IT and Cybersecurity Audit Manager

Insight Global
Wallingford, CT, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Working hours
Regular working hours
Languages
Chinese, Spanish
Job source

Tech stack

Software System Penetration Testing CompTIA Security+ Cyber Security Data Centers Information Technology Audit IT General Controls (ITGC) Information Technology Vulnerability Analysis

Job description

The IT & Cybersecurity Audit Manager supports the Internal Audit function by assessing the effectiveness of IT general controls and cybersecurity controls across the organization. This role partners closely with IT, Finance, and business leaders to evaluate risk, ensure compliance, and strengthen the company’s cybersecurity posture, governance, and risk management framework., Execute risk-based IT and cybersecurity audits, including ITGCs, SOX, and operational audits

  • Perform global IT and information security risk assessments, including risk and control matrices

  • Develop and support the annual, risk-based IT & cybersecurity audit plan

  • Lead audit planning, scoping, execution, and reporting for IT and cybersecurity engagements

  • Evaluate the design and operating effectiveness of IT and security controls

  • Conduct system, infrastructure, and application audits to ensure security and compliance

  • Prepare and present audit reports, including findings, risk ratings, and remediation recommendations

  • Track audit findings, validate corrective actions, and escalate unresolved issues as needed

  • Partner with management on process improvements and risk mitigation strategies

  • Support data privacy, cybersecurity, vulnerability, and penetration testing initiatives

Requirements

Bachelor’s degree in MIS, Computer Science, IT, or related STEM field

  • 6-8+ years of experience in IT audit, cybersecurity, or IT risk (public accounting or large enterprise preferred)

  • Strong knowledge of ITGCs, SOX, cybersecurity controls, and risk management frameworks

  • Experience auditing infrastructure, networks, systems, and data centers

  • Proven ability to analyze security incidents and communicate risk to stakeholders

  • Strong analytical, problem-solving, and report-writing skills

  • Excellent communication and stakeholder management abilities

Ability to manage multiple priorities in a fast-paced environment - One or more of the following: CISA, CISSP, CISM, CIA, CCSP, CEH, CompTIA Security+, SSCP

  • Experience with penetration testing and vulnerability assessments

  • Exposure to global or multi-entity audit environments

  • Fluency in Mandarin, Spanish, or a European language

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

51 sec

Repurposing hardware and operating underwater data centers

Chris Heilmann +1 · LIVE

1:30 min

Integrating automated security and vulnerability scanning

Alexandra Petri · WWC 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:03 min

Managing massive power consumption scaling in AI data centers

Stephan Gillich Stephan Gillich +3 · WWC 2024

2:17 min

Governing enterprise IT as a global automotive CIO

Katrin Lehmann Katrin Lehmann +1 · Coffee With Developers

Videos

See all

Related articles

See all