IT Risk Experienced Associate

Arlington, VA, United States

Grant Thornton

Grant Thornton is one of the world's largest professional services networks of independent accounting and consulting member firms which provide assurance, tax and advisory services to privately held businesses, public interest entities, and...

View all jobs at Grant Thornton

Apply now Apply later

POSITION SUMMARY: 

Advisory IT Risk Experienced Associate

POSITION SUMMARY:

The Advisory IT Risk Experienced Associate is responsible for participating in a range of risk advisory projects for multiple public and private company clients across a variety of industries. Responsibilities include working in a team environment to execute and report on risk management, internal control and internal audit engagements that develop, assess, or improve the design and operating effectiveness of IT risk management and internal control activities. The Experienced Associate works closely with Partners, Principals, Managing Directors, Senior Managers, Directors, Managers, and Senior Associates, playing a key role in innovative project delivery and client relationship management.

  

ESSENTIAL DUTIES AND RESPONSIBILITIES:

  • Actively participate in client engagements from start to completion, with a focus on executing and reporting on assigned project tasks. Common engagements include, but are not limited to: co-sourced and outsourced IT internal audit, IT internal control assessments, IT risk management program assessments, tests of IT control design and operating effectiveness for Sarbanes-Oxley (SOX) and other compliance requirements, and helping clients design and implement IT controls.
  • Obtain an understanding of clients’ industry, objectives, strategy, operations, processes, IT systems, and controls.
  • Execute IT control design and operating effectiveness test procedures based on engagement scope, and client environment risk factors.
  • Bring an innovative and analytical mindset to help our clients solve business issues, and enable more efficient project execution.
  • Provide timely updates on the status of assigned tasks.
  • Work with the project team and client to deliver services in accordance with project leadership and client expectations (gather information, resolve problems, recommend internal control enhancement opportunities, etc.).
  • Develop and maintain good working relationships with clients and colleagues.
  • Communicate effectively (verbally and in writing) with clients and colleagues to successfully accomplish objectives, while portraying knowledge and confidence.
  • Work collaboratively with colleagues across Advisory Business Lines (ABLs) and with other Grant Thornton Service Lines (e.g., Audit Services and Tax Services).
  • Adhere to Firm policies, procedures, and methodologies, including strict protection of client confidentiality.
  • Participate in recruiting efforts.
  • Participate in relevant professional organizations (Institute of Internal Auditors, Information Systems Audit and Control Association, etc.).
  • Participate in business development activities and proposal development, as appropriate.
  • Meet or exceed defined performance metrics.
  • Domestic and/or international travel as required.
  • Other duties as assigned.

 

QUALIFICATIONS 

  • Bachelor's degree in Accounting, Finance, Information Technology, Management Information Systems, Business Intelligence, or related field.  A Master’s degree is a plus.
  • A minimum of one year of related work experience with a professional services firm, or as part of a risk management, information security, or Internal Audit function.
  • Desire to pursue CISA, CISSP, CISM, CPA, CIA or other relevant license/certification. Having already passed the applicable examination a plus.
  • Experience in assessing the design and operating effectiveness of IT risk management or IT controls (IT general controls, application controls, interface controls, IT infrastructure controls, key report integrity, etc.) for Internal Audit, SOX compliance, System & Organization Control (SOC) reporting, or other risk management, compliance or assurance activities.
  • Understanding of current IT risk and control focus areas of external financial statement auditors (completeness and accuracy of key reports, level of precision, etc.).
  • Understanding of prevailing IT risk management and cybersecurity risk management standards (COBIT, NIST CSF, etc.).
  • Client service acumen, with a demonstrated ability to develop and maintain strong relationships.
  • Ability to work in a rapidly growing, fast-paced, interactive, results-based team environment.
  • Strong communication (oral, written and presentation) skills.
  • Strong analytical and project management skills.
  • Strong computer skills, including proficiency in Microsoft Visio and Office Suite applications.
  • Ability to travel as required.
  • Experience with any of the following a plus:
    • Assessing the configuration and controls of on-premise and cloud-based SAP systems (ECC, S/4 HANA, etc.), including BASIS and security administration, process controls, etc.
    • Assessing the configuration and controls of other on-premise and cloud-based Enterprise Resource Planning (ERP) systems and business applications (Oracle, Workday, Infor, NetSuite, etc.).
    • Assessing IT controls over cloud platforms (AWS, Azure, etc.), operating systems (OS/400, Windows, UNIX, etc.), database systems (Oracle, SQL, etc.), and IT infrastructure / network components.
    • Leveraging analytics and visualization solutions (PowerBI, Alteryx, ACL, IDEA, QlikView / QlikSense, Tableau, Spotfire, etc.).
    • Understanding Governance, Risk and Compliance (GRC) and Identity and Access Management (IAM) solutions.

Ability to travel on short notice and work additional hours as necessary.

The base salary range for this position is the firm's District of Columbia office only is between $73,400 to $110,200. 

At Grant Thornton, we believe in making business more personal and building trust into every result – for our clients and you. Here, we go beyond your expectations of a career in professional services by offering a career path with more: more opportunity, more flexibility, and more support. It’s what makes us different, and we think being different makes us better. 

In the U.S., Grant Thornton delivers professional services through two specialized entities: Grant Thornton LLP, a licensed, certified public accounting (CPA) firm that provides audit and assurance services ― and Grant Thornton Advisors LLC (not a licensed CPA firm), which exclusively provides non-attest offerings, including tax and advisory services.

In 2025, Grant Thornton formed a multinational, multidisciplinary platform with Grant Thornton Ireland. The platform offers a premier Trans-Atlantic advisory and tax practice, as well as independent American and Irish audit practices. With $2.7 billion in revenues and more than 50 offices spanning the U.S., Ireland and other territories, the platform delivers a singular client experience that includes enhanced solutions and capabilities, backed by powerful technologies and a roster of 12,000 quality-driven professionals enjoying exceptional career-growth opportunities and a distinctive cross-border culture.

Grant Thornton is part of the Grant Thornton International Limited network, which provides access to its member firms in more than 150 global markets.
Apply now Apply later
Job stats:  0  0  0
Category: Compliance Jobs

Tags: Analytics AWS Azure Business Intelligence CIA CISA CISM CISSP Cloud COBIT Compliance ERP Finance Governance IAM IT infrastructure NIST Oracle Risk management SAP SOC SOX SQL Strategy Travel UNIX Windows

Perks/benefits: Career development Team events

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.