Senior Information Systems Auditor

The Ohio State University
Columbus, OH, United States
11 days ago
Apply on osu.wd1.myworkdayjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Compensation
$81,800.0 - $106,900.0
Working hours
Regular working hours

Tech stack

Software Applications Cyber Security Information Systems Information Technology Audit Systems Development Life Cycle Information Technology

Job description

The Department of Internal Audit is responsible for performing audits and consulting activities on key University risks and critical processes. The Department accomplishes this by creating and maintaining strong relationships with University and Wexner Medical Center personnel and fostering collaboration to help achieve the University’s goals. The Department is broken down into three teams (University, Health System, and Information Technology). The Information Technology (IT) team performs audits at both the University and Wexner Medical Center as well as at the University’s affiliated entities.

The Senior Information Systems (IS) Auditor will perform independent IS audits and multi-disciplinary reviews for the university community (Wexner Medical Center, academic areas, central operations, etc.), identifying risks for the many separate companies that exist under the university umbrella; assists management in effective discharge of responsibilities by performing independent audits and furnishing analyses, appraisals, recommendations, counsel, and information concerning activities reviewed; performs audits in accordance with audit plans and Institute of Internal Auditor Standards; prepares oral/written presentations; discusses observations and recommendations; performs IS audits and multi-disciplinary reviews (i.e. technology, financial, operational, and advisory projects) across the University; obtains, documents, and analyzes evidentiary data as a basis to form an opinion on adequacy of internal controls and compliance with policies, procedures, laws and regulations; attends and participates in oral presentations; prepares written reports; performs follow-up reviews; assists in supervision of staff auditors. The position reports to the Associate Director, IS Audit, in a unit that enjoys a strong reputation across campus. Professional development opportunities for the selected individual include certifications, training, professional membership, and rewards for continued education. Due to the nature of the work, this role may be performed in a hybrid working environment with a typical schedule of Monday through Friday, regular business hours with few requests to work more than a 40-hour workweek., Certification or progress towards certification as a Certified Information Systems Auditor (CISA), Certified Public Accountant (CPA), or Certified Internal Auditor (CIA).

Requirements

Bachelor’s Level Degree or equivalent combination of education and experience. Minimum four (4) years information systems audit experience in technology- based tools or methodologies to review various technologies, networks, security systems, software applications, interfaces, authentication processes, etc.; strong analytical and communication skills; experience conducting general controls, application controls and IT security reviews; knowledge of systems development life cycle and project management.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on osu.wd1.myworkdayjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:51 min

Transitioning to continuous security operations and automated system hardening

Thomas Fuchs +3 · LIVE

3:57 min

Defining the modern application software supply chain

Niels Tanis Niels Tanis · World Congress 2022

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:41 min

Identifying Log4j vulnerabilities across internal network software applications

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2024

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · World Congress 2025

Videos

See all

Related articles

See all