Back
company logoVirtustant

IT Audit Senior Consultant

4 hours ago

·

0 applicants

Work Type: Part Time

company logoVirtustant

IT Audit Senior Consultant

4 hours ago

·

0 applicants

Work Type: Part Time

Description

To apply, you will only have to fill a short form on our website that will take you less than 5 minutes.

 

Job Title: IT Audit Professional

 

About the Company:

Our client is a global practitioner-built internal audit and risk advisory firm led by former CAEs and Big Four alumni. They deliver co-sourced internal audit, EQA conformance, SOC 2 readiness, ERM, fraud risk management, SOX compliance, cybersecurity, and AI governance.

 

Job Description:

Our client is seeking a seasoned IT audit professional to execute technology-focused assurance engagements across a global portfolio of mid-market and enterprise clients. You will lead the full fieldwork lifecycle — from scoping and testing through findings and reporting — operating as a trusted subject matter resource in cloud security, AI governance, IT general controls, and SOC 2 readiness. Your output goes directly to client audit committees and senior management.

 

Responsibilities of the role:

• Plan and execute IT audit engagements across cloud security, AI governance, IT general controls, application controls, and SOC 2 readiness and evaluation.

• Develop risk-based test plans aligned to COBIT, NIST CSF, NIST AI RMF, ISO 27001, and IIA Standards.

• Conduct control walkthroughs, technical testing, and evidence evaluation; produce CHA-standard workpapers with clear objectives, procedures, evidence, and conclusions.

• Draft findings with full CCCE structure: condition, criteria, cause, effect, and risk-rated recommendations.

• Lead client exit conferences and guide management response review.

• Execute SOC 2 readiness assessments: gap analysis, control design review, and remediation roadmap development.

• Perform AI governance reviews including model risk, bias assessment, explainability controls, and AI policy compliance.

• Conduct cloud security audits across AWS, Azure, and GCP environments; assess identity, access, data protection, and configuration controls.

• Contribute to proposals, scoping models, and technical sections of engagement deliverables.

 

Required Experience and Qualifications:

• 4-7 years in IT audit, information security, or technology risk advisory in a professional services or internal audit environment

• Demonstrated proficiency executing ITGC, application control, SOX IT, and cloud security engagements

• Hands-on SOC 2 readiness assessment experience

• Strong workpaper documentation and findings development skills; able to communicate findings to executive audiences

• Professional-level English proficiency, written and verbal

 

Preferred Skills:

• Active certification: CISA, CISSP, CRISC, CIA, or recognized international equivalent

• Experience applying NIST AI RMF or ISO/IEC 42001 in an audit or advisory context

• Big Four, multinational advisory, or global consulting background

• CDPSE, CCSP, or cloud security platform certification

 

Personality:

• N/A

 

Software & Tools:

• N/A

 

Schedule:

Part-time or full-time capacity available

US time zone overlap required

 

Salary and Benefits:

• Payment in USD or Local Currency according to candidate's preference.

• Full-time remote opportunity.

Recruitment Team

Cody ReedCody Reed
Gunther JacobsenGunther Jacobsen