OCD Tech is seeking to hire an experienced Information Technology Auditor to their fast growing IT Audit & Security practice group. An IT Audit professional working for our firm will be accountable for performing work at our clients in one or all of the following areas:
- IT Audit & Compliance
- Technology Risk Assessment
- Sarbanes-Oxley (SOX) IT Compliance
- IT Governance / GRC
- Business Continuity Management / Disaster Recovery
- IT Operational Assessment
- AICPA SOC2 / SOC3 Assessment
- IT Security Services
- Security Governance Services
- Security Process Services
- Security Technology Services
Qualifications
Core responsibility will be to perform information systems audit work, understanding the scope of work, breadth of audit testing, and document results. A successful IT Audit consultant must possess 2+ years applicable experience in IT Audit, IT risk management, and/or IT control environments which demonstrates working knowledge and experience in two or more of the following technical areas:
- Internet security, UNIX, Windows Server, Linux infrastructure, workstations, and network devices (routers, switches, firewalls).
- Information technology general controls concepts in the areas of systems development and infrastructure (including design, implementation and/or assessment)
- Audit and review networks/systems, corporate security policies, systems and network architectures, documentation review and development, vulnerability assessments and security testing and evaluation.
- Experience with SANS20, NIST 800-53, ISO 27001/27002, IT SOX, SOC2/3, PCI-DSS, or HIPPA IT controls
- Conducting Information Technology audits including, conducting interviews, evaluating internal controls and communicating results (including work papers & audit report writing).
- Frameworks, such as COBIT, COSO, ITIL
- Effective project management
- Analytic ability to identify problems and arrive at practical solutions
- Effective written and verbal communication skills
- Willingness and ability to travel in the regional area required
Candidate must be eligible to work in the U.S, pass additional stringent background checks required by our clients, and have at least one of the following certifications
- IT Auditing Certification (CISA)
- IT Security Certification (CIPP, CISM, CISSP, CEH, ISC, Security+)
- Other Technology Risk Certifications (CRISC, CGEIT, CNE, CCP, CHFI, CSP, MCT, MSMIS) preferred
Preferred Qualification’s
- Bachelor’s degree in relevant subject area (computer science, information technology, management information systems)
Send resume to [email protected] with the subject line “Experienced IT Auditor / Security Analyst”