Grant Thornton

IT Risk Senior Associate (SOX & Internal Audit)

Grant Thornton$101K — $129K *
Business Services
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Accounting, Finance, IT, MIS, or related field
  • Minimum 2 years of experience in professional services or internal audit
  • CISA, CISSP, CISM, or CPA certification preferred
  • Knowledge of IT risk management and cybersecurity standards like COBIT, NIST CSF
  • Experience with IT controls and risk management processes, especially for SOX compliance
  • Familiarity with ERP systems like SAP, Oracle, etc. is a plus
  • Proficiency in analytics tools such as ACL, IDEA, Tableau, etc.

Responsibilities

  • Participate in client engagements from start to finish, focusing on risk management tasks
  • Understand client industries, objectives, and operations
  • Execute tests on IT control design and effectiveness based on client needs
  • Apply innovative thinking to solve client business issues effectively
  • Collaborate with project teams to ensure service delivery meets expectations
  • Work with colleagues from various advisory business lines
  • Meet or exceed established performance metrics

Benefits

  • Personalized and comprehensive benefits reflecting diverse needs and experiences
  • Medical, dental, and vision insurance programs
  • Employee assistance program
  • Minimum of 72 hours of paid sick leave
  • 401(k) savings plan and employee retirement plan eligibility for seasonal roles
Full Job Description
Job Description

As an IT Risk Senior Associate, you will get the opportunity to grow and contribute to our clients' business needs by helping them understand their business risks and assist in addressing risk in both proactive and responsive contexts for the Risk, Compliance & Controls Practice - all with the resources, environment, and support to help you excel. You'll collaborate with teams to execute and report on risk management, internal control and internal audit engagements that develop, assess, or improve the design and operating effectiveness of IT risk management and internal control activities.

From day one, you'll be empowered by the greater Risk team to help clients make the moves that will help them achieve their vision and help you achieve more, confidently.

Your day-to-day may include:
  • Actively participate in client engagements from start to completion, with a focus on executing and reporting on assigned project tasks that include co-sourced and outsourced IT internal audit, IT internal control assessments, IT risk management program assessments, tests of IT control design and operating effectiveness for Sarbanes-Oxley (SOX) and other compliance requirements, and helping clients design and implement IT controls
  • Obtain an understanding of clients' industry, objectives, strategy, operations, processes, IT systems, and controls
  • Execute IT control design and operating effectiveness test procedures based on engagement scope, and client environment risk factors
  • Bring an innovative and analytical mindset to help our clients solve business issues and enable more efficient project execution
  • Work with the project team and client to deliver services in accordance with project leadership and client expectations
  • Work collaboratively with colleagues across Advisory Business Lines (ABLs) and with other Grant Thornton Service Lines (e.g., Audit Services and Tax Services)
  • Meet or exceed defined performance metrics
  • Other duties as assigned


You have the following technical skills and qualifications:
  • Bachelor's degree in Accounting, Finance, Information Technology, MIS, or a related field is required
  • Minimum 2 years of related work experience with a professional services firm, or part of an internal audit function
  • CISA, CISSP, CISM, CPA license/certification preferred
  • Understanding of IT risk management and cybersecurity risk management standards (COBIT, NIST CSF, etc.)
  • Experience in assessing the design and operating effectiveness of IT risk management and IT controls (IT general controls, application controls, etc.) for Internal Audit, SOX compliance, or other risk management activities
  • Experience assessing configuration and controls of ERP systems (SAP, Oracle, PeopleSoft, JD Edwards) a plus
  • Experience assessing configuration and controls of SAP ECC, S/4 HANA, etc. (BASIS and security administration, process controls, etc.) a plus
  • Strong understanding of IT general controls, and current focus areas of external financial statement auditors
  • Experience assessing GRC and Identity and Access Management (IAM) solutions a plus
  • Experience assessing at least one (preferably multiple) operating system (OS/400, Windows, UNIX, etc.), database system (Oracle, SQL, etc.), and IT infrastructure / network component (domain controllers, firewalls, routers, intrusion prevention / detection solutions, etc.)
  • Experience with ACL, IDEA, QlikView, QlikSense, Tableau, Spotfire, or other analytics and visualization solutions
  • Ability to execute multiple engagements and completing priorities in a rapidly growing team environment
  • Exceptional client service, communication, analytical, organizational and project management skills
  • Strong computer skills, including proficiency in Microsoft Visio and Office Suite applications
  • Can travel as needed


