PenFed Credit Union
Lead IT Auditor - Tech and Cyber
PenFed Credit Union, Mc Lean, Virginia, us, 22107
Overview
Are you looking to take your career from good to great? As an employee of PenFed, every day is an opportunity to thrive, and be part of a team working to ensure our organization is providing world class service to our members, employees, and our communities. We exist to help our members realize their full potential, educate and encourage their dreams, and make every effort to follow our mission and help our members “do better.” Joining PenFed is more than being an employee; it’s about being a part of the PenFed family. PenFed is hiring a (Hybrid) Lead Auditor - Tech and Cyber at our Tysons, Virginia location. The Lead Auditor, Tech and Cyber is responsible for the planning, coordination, and execution of assigned internal audits. This position works closely with senior management to identify and evaluate key business risks and recommend actions to mitigate risks while improving and maturing processes. The Lead Auditor acts as a subject matter expert, builds relationships with business department leaders, and provides coaching and mentoring to Internal Audit staff. This position may complete audits independently or may lead, direct, and review the work of a team of Auditors on complex audits.
Responsibilities
Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. This is not intended to be an all-inclusive list of job duties, and the position will perform other duties as assigned. Plan, lead and execute high-quality, timely, independent, and objective complex technology and cyber audits including Identity & Access Management, Authentication, Data Security, Security Operations, Incident & Problem Management, IT Change Management, IT Asset Management, and System Development Lifecycle to ensure adherence to industry frameworks, regulatory requirements, and best practices. Facilitate and perform the entire audit process from planning to reporting with efficiency and autonomy. Ensure completion of multiple ongoing audits by prioritizing tasks, delegating, monitoring progress, and anticipating and resolving conflicts and dependencies. Coordinate the work of a team of Auditors or perform as a sole assigned auditor to ensure the timely progression of the audit engagement. Analyze processes and assess the level of compliance with applicable procedures, adequacy of controls, efficiency and effectiveness of operations, and accuracy of reported information. Execute and/or lead multiple areas of complex test work during audit activities. Document key risks, controls, audit test procedures, test results, and audit conclusions. Prepare professional audit reports on observations identified in the course of audit work and collaborate with management to ensure understanding and develop effective remediation plans. Review the audit work performed by assigned team members following professional and departmental standards with emphasis on the sufficiency and appropriateness of audit evidence. Provide feedback, mentoring, and developmental coaching to team members when applicable. Proactively identify control weaknesses and opportunities for improvement and provide recommendations for remediation. Actively support follow-up on audit recommendations to ensure the actions taken remediate the reported conditions. Assist with identifying innovative approaches to assessing risk in PenFed operations and accomplishing essential audit tests including the use of data analytics. Develop internal, business leader relationships to understand key initiatives within PenFed. Maintain knowledge and serve as a functional expert on risk assessment and internal control in a credit union environment. Assist with maintaining the department’s professional relationship with senior leadership, external auditors, NCUA, and other regulators. *This role is responsible for ensuring business continuity.*
Qualifications
Equivalent combination of education and experience is considered. Bachelor’s degree in business administration, Accounting, or a related field required. Minimum eight (8) years’ experience in auditing in the financial services industry or financial regulatory environment required. Knowledge and experience with auditing technology and cybersecurity topics (e.g. Identity & Access Management, Data Security, IT Change Management, etc.) against regulatory requirements, industry frameworks and best practices (e.g. NIST CSF, COBIT, etc.). Knowledgeable with the Institute of Internal Auditors’ International Standards for the Professional Practice of Internal Auditing. Proven analytical and critical thinking skills. Excellent written and verbal communication skills with the ability to present sensitive and complex findings to business management and influence change. Proven ability to lead audits start to finish, both independently and as the project lead directing and reviewing staff work. Proven ability to handle multiple projects at the same time. Supervisory Responsibility This position will not manage employees. Licenses and Certifications Related professional certification required (e.g., CPA, CIA, CAMs, CISSP, CISA, etc.)
Work Environment While performing the duties of this job, the employee is regularly exposed to an indoor office setting with moderate noise. *Most roles require working in an office setting with moderate noise and the ability to lift 25 pounds.* Travel The ability to travel to various worksites and be on-call may be required.
About Us
Established in 1935, PenFed today is one of the country’s strongest and most stable financial institutions with over 2.8 million members and over $36 billion in assets. We serve members in all 50 states and the District of Columbia, as well as in Guam, Puerto Rico and Okinawa. We are federally insured by NCUA and we are an Equal Housing Lender. We are available to members worldwide, via the web, seven days a week, twenty-four hours a day.
We provide our employees with a lucrative benefits package including robust medical, dental and vision plan options, plenty of paid time off, 401k with employer match, on-site fitness facilities at our larger locations, and more.
