UNC Health Care

IT Auditor Sr - Audit Services

UNC Health Care$80K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Management Information Systems, Computer Science, or related technical field.
  • Minimum three years of IT auditing experience.
  • Certified or in process of obtaining relevant certification (CISA, CISSP, CIA, CPA).
  • Strong knowledge of IT systems, application audits, and regulatory compliance (HIPAA, PCI).
  • Experience with data analytics and IT governance frameworks.

Responsibilities

  • Lead audits and advisory engagements from the annual work plan.
  • Conduct risk assessments and develop work programs for testing procedures.
  • Document findings in TeamMate and identify control weaknesses and compliance gaps.
  • Gather evidence through interviews and assess IT controls effectiveness.
  • Timely completion of audits with well-written reports for senior leadership.
  • Utilize analytical skills for problem-solving and root cause analysis.

Benefits

  • Hybrid work model allows for flexibility in work location.
  • Opportunities for professional certification support and career development.
  • Access to a collaborative work environment in a healthcare-focused organization.
  • Comprehensive healthcare benefits and support for wellbeing.
Full Job Description
Summary:
Responsible for leading and performing audits and advisory engagements of IT systems, processes, and controls to identify potential risks and vulnerabilities, while assessing the effectiveness of security measures, and providing recommendations to improve IT governance, management, operations, and security, risks, and compliance. Ensure compliance with federal regulations and established UNC Health Care System policies and procedures. Must have excellent skills in time and project management, report writing, communication and presentations to senior leadership.

Responsibilities:

  1. Lead and execute audits and advisory engagements assigned from the annual work plan and perform special projects, investigations, internal controls testing, continuous auditing, and other engagements.
  2. Conduct risk assessments and develop unique work programs to test procedures after gaining an understanding of the environment, governance, risks, and controls.
  3. Document work in the TeamMate audit tool and support conclusions. Identify internal control weaknesses, non-compliance with organizational policies, laws, and regulations, and opportunities to improve operational effectiveness. Research root-causes for corrective recommendations.
  4. Conduct interviews to gather evidence for data analysis and assess control effectiveness. Perform thorough testing of IT controls to determine their effectiveness.
  5. Complete audits timely with well written reports according to established department standards and effectively communicate the results to executive leadership and key stakeholders.
  6. Use analytical skills for problem solving, data interpretation, and root cause analysis.
Other Information

Education Requirements:
• Bachelor's degree in Management Information Systems, Computer Science, or related technical field.
Licensure/Certification Requirements:
• Certified or in process of obtaining certification within one year of hire. (i.e., CISA, CISSP, CIA, CPA)
Professional Experience Requirements:
• Three (3) years IT auditing work experience.
Knowledge/Skills/and Abilities Requirements:
Experience in applying relevant technical knowledge in the following areas:

  • IT system and application audits (Windows, UNIX, SQL and Oracle), network securities audits, and HIPAA and PCI compliance audits, knowledge of penetration tests and vulnerability assessments.
  • Ability to conduct all phases of risk-based audits either solo or as lead utilizing electronic work papers (i.e,. TeamMate, AutoAudit).
  • Experience with data analytics and software (i.e., IDEA, ACL).
  • Demonstrated effective leadership and interpersonal skills. Able to lead and present to senior management.
  • Excellent verbal and written communication skills. Can compose audit reports.
  • Experience in the medical field or other heavily regulated environment desirable.

Knowledge: 1) standards, regulations, and frameworks: Global Internal Audit Standards, HIPAA, PCI DSS, COBIT, NIST, ISO 27001, 2) risk assessments, 3) IT governance, 4) internal control Assessments, audit methodology.

Technical: possess a strong understanding of IT infrastructure, networks, applications, databases, operating systems, system development life cycle, cloud computing and cybersecurity.

Expert with analytical technology: Excel and data analytical software (e.g., IDEA, ACL, Power BI).

Abilities: 1) professional skepticism, objectivity, courage, curious, and ethical, 2) clear and concise verbal and written skills (reports, executive summaries, and presentations, 3) time management and project tracking, 4) leading work teams and customers; while providing guidance on audit methodology and technical areas, 5) adaptable and continuous learner.

Job Details

Legal Employer: NCHEALTH

Entity: Shared Services

Organization Unit: Audit Services

Work Type: Full Time

Standard Hours Per Week: 40.00

Salary Range: $38.55 - $55.43 per hour (Hiring Range)

Pay offers are determined by experience and internal equity

Work Assignment Type: Hybrid

Work Schedule: Day Job

Location of Job: US:NC:Morrisville

Exempt From Overtime: Exempt: Yes

This position is employed by NC Health (Rex Healthcare, Inc., d/b/a NC Health), a private, fully-owned subsidiary of UNC Health Care System, in a department that provides shared services to operations across UNC Health Care; except that, if you are currently a UNCHCS State employee already working in a designated shared services department, you may remain a UNCHCS State employee if selected for this job.

About UNC Health Care

UNC Health Care is a not-for-profit integrated health care system owned by the state of North Carolina and based in Chapel Hill. Originally established November 1, 1998, by N.C.G.S. 116-37, UNC Health Care currently comprises UNC Hospitals and its provider network, the clinical programs of the UNC School of Medicine, and eleven affiliate hospitals and hospital systems across the state.
Learn more about UNC Health Care
Size
32,000 employees
Industry
Founded
1952

Similar Jobs

More Jobs at UNC Health Care

More Information Technology Jobs

Find similar IT Auditor Sr - Audit Services jobs: