- Bachelor's Degree
- Master's Degree
- Active Directory
BAE Systems, Inc. is looking for a Senior IT Auditor to join our Office of the CISO Compliance Audit team in Reston, VA. In this risk and compliance role, you will perform a wide range of compliance and assurance activities serving as the primary liaison for ESS- IT driving improvements in control and governance processes. We have multiple openings on our team, some focused on our applications portfolios (including tools & databases), the others in IT Operations.
Manage and coordinate all internal Cybersecurity control standard audits of Applications, Engineering Tools, ESS IT Operations / Engineering, User Services, CISO including the coordinating conferences / interviews, facilitating data / information requests, assessing audit conclusions / reports for accuracy and completeness, assisting management with review and response to audit findings, and providing status updates to senior management as needed.
Leads projects to improve the risk and control environment through ad hoc control / compliance assessments, increasing awareness and knowledge of internal and regulatory compliance requirements, and identifying ways to streamline or improve the control environment without increasing overall risk.
Oversee the quarterly ESS IT Control Owner Self-Assessment (COSA) process by coordinating efforts, monitoring due dates, providing guidance to functional areas and reporting result to senior management.
Reviews planned corrective actions for adequacy and monitors open recommendations and plans of actions and milestones (POAMs) for timely completion.
Collaborates with IT Business Partners, management and other stakeholders to maintain awareness of changes in risk profiles, promote the awareness of risk and compliance initiatives and deliberate options in addressing emerging risks
Provides advisory and investigation support to management and IT Business Partners as needed.
Conducts Cybersecurity controls audits by examining and verifying IT procedures and documentation, settings, reports, and evidence of compliance of the internal BAE Systems IT organization to determine the reliability and effectiveness of the IT Cybersecurity controls. Prepares reports of findings and recommendations to management. May evaluate and recommend improvements to business practices, processes and control procedures.
Typical Education & Experience
Typically a Bachelor's Degree and 8 years work experience or equivalent experience
Required Skills and Education
8+ years of relevant, hands on experience working with and / or supporting IT Operations and Service Delivery as technical support staff or manager; plus
Demonstrated proficiency in IT solutions engineering and deployment.
Solid understanding of information security frameworks and IT audit methodologies.
Proficient with a broad knowledge of IT operations and technologies such as Network Infrastructure technologies (WAN/MAN/LAN), Cybersecurity, Active Directory, Backup & Recovery, Data Center, Messaging, Mobile Technologies, Remote Access, Storage, Operating Systems, Virtualization Services, SDLC and IT Service Desk.
Ability to evaluate and assess enterprise-wide risk in order to give audit findings appropriate weight.
Experience contributing to risk-based solutions structured around business priorities.
Preferred Skills and Education
Bachelor's Degree or Master's degree preferably with an emphasis in information systems, computer science, accounting, business, or related field.
8+ years of experience in an audit or compliance role.
Certification in one or more of the following:
o Certified Information Systems Auditor (CISA)
o Certified Information Systems Security Professional (CISSP)
o Certified Information Security Manager (CISM)
o Certified Internal Auditor (CIA)
o Certified Public Account (CPA)
About BAE Systems, Inc.
BAE Systems is a premier global defense and security company with approximately 90,000 employees delivering a full range of products and services for air, land and naval forces, as well as advanced electronics, security, information technology solutions and customer support and services. People are the greatest asset in any Company. BAE Systems is committed to hiring and retaining a diverse workforce.