IT Audit Lead (Contract)
$90.00/hr
Sign in to apply
New here? Create a free account in under a minute.
ascio is hiring an IT Audit Lead to support our technology assurance, cybersecurity and IT audit work across a range of technology environments.
This role will lead IT audit activities covering general IT controls, application controls, cloud environments, identity and privileged access, and related technology risks. The role requires strong audit discipline, clear working-paper documentation and the ability to communicate findings effectively to management and governance audiences.
Responsibilities
- Develop technology audit programs based on recognized control frameworks and defined audit objectives.
- Lead audit fieldwork covering general IT controls, application controls, interfaces, cloud environments and identity and access management.
- Evaluate the design and operating effectiveness of technology controls.
- Prepare clear and complete audit working papers in accordance with internal audit standards.
- Develop findings, risk statements and practical recommendations supported by appropriate evidence.
- Present audit results and recommendations to management, executives and audit committees.
- Review management responses and track corrective action plans through to closure.
- Coordinate audit activities and additional specialists where required.
Required Skills and Experience
- Eight or more years of experience in IT audit, technology assurance or a closely related field.
- Strong experience auditing general IT controls, including logical access, change management, IT operations, backup and recovery.
- Experience testing application controls, automated controls and system interfaces.
- Cloud control assessment experience in Microsoft Azure, AWS or comparable cloud environments.
- Experience reviewing identity and access management controls, including privileged access management.
- Strong working-paper documentation skills consistent with recognized internal audit standards.
- ERP audit experience, including finance, payroll or other core business modules.
- Experience developing audit findings and reports for senior management and audit committee audiences.
- Strong written and verbal communication skills, with the ability to explain technical and control issues clearly to both technical and non-technical stakeholders.
Qualifications
- Current CISA certification is preferred. Candidates with demonstrably equivalent senior IT audit experience may also be considered.
- Applicants must be able to provide certification status and expiry dates, where applicable.
- Degree in accounting, information systems, computer science or a related field, or equivalent professional experience.
- Current CISSP, CRISC, CISM, CIA or relevant cloud platform certifications are considered assets.
Preferred Experience
- Third-party and vendor risk assessments.
- Operational technology, industrial control system or SCADA environments.
- Data analytics and testing over full data populations.
- Cybersecurity program audits.
- Experience auditing against ISO/IEC 27001, NIST or comparable security frameworks.
- Experience in large or complex multi-department organizations.
Location and Work Arrangement
- Remote within Canada.
- Some assignments may require occasional onsite work or travel within Canada.
- Applicants must be based in Canada and legally entitled to work in Canada.
- A criminal record check may be required before access to sensitive systems, information or environments.