> Markdown version of [/jobs/ext/1330097-it-auditor](https://www.wearedevelopers.com/jobs/ext/1330097-it-auditor). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Auditor - **Company:** Mohegan Tribe Of Indians Of Connecticut - **Location:** Montville, CT, United States - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Agile Methodology, Amazon Web Services, Data Analysis, Apple Mac Systems, Authentication Protocols, Microsoft Azure, Bash Shell, Cloud Computing, Cloud Engineering, Control Objectives for Information and Related Technology (COBIT), Cyber Security, Information Systems, Computer Networks, Data Security, Dynamic Host Configuration Protocol, Linux, DevOps, Disaster Recovery, Domain Name System (DNS), Federal Information Processing Standards (FIPS), Infrastructure as a Service (IaaS), Identity and Access Management, IT Management, Internet Protocol Security (IP SEC), Intrusion Detection and Prevention, Intrusion Detection Systems, Storage Area Network (SAN), Virtual Private Networks (VPN), Python (Programming Language), Local Area Networks, Network Security, Lightweight Directory Access Protocols (LDAP), Log Analysis, Network Monitoring, Platform as a Service (PAAS), PCI Data Security Standards, Public Key Infrastructure, Windows PowerShell, Systems Development Life Cycle, Security Information and Event Management, TCP/IP, Wide Area Networks, Scripting, Google Cloud, Load Balancing, Cloud Platform System, IT General Controls (ITGC), Information Technology, Firewall Services Module, Splunk, Vulnerability Analysis - **Published:** July 18, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=ddbc2f201d36f733 ## About the Role * Strong knowledge of computer networking concepts including TCP/IP, DHCP, DNS, LDAP, IPsec, VPNs, load balancing, and network monitoring tools. * Proficiency in cybersecurity standards such as NIST SP 800-53, FIPS (Federal Information Processing Standards), PCI DSS (Payment Card Industry Data Security Standard), FedRAMP, SOX (Sarbanes-Oxley Act), DIACAP (DoD Information Assurance Certification & Accreditation Process), and FISMA (Federal Information Security Management Act). * Experience with IT governance frameworks like COBIT and ITIL; project management experience in technology projects is highly valued. * Familiarity with cloud computing platforms including AWS, Google Cloud Platform, Azure; understanding of cloud architecture principles such as IaaS (Infrastructure as a Service) and PaaS (Platform as a Service). * Technical skills in scripting languages such as Python, PowerShell, Bash; system administration on Windows/Linux/macOS environments; system security practices including encryption and authentication protocols. * Ability to perform internal audits related to SOX compliance, internal controls testing, IT risk management, and internal controls evaluation. * Knowledge of identity & access management systems like Active Directory and LDAP; experience with PKI (Public Key Infrastructure) implementation is advantageous. * Strong analytical skills in data analysis for vulnerability research or incident management; familiarity with attack frameworks and DevOps practices is a plus. * Excellent communication skills to present complex technical findings clearly; ability to work within Agile methodologies or SDLC processes for project delivery. ## Description We are seeking a dynamic and detail-oriented IT Auditor to join our team and drive excellence in information security and compliance. In this role, you will evaluate the effectiveness of IT controls, ensure adherence to regulatory standards, and identify opportunities for process improvements. Your expertise will help safeguard our technology infrastructure, mitigate risks, and uphold the integrity of our information systems. This position offers an exciting opportunity to leverage your cybersecurity knowledge and auditing skills in a fast-paced, innovative environment committed to continuous improvement., * Conduct comprehensive IT control testing across various domains including general IT controls, application controls, and operational processes. * Perform IT security audits aligned with frameworks such as NIST cybersecurity framework, ISO standards, COBIT, and FISMA to assess compliance and security posture. * Evaluate network security measures including firewall configurations, IDS (Intrusion Detection Systems), IPS (Intrusion Prevention Systems), VPNs, SAN (Storage Area Networks), LAN (Local Area Network), WAN (Wide Area Network), and cloud infrastructure like AWS and Azure. * Review and analyze IT infrastructure components such as operating systems (Windows, Linux, macOS), system administration practices, and cloud architecture for vulnerabilities and compliance gaps. * Assess cybersecurity incident management processes including incident response planning, disaster recovery strategies, and incident recovery procedures. * Utilize data analytics tools like Splunk for log analysis, SIEM (Security Information and Event Management) systems for threat detection, and vulnerability research to identify potential security weaknesses. * Document findings thoroughly, prepare audit reports, and communicate recommendations clearly to stakeholders to enhance internal controls and ensure regulatory compliance. ## Related Videos - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [#90DaysOfDevOps - The DevOps Learning Journey](https://www.wearedevelopers.com/videos/548-90daysofdevops-the-devops-learning-journey) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)