Performs general and application control reviews for information systems.
Performs IT security audits to include system development standards, network, operating system, data center, Information system security (including evaluation of security vulnerabilities and mitigation procedures), programming controls and cyber security audits.
Other reviews associated with IT policies, change management, business continuity planning, backup and disaster recovery, and system maintenance.
Prepares audit finding memoranda and working papers to ensure that adequate documentation exists to support the completed audit and conclusions.
Prepares and presents written and oral reports and other technical information in a pertinent, concise, and accurate manner for distribution to management.
Follows up on audit findings to ensure that management has taken corrective action(s).
Assists and trains other audit staff in the use of computerized audit techniques, and in developing methods for review and analysis of computerized information systems
Maintains a knowledge with respect to relevant state-of-the-art technology, equipment, and/or systems.