the risk assessment and comprehensive audit plan on an annual basis.
  • Lead multiple audits and validations simultaneously.
  • Defining and leading the execution of audit projects in accordance with the annual audit plan.
  • Owning the audit quality, accuracy of results, and delivery in a timely manner.
  • Leading audits related to organization changes including business requirements definitions, technology implementations (eg, changes to the supported business processes), engagement and alignment of change initiatives to business objectives.
  • Ability to clearly articulate professional principles and standards (eg, AICPA, IIA IPPF, COBIT, NIST CSF) and the relevancy to risk management and impact on policies and procedures. In addition, leveraging these principles and standards to test and evaluate corporate risk management processes and controls.
  • Maintaining an understanding of policies, procedures, standards, and supporting technologies, and educating staff accordingly, to effectively identify potential risks and alternatives to mitigate risk exposure leveraging leading practices.
  • Keeping current on leading practices and emerging risks within the financial services industry and making recommendations for improvements as necessary.
  • Serving as a liaison with external parties and regulators to facilitate timely and efficient external reviews, knowledge transfer, and controls and process education.
  • Supporting other department-wide activities such as but not limited to peer reviews of audit deliverables, policy and procedure development and refinement, etc.
  • Lead and implement strategic initiatives related to new audit programs/processes, technology or other initiatives.
  • Planning, leading and reporting for risk-based and special request audit assignments.
  • Proactively identifying regulatory, operational, and/or strategic risks to the organization and deliver recommendations for improvements to senior leadership.
  • Developing and maintaining effective relationships with business groups and leadership and partnering with management.
  • Effectively lead audit staff, providing direction, clearly defined performance expectations, coaching and feedback, and recognition/motivation.
  • Providing oversight and coaching to the team, both internal and/or co-sourced resources, confirming the delivery, quality and auditee experience.

Qualifications:

  • Ability to communicate clearly and effectively, both orally and in writing, including the ability to handle potentially sensitive situations and discussions.
  • Strong problem solving and analytical capabilities.
  • Demonstrated ability to gather, analyze, and evaluate facts, and prepare and present concise oral and written reports.
  • Ability to work independently or as part of a team, prioritizing multiple audit assignments to simultaneously complete each in a timely fashion.
  • Experience working in a complex, fast paced environment.
  • Experience using the principles, practices, and techniques involved in conducting audits in accordance with the requirements set forth in the International Standards for the Professional Practice of Internal Auditing published by the Institute of Internal Auditors (IIA).
  • [Preferred] Consulting and/or accounting firm experience.
  • [Preferred] Experience in Financial Services/Security Industry and working with regulations such as Regulation Systems Compliance and Integrity (Reg SCI).

Technical Skills:

  • [Required] Microsoft Office applications
  • [Required] Proficiency using Archer or other audit or Governance Risk and Compliance (GRC) software
  • [Required] Familiarity with security tools such as: CyberArk, Splunk, SailPoint
  • [Required] Familiarity with change management tools such as: ServiceNow, Jira, Confluence, GitHub
  • [Preferred] Familiarity with databases such as: Oracle, DB2, SQL
  • [Preferred] Familiarity with cloud based solutions: AWS, Azure, Oracle Cloud, Workday

Education and/or Experience:

  • [Required] Bachelor's degree (or equivalent) in Information Technology, Computer Science, Computer Engineering, Accounting, Finance, Business Administration, or related field.
  • [Required] 5+ years of experience (audit-related) in conducting risk-based Information Technology and Security audits and projects, cyber security reviews, and internal audits.

Certificates or Licenses:

  • [One of these required] Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certification in Risk Management Assurance (CRMA), Certified Internal Auditor (CIA), Certified Public Accountant (CPA), or equivalent.

Reference: 2766531005

https://jobs.careeraddict.com/post/91252283

This Job Vacancy has Expired!

Request Technology - Craig Johnson

Manager of Internal Audit and Information Security

Request Technology - Craig Johnson

Posted on May 27, 2024 by Request Technology - Craig Johnson

Chicago, IL, 60601
IT
Immediate Start
$140k - $160k Annual
Full-Time

*We are unable to sponsor for this permanent Full time role*

*Position is bonus eligible*

Prestigious Financial Institution is currently seeking a Manager of Internal Audit and Information Security. Candidate will manage independent assessments of the Information Technology and Security environment, risk management, and other objectives as needed. The role is responsible for defining the proper scope, approach, and quality are integrated into each audit and that regulatory, operational, and strategic risks are sufficiently mitigated by Management. This role will also be required to present recommendations for improvements to the Internal Audit Leadership and finding owners. In addition, as a manager you will own the coaching of your direct reports, developing their skills and supporting their career development.