Equal Employment Opportunity PenFed management will maintain and observe personnel policies which will not discriminate or permit harassment or retaliation against a person because of race, color, creed, age, sex, gender, gender identity, gender expression, religion, national origin, ancestry, marital status, military or veteran status or obligation, the presence of a physical and/or mental disability or medical condition, genetic information, sexual orientation, and all statuses protected by applicable state or local law in all recruiting, hiring, training, compensation, overtime, position classifications, work assignments, facilities, promotions, transfers, employee treatment, and in all other terms and conditions of employment. PenFed will also prohibit retaliation against individuals for raising a complaint of discrimination or harassment or participating in an investigation of same.
PenFed will also reasonably accommodate qualified individuals with a disability so that they can apply for a job or perform the essential functions of a job unless doing so causes a direct threat to these individuals or others in the workplace and the threat cannot be eliminated by reasonable accommodation or if the accommodation creates an undue hardship to PenFed. Contact human resources (HR) with any questions or requests for accommodation at 402-639-8568.
#LI-Hybrid
#J-18808-Ljbffr
Are you looking to take your career from good to great? As an employee of PenFed, every day is an opportunity to thrive, and be part of a team working to ensure our organization is providing world class service to our members, employees, and our communities. We exist to help our members realize their full potential, educate and encourage their dreams, and make every effort to follow our mission and help our members “do better.” Joining PenFed is more than being an employee; it’s about being a part of the PenFed family. PenFed is hiring a (Hybrid) Lead Auditor - Tech and Cyber at our Tysons, Virginia location. The Lead Auditor, Tech and Cyber is responsible for the planning, coordination, and execution of assigned internal audits. This position works closely with senior management to identify and evaluate key business risks and recommend actions to mitigate risks while improving and maturing processes. The Lead Auditor acts as a subject matter expert, builds relationships with business department leaders, and provides coaching and mentoring to Internal Audit staff. This position may complete audits independently or may lead, direct, and review the work of a team of Auditors on complex audits.
Responsibilities
Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. This is not intended to be an all-inclusive list of job duties, and the position will perform other duties as assigned. Plan, lead and execute high-quality, timely, independent, and objective complex technology and cyber audits including Identity & Access Management, Authentication, Data Security, Security Operations, Incident & Problem Management, IT Change Management, IT Asset Management, and System Development Lifecycle to ensure adherence to industry frameworks, regulatory requirements, and best practices. Facilitate and perform the entire audit process from planning to reporting with efficiency and autonomy. Ensure completion of multiple ongoing audits by prioritizing tasks, delegating, monitoring progress, and anticipating and resolving conflicts and dependencies. Coordinate the work of a team of Auditors or perform as a sole assigned auditor to ensure the timely progression of the audit engagement. Analyze processes and assess the level of compliance with applicable procedures, adequacy of controls, efficiency and effectiveness of operations, and accuracy of reported information. Execute and/or lead multiple areas of complex test work during audit activities. Document key risks, controls, audit test procedures, test results, and audit conclusions. Prepare professional audit reports on observations identified in the course of audit work and collaborate with management to ensure understanding and develop effective remediation plans. Review the audit work performed by assigned team members following professional and departmental standards with emphasis on the sufficiency and appropriateness of audit evidence. Provide feedback, mentoring, and developmental coaching to team members when applicable. Proactively identify control weaknesses and opportunities for improvement and provide recommendations for remediation. Actively support follow-up on audit recommendations to ensure the actions taken remediate the reported conditions. Assist with identifying innovative approaches to assessing risk in PenFed operations and accomplishing essential audit tests including the use of data analytics. Develop internal, business leader relationships to understand key initiatives within PenFed. Maintain knowledge and serve as a functional expert on risk assessment and internal control in a credit union environment. Assist with maintaining the department’s professional relationship with senior leadership, external auditors, NCUA, and other regulators. *This role is responsible for ensuring business continuity.*
Qualifications
Equivalent combination of education and experience is considered. Bachelor’s degree in business administration, Accounting, or a related field required. Minimum eight (8) years’ experience in auditing in the financial services industry or financial regulatory environment required. Knowledge and experience with auditing technology and cybersecurity topics (e.g. Identity & Access Management, Data Security, IT Change Management, etc.) against regulatory requirements, industry frameworks and best practices (e.g. NIST CSF, COBIT, etc.). Knowledgeable with the Institute of Internal Auditors’ International Standards for the Professional Practice of Internal Auditing. Proven analytical and critical thinking skills. Excellent written and verbal communication skills with the ability to present sensitive and complex findings to business management and influence change. Proven ability to lead audits start to finish, both independently and as the project lead directing and reviewing staff work. Proven ability to handle multiple projects at the same time. Supervisory Responsibility This position will not manage employees. Licenses and Certifications Related professional certification required (e.g., CPA, CIA, CAMs, CISSP, CISA, etc.)
Work Environment While performing the duