Audit Services - Staff Internal IT Auditor I

Golden 1 Credit Union
Sacramento, CA, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
1 year minimum
Compensation
$85,100.0 - $89,100.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Control Objectives for Information and Related Technology (COBIT) Cyber Security Information Systems Databases Computer Terminals Data Integrity Disaster Recovery Information Security Management Information Technology Audit Information Technology Operations Microsoft Visio
+8 more
PCI Data Security Standards Systems Development Life Cycle Computer Networking Systems IT General Controls (ITGC) Information Technology Data Analytics Data Management Workday

Job description

Under the direction of the Manager - IT Audit and Data Analytics, responsible for coordinating and executing general and information technology audits including operations, applications, operating systems, database systems, host systems (teller platform), PC security systems, network systems, and telecommunications. This includes working with information technology personnel to identify risks, and to collaborate with management on observations and recommendations to strengthen controls, draft reports with observations and recommendations, and document work performed. Will also serve as an internal audit staff resource on operational, financial and compliance audit assignments impacted by information system risks and/or IT controls and data integrity. Must demonstrate collaborative nature in working with client and team members to communicate and develop mitigation strategies to address risks identified., 1. Work collaboratively with IT audit team and management to determine and establish appropriate audit scope and control objectives for the areas under review. Evaluate the systems of control to determine the areas of highest risk using accepted risk management techniques. Develop audit plans that utilize allocated hours and resources to address high exposure areas within audit scope.

  1. Execute IT audit engagements on schedule to deliver timely and accurate results.
  2. Maintain a thorough understanding of state and federal laws and regulations related to credit union compliance including consumer protection regulations, bank secrecy and anti-money laundering laws, and all other laws and regulations appropriate to the position.
  3. Design and execute IT audit programs to validate relevant control objectives, document the results, and report to management regarding the adequacy of their internal controls.
  4. Identify audit issues, develop collaborative audit recommendations, and assist in drafting audit reports under limited supervision.
  5. Provide independent evaluations of IT controls, security, policies, and procedures.
  6. Perform and coordinate follow-up testing to determine if management has taken action to mitigate risks identified.
  7. Develop client relationships and foster an environment of collaboration and teamwork.
  8. Provide assistance and training to other operational and compliance audit staff members in the technical aspects of IT systems and controls.
  9. Assist external auditors and regulators in their annual reviews and examinations as needed.
  10. Prepare work papers, observations, and reports following department standards, under supervision.

PHYSICAL SKILLS, ABILITIES, AND EXERTION UTILIZED IN THE PERFORMANCE OF THESE TASKS

Requirements

  1. Frequent use of personal computer to prepare and analyze audit data.
  2. Effective oral and written communication skills required to complete audit reports and analysis and to make oral presentations to Management, and staff.
  3. Must possess sufficient manual dexterity to skillfully operate an on-line computer terminal and other standard office equipment, such as financial calculators, personal computer, facsimile machine, and telephone., 1. EDUCATION: Bachelor’s Degree in Accounting, Finance, Information Systems, or a related field.
  4. EXPERIENCE: 2 years or more of audit experience preferred with at least 1 year of relevant IT audit experience. Experience with presenting and reporting audit results to management strongly preferred. Previous IT audit experience in the financial services industry strongly preferred.
  5. KNOWLEDGE/SKILLS: Working knowledge and experience with general computer controls including Change Management, Access and Security, and IT Operations a must. Experience with incident management and response, disaster recovery, business continuity, data management and integrity, vendor management, IT project management, systems development and implementation methodologies, networking, and cybersecurity preferred. Familiarity with PCI compliance requirements a plus. Familiarity with COBIT and COSO methodology a plus. Working knowledge of FFIEC guidance and National Institute of Standards and Technology (NIST) strongly preferred. Strong written and oral communication skills required. Some knowledge of Internal Audit software, Teammate and Data Analytics preferred. Strong knowledge of Microsoft Office suite of tools, including Visio required.

PHYSICAL REQUIREMENTS:

  1. Prolonged sitting throughout the workday with occasional mobility required.
  2. Corrected vision within the normal range.
  3. Hearing within normal range. A device to enhance hearing will be provided if needed.
  4. Occasional movements throughout the department daily to interact with staff, accomplish tasks, etc.

LICENSES/CERTIFICATIONS: Relevant professional certification preferred. Pursuit of Certified Information Systems Auditor (CISA) or Certified Information System Security Professional (CISSP) acceptable. Pursuit of Certified Internal Auditor (CIA) or Certified Public Accountant (CPA) or equivalent is acceptable.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:15 min

Scaling IT operations for a major finance cloud

Linda Linda +1 · WWC 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

6:22 min

Eliminating HR bureaucracy and trusting employees

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:01 min

Managing application isolation via pluggable database models

Wei Hu Wei Hu · WWC 2022

Videos

See all

Related articles

See all