Responsibilities:

  • Aid in the development of the risk assessment and comprehensive audit plan on an annual basis.
  • Lead multiple audits and validations simultaneously.
  • Defining and leading the execution of audit projects in accordance with the annual audit plan.
  • Owning the audit quality, accuracy of results, and delivery in a timely manner.
  • Leading audits related to organization changes including business requirements definitions, technology implementations (eg, changes to the supported business processes), engagement and alignment of change initiatives to business objectives.
  • Ability to clearly articulate professional principles and standards (eg, AICPA, IIA IPPF, COBIT, NIST CSF) and the relevancy to risk management and impact on policies and procedures. In addition, leveraging these principles and standards to test and evaluate corporate risk management processes and controls.
  • Maintaining an understanding of policies, procedures, standards, and supporting technologies, and educating staff accordingly, to effectively identify potential risks and alternatives to mitigate risk exposure leveraging leading practices.
  • Keeping current on leading practices and emerging risks within the financial services industry and making recommendations for improvements as necessary.
  • Serving as a liaison with external parties and regulators to facilitate timely and efficient external reviews, knowledge transfer, and controls and process education.
  • Supporting other department-wide activities such as but not limited to peer reviews of audit deliverables, policy and procedure development and refinement, etc.
  • Lead and implement strategic initiatives related to new audit programs/processes, technology or other initiatives.
  • Planning, leading and reporting for risk-based and special request audit assignments.
  • Proactively identifying regulatory, operational, and/or strategic risks to the organization and deliver recommendations for improvements to senior leadership.
  • Developing and maintaining effective relationships with business groups and leadership and partnering with management.
  • Effectively lead audit staff, providing direction, clearly defined performance expectations, coaching and feedback, and recognition/motivation.
  • Providing oversight and coaching to the team, both internal and/or co-sourced resources, confirming the delivery, quality and auditee experience.

Qualifications:

  • Ability to communicate clearly and effectively, both orally and in writing, including the ability to handle potentially sensitive situations and discussions.
  • Strong problem solving and analytical capabilities.
  • Demonstrated ability to gather, analyze, and evaluate facts, and prepare and present concise oral and written reports.
  • Ability to work independently or as part of a team, prioritizing multiple audit assignments to simultaneously complete each in a timely fashion.
  • Experience working in a complex, fast paced environment.
  • Experience using the principles, practices, and techniques involved in conducting audits in accordance with the requirements set forth in the International Standards for the Professional Practice of Internal Auditing published by the Institute of Internal Auditors (IIA).
  • [Preferred] Consulting and/or accounting firm experience.
  • [Preferred] Experience in Financial Services/Security Industry and working with regulations such as Regulation Systems Compliance and Integrity (Reg SCI).

Technical Skills:

  • [Required] Microsoft Office applications
  • [Required] Proficiency using Archer or other audit or Governance Risk and Compliance (GRC) software
  • [Required] Familiarity with security tools such as: CyberArk, Splunk, SailPoint
  • [Required] Familiarity with change management tools such as: ServiceNow, Jira, Confluence, GitHub
  • [Preferred] Familiarity with databases such as: Oracle, DB2, SQL
  • [Preferred] Familiarity with cloud based solutions: AWS, Azure, Oracle Cloud, Workday

Education and/or Experience:

  • [Required] Bachelor's degree (or equivalent) in Information Technology, Computer Science, Computer Engineering, Accounting, Finance, Business Administration, or related field.
  • [Required] 5+ years of experience (audit-related) in conducting risk-based Information Technology and Security audits and projects, cyber security reviews, and internal audits.

Certificates or Licenses:

  • [One of these required] Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certification in Risk Management Assurance (CRMA), Certified Internal Auditor (CIA), Certified Public Accountant (CPA), or equivalent.

Reference: 2766531005

CareerAddict

Alert me to jobs like this:

Amplify your job search:

CV/résumé help

Increase interview chances with our downloads and specialist services.

CV Help

Expert career advice

Increase interview chances with our downloads and specialist services.

Visit Blog

Job compatibility

Increase interview chances with our downloads and specialist services.

Start Test