External Auditor
DC, United States
ISYS Technologies
I2X ISYS TECHNOLOGIES offers top-notch technology and engineering services with a focus on cyber security management. Contact us today!Minimum Clearance Required
US CitizenResponsibilities
I2X Technologies is a reputable technology services company to the Federal Government. Whether the focus is on space exploration, national security, cyber security, or cutting-edge engineering applications, I2X is ready to offer you the chance to make a real-world impact in your field and for your country. We provide long-term growth and development. Headquartered in Colorado, I2X is engaged in programs across the country and in more than 20 states. Our programs support multiple Federal agencies, the Department of Defense and often focused on the space initiatives of our government customers.
• Participates in the process to evaluate, develop, maintain, and update the technology compliance program. Advises the technology support officer and technology managers on compliance, information security, and internal controls.• Prepares the technology departments for the yearly financial statement audit and SOX internal control reviews.• Assist in developing required documents in support of internal SOX or FISMA reviews.• Develop solutions with team members to minimize vulnerabilities.• Advises the technology officer of SOX and compliance issues and recommends solutions• Provides a weekly status report to the COR documenting concerns, issues, risks, and progress.• Recommends and helps implement GRC Tools to increase automation in the areas of compliance, auditing, and vulnerability detection for the branch.• Perform weekly Splunk/audit log reviews and report any anomalies• Evaluate system documentation to meet compliance requirements• Assists with building governance and risk management tasks and activities for the team and management review• Designs, tests and reviews controls for compliance and ensures proper documentation is recorded.• Creates audit and monitoring reports used by the team, as directed.
The External Auditor Consultant shall deliver, but not limited to, the following:
• Thoroughly assess and validate the SOX Risk Control Matrices (RCM’s) for identified systems of record against Board policies. Document findings and recommendations.• Crosswalk the SOX RCMs against the TS/ Board Information Security Program (BISP) standards and procedures and document the results.• Provide recommendations, develop action plans, and help implement capabilities to improve compliance and security practices.• Document updates to compliance related policies, processes, procedures, and/or standards as directed by the compliance team.
Qualifications
• Must have at least five years of progressively responsible experience in the information technology arena as an IT auditor, IT security analyst, IT manager, business analyst, system administrator or a combination of these.
• Experience with financial applications• Experience with evaluating cloud internal controls reports, SOC-1 and SOC-2• Simultaneously works on several complex assignments requiring analysis of control applicability and evaluation of control gaps for financial systems.• Experience with supporting financial IT audits and successfully developing audit and security related system documentation to reduce risk and meet control requirements desired.• Experience with performing system audit log reviews via Splunk tool• Experience assessing and evaluating NIST 800-53 controls• Experience in developing a Risk Control Matrix, Test of Design and Test of Effectiveness (TOD/TOE)
• Possess clear, concise, and effective verbal and written communication and project management skills needed for functioning in an unstructured matrix management environment.• Work independently and meet deadlines for assigned tasks• Experience with assessing IT systems leveraging SOX, FISCAM, COBIT, or FISMA Compliance strongly desired.• CISSP or CISA certification strongly desired.• Experience with Workday or Coupa a plus, but not required
Essential Requirements:
US Citizenship is required.
I2X Technologies is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected Veteran status, or disability status.
In compliance with Colorado’s Equal Pay for Equal Work Act, the annual base salary range for this position is listed . Please note that the salary information is a general guideline only. I2X Technologies considers factors such as (but not limited to) scope and responsibilities of the position, candidate’s work experience, education/training, key skills, internal peer equity, as well as, market and business considerations when extending an offer.
Physical Demands:
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job with or without reasonable accommodation.
While performing the duties of this job, the employee will regularly sit, walk, stand and climb stairs and steps. May require walking long distance from parking to work station. Occasionally, movement that requires twisting at the neck and/or trunk more than the average person, squatting/ stooping/kneeling, reaching above the head, and forward motion will be required. The employee will continuously be required to repeat the same hand, arm, or finger motion many times. Manual and finger dexterity are essential to this position. Specific vision abilities required by this job include close, distance, depth perception and telling differences among colors. The employee must be able to communicate through speech with clients and public. Hearing requirements include conversation in both quiet and noisy environments. Lifting may require floor to waist, waist to shoulder, or shoulder to overhead movement of up to 20 pounds. This position demands tolerance for various levels of mental stress.
I2X Technologies is an Engineering and Information Technology Company focused on providing Services to the Federal and State Government. I2X offers a competitive compensation program and comprehensive benefits package to our employees.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Automation CISA CISSP Clearance Clearance Required Cloud COBIT Compliance FISMA Governance Monitoring NIST NIST 800-53 Risk management SOC SOX Splunk Vulnerabilities
Perks/benefits: Competitive pay Equity / stock options Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.