Ref No.: 17-11517
Location: Fort Washington, Pennsylvania
Position Type:Direct Placement
Start Date: 11/28/2017
My client is looking to add an addition to their IT Auditing Team!

Location: Fort Washington, PA
Duration: PERMANENT


The IT Auditors mission is to perform detailed evaluation and internal control and audit reviews of computer information systems using the ISO 27001, GDPR, and HITrust frameworks. In this role, you will be involved in managing and sustaining the various compliance programs by working collaboratively with internal teams, SMEs, external customers, vendors, auditors and other stakeholders.

Duties Include
  • Performs general and application control reviews for simple to complex computer information systems.
  • Performs information control reviews to include system development standards, operating procedures, system security, programming controls, communication controls, backup and disaster recovery, and system maintenance.
  • Directs and/or performs reviews of internal control procedures and security for systems under development and/or enhancements to current systems.
  • Maintains and develops computerized audit software.
  • Prepares audit finding memoranda and working papers to ensure that adequate documentation exists to support the completed ISO 27001 and GDPR audit and conclusions.
  • Prepares and presents written and oral reports and other technical information in a pertinent, concise, and accurate manner for distribution to management.
  • Consults with and advises administrators, faculty, and staff on various operational issues related to computerized information systems, and on general business operations as needed.
  • Follows up on audit findings to ensure that management has taken corrective action(s).
  • Coordinates and interacts with external auditors, administrators, staff and law enforcement officials as appropriate.
  • Maintains currency of knowledge with respect to relevant state-of-the-art technology, equipment, and/or systems.
  • Performs miscellaneous job-related duties as assigned.
Requirements
  • Bachelor's degree or advanced/technical training preferred
  • In depth knowledge of ISO standards 27001 required
  • In depth Knowledge of the EU GDPR beneficial
  • Working knowledge of Jira beneficial
  • CISSP, CISA, ISO 27001 Lead Implementer/Auditor preferred
  • Ability to evaluate and review a range of mainframe, PC, and distributed production and applications computer systems.
  • Ability to gather data, compile information, and prepare reports.
  • Knowledge of auditing concepts and principles.
  • Ability to perform control reviews on systems development, operation, programming, control, and security procedures and standards.
  • Ability to review system backup, disaster recovery and maintenance procedures.
  • Ability to communicate with and understand the requirements of professional staff in area of specialty.
  • Ability to create, compose, and edit written materials.
  • Knowledge of software requirements for the auditing of computing systems and procedures.
  • Knowledge of computer systems development and programming.
  • Knowledge of international, federal, state, and local laws, regulations, and standards governing all aspects of the utilization of computer systems.
Offers competitive wages, and benefits such as:
  • Health and Dental
  • Life, Accident and Disability Insurance
  • Prescription Plan
  • Flexible Spending Account
  • 401k Plan and Match
  • Paid Holidays and Vacation
  • Sick Days and Personal Days