Information Technology Auditor
CurrentExecute IT infrastructure control evaluation, Operating Systems, Servers, Network Devices, and Databases. • Develop, lead and support complex risk assessments and compliance reviews using leading frameworks (e.g., ISO, COBIT, NIST, etc.) at the process, application, system environment level. • Lead ongoing awareness of program through training, info-sessions and interactions to educate stakeholders on best practices and its value to the organization • Create test steps/audit program… Show more Execute IT infrastructure control evaluation, Operating Systems, Servers, Network Devices, and Databases. • Develop, lead and support complex risk assessments and compliance reviews using leading frameworks (e.g., ISO, COBIT, NIST, etc.) at the process, application, system environment level. • Lead ongoing awareness of program through training, info-sessions and interactions to educate stakeholders on best practices and its value to the organization • Create test steps/audit program and RCM to appropriately scope and execute audit projects. • Advise in the selection and tailoring of approaches, methods, and tools to support service offering for industry projects. • Identify and communicate IT Audit findings to senior management • Play a substantive or lead role in engagement planning, fieldwork and reporting. • Supervise, coach and mentor audit staff and onboard new audit staff. • Involve in recommendation follow-up of Corrective Action Plans with auditees and communicate updates to internal audit management and auditees • Understand client's business environments and basic risk management approaches. • Report identified control weaknesses per walkthroughs and test of controls to appropriate personnel in form of recommendations. • Perform revies of working papers to ensure accuracy and completion and assist in clearing any review points provided by the team leads and /or audit managements • Work closely with the audit Team Leader to perform/develop the audit planning, scoping, and fieldwork execution strategy. Perform ITGCs and IT application Controls (ITACs) testing using COSO and COBIT frameworks to verify design adequacy and operating effectiveness. Show less