The base salary range for this position is between $101,200 to 129,030. Placement within the pay range is at Grant Thornton's discretion, and it is based on multiple factors, including but not limited to, job -related knowledge/skills, experience, business needs, progression within the role, geographic location, and internal equity. At Grant Thornton, compensation decisions are dependent upon the facts and circumstances of each position and candidate.

Benefits:

We understand that your needs, responsibilities and experiences are different, and we think that's a good thing. That's why we support you with personalized and comprehensive benefits that recognize and empower all the identities, roles and aspirations that make you, well, you. For an overview of our benefit offerings, please visit: https://www.grantthornton.com/careers/rewards-and-benefits

  • Benefits for internship positions: Grant Thornton interns are eligible to participate in the firm's medical, dental and vision insurance programs and the firm's employee assistance program. Interns also receive a minimum of 72 hours of paid sick leave, and are paid for firm holidays that fall within their internship period.
  • Benefits for seasonal employee positions: Grant Thornton seasonal employees are eligible to participate in the firm's medical, dental and vision insurance programs and the firm's employee assistance program. Seasonal employees may also be eligible to participate in the firm's 401(k) savings plan and employee retirement plan in accordance with applicable plan terms and eligibility requirements. Seasonal employees receive a minimum of 72 hours of paid sick leave.


Grant Thornton employees may be eligible for a discretionary, annual bonus based on individual and firm performance, subject to the terms, conditions and eligibility criteria of the applicable bonus plan or program. Interns and seasonal employees are not eligible for bonus compensation.

Additional Details:

Consistent with the Americans with Disabilities Act (ADA) and applicable state and local laws, it is the policy of Grant Thornton LLP to provide reasonable accommodation when requested by a qualified applicant or employee with a disability, unless such accommodation would cause an undue hardship. The policy regarding requests for reasonable accommodation applies to all aspects of employment, including the application process. To make an accommodation request, please contact [email protected].

About Grant Thornton

Grant Thornton LLP is the American member firm of Grant Thornton International, the seventh largest accounting network in the world by combined fee income. Grant Thornton LLP is the sixth largest U.S. accounting and advisory organization. The firm operates 59 offices across the US with approximately 8,500 employees, 550 partners, and produces annual revenue in excess of US$1.9 billion. During the 2022 Russian Invasion of Ukraine, The Times reported that Grant Thornton is in line to earn millions of pounds for acting as trustees in a bankruptcy case on behalf of the Russian state-owned DIA, who bypassed sanction regimes to obtain funds and assets from abroad in order to fund the war in Ukraine.
Learn more about Grant Thornton

Similar Jobs

More Jobs at Grant Thornton

  • Grant Thornton
    Technology M&A Manager
    $182K — $227K *
    Southfield, MI 48076 (Oakland County)
    Enterprise Technology
    In-Person
  • Grant Thornton
    Technology M&A Manager
    $182K — $227K *
    Los Angeles, CA 90011 (Los Angeles County)
    Enterprise Technology
    In-Person
  • Grant Thornton
    Technology M&A Manager
    $182K — $227K *
    Boston, MA 02115 (Suffolk County)
    Enterprise Technology
    In-Person
  • Grant Thornton
    Technology M&A Manager
    $182K — $227K *
    Philadelphia, PA 19120 (Philadelphia County)
    Enterprise Technology
    In-Person
  • Grant Thornton
    Technology M&A Manager
    $182K — $227K *
    Arlington, VA 22204 (Arlington County)
    Enterprise Technology
    In-Person

More Business Services Jobs

Find similar IT Risk Senior Associate (SOX & Internal Audit) jobs: