Staff Internal Auditor
On-siteFranklin, Tennessee, United States
Job Summary
Execute entry-level IT audit, risk assessment, and compliance reviews under direct leadership guidance, focusing on foundational procedures for infrastructure, application controls, and cybersecurity frameworks. Perform specific testing, analyze population data sets, and document evidence in workpapers while identifying control deficiencies and security gaps. Prepare process narratives, system flowcharts, and walkthrough documentation to assess control design effectiveness, then communicate findings to audit leadership and assist in drafting formal observations. Support basic technology assessments, system implementation reviews, and ad-hoc advisory projects to integrate risk management into organizational initiatives. Provide coordinated testing support and data gathering assistance to external auditors. Leverage basic data analysis tools like Excel and Power BI to evaluate data populations and improve testing speeds.
Required Qualifications
- Bachelor's Degree in accounting or related field
- Less than 2 years of experience in IT compliance, IT external/internal audit, or technology risk management
- Foundational knowledge of operating systems, databases, networks, and basic cybersecurity concepts
- Ability to understand how data flows through simple IT infrastructures
- Basic awareness of IT control frameworks (COBIT, NIST)
- Basic awareness of regulatory compliance requirements (SOX, HIPAA, Promoting Interoperability)
- Foundational understanding of internal audit concepts
- Foundational understanding of risk assessment
- Foundational understanding of control testing
- Proficiency in basic data manipulation tools (e.g., Excel)
- Strong time management skills
- Ability to execute assigned audit steps within budget
- Proactive, coachable mindset
- Willingness to learn from peers
- Clear written and verbal communication skills
- Ability to document audit testing accurately in narratives
- Ability to explain basic technical findings to immediate audit team members
- Strong computer skills including ACL, MS Excel, Access, PowerPoint, and Word
Desired Qualifications
- Certified Information Systems Auditor (CISA)
- CISSP Certified Information Systems Security Professional
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.