> Markdown version of [/jobs/ext/1502189-manager-it-audit](https://www.wearedevelopers.com/jobs/ext/1502189-manager-it-audit). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Manager IT Audit - **Company:** ADEMCO INC. - **Location:** Golden Valley, MN, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cloud Computing Security, Cyber Security, Data Governance, Identity and Access Management, Information Technology Audit, Systems Development Life Cycle, SAP (Applications), IT General Controls (ITGC), Information Technology - **Published:** July 30, 2026 - **Apply:** https://www.juju.com/job/00000000gkjppo ## About the Role + 6+ years of progressive audit experience within IT Audit or Technology Risk (internal audit and/or public accounting) + Knowledge of accounting principles, internal control frameworks, and audit methodology related to Information Technology General Controls (ITGCs) + Professional certification such as CISA and/or CIA is essential (or demonstrated intent to pursue certification) + Experience auditing ERP systems (SAP preferred) and related tools/applications + Knowledge of cybersecurity and IT control frameworks, including ISO 27001 and NIST + Experience assessing identity and access management (IAM), privileged access, cloud security, and third-party technology risk + Strong capabilities in strategic planning, problem-solving, and cross-functional leadership within a team environment across all levels at Resideo + Ability to manage multiple priorities and meet deadlines + High integrity and professionalism when handling sensitive information WE VALUE + Prior experience within a manufacturing or operational environment, or public accounting experience + Comprehensive functional knowledge of internal audit and SOX processes, especially within Information Technology General Controls (ITGCs) + Familiarity with enterprise resource planning (ERP) systems, specifically SAP, and other financial reporting tools + Exposure to cybersecurity, data governance, or third-party IT risk assessments, and experience working alongside IT, security, and/or system implementation teams + Experience solving complex problems and implementing process improvements to support continuous improvement + Exceptional communication and stakeholder management skills, fostering cross-functional partnerships WHAT'S IN IT FOR YOU + Hands-on exposure to key business and IT processes and risk areas + Opportunity to develop into further leadership roles + Broad audit experience across IT, financial, operational, and compliance areas + Part of a strong, collaborative Company culture ## Description The Manager, IT Audit is responsible for leading and coordinating the execution of technology-focused internal audit and Sarbanes Oxley (SOX) engagements. This role serves as the Internal Audit subject matter expert for information technology risk, IT General Controls (ITGCs), cybersecurity, system implementations, IT-dependent business processes, and technology governance. This role will lead the planning, execution, and reporting of IT audits while evaluating the design and operating effectiveness of controls over critical systems, applications, infrastructure, and cybersecurity processes. Further, you will support the ongoing operation of the Internal Audit function through strategic collaboration (with Information Security, Finance and external audit teams, among others), ensuring complex risks are identified timely and continuous improvement remains at the forefront of the business. This role is hands-on and execution-focused within the overall audit program, requiring strong attention to detail, sound judgment, and effective communication skills - in addition to a strong knowledge of ITGCs, ERP systems, and cybersecurity risk. Key Responsibilities + Manage the planning, execution, and reporting of internal audit and SOX engagements inclusive of Information Technology General Controls (ITGCs), cybersecurity, identity and access management (IAM) and data governance, ensuring adherence to established methodologies and standards + Manage IT SOX activities including annual risk assessment and scoping, ITGC testing, key reports, automated application control testing and segregation of duties, among others + Evaluate cybersecurity governance, policies, and operating procedures - and partner with management in aligning the business against key frameworks such as ISO 27001 and NIST CSF + Lead pre- and post-implementation reviews of ERP and technology projects, including evaluating system development lifecycle (SDLC) controls + Identify control deficiencies, clearly document findings, and support remediation validation efforts + Support internal and external audit requests and follow-up activities + Assist in assessing cybersecurity, data privacy, and technology risks as part of integrated audits + Participate in ERP and system-related audits or implementation reviews as assigned + Support reviews of system implementations, upgrades, and configuration changes, focusing on control design and operational effectiveness + Execute audit engagements in alignment with approved audit plan, recommending practical process and control improvements based on audit results + Solve complex departmental issues through coordination with multiple teams, business units, and departments to identify opportunities for continuous improvement + Partner strategically with cross-functional stakeholders to facilitate audit processes, articulate audit findings, and support effective remediation efforts + Manage the development and maintenance of audit workpapers in accordance with professional standards, ensuring completeness and accuracy + Stay current on internal audit standards, accounting guidance, and regulatory requirements ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Data Governance in the Era of AI](https://www.wearedevelopers.com/videos/1622-data-governance-in-the-era-of-ai) - [Independently together: how micro-applications improve developer experience + app performance](https://www.wearedevelopers.com/videos/452-independently-together-how-micro-applications-improve-developer-experience-app-performance) - [Replacing Excel with SAP APIs & Python validation](https://www.wearedevelopers.com/videos/1944-replacing-excel-with-sap-apis-python-validation) - [Agile work at CARIAD – Creating a customer web application for controlling the vehicle ](https://www.wearedevelopers.com/videos/200-agile-work-at-cariad-creating-a-customer-web-application-for-controlling-the-vehicle) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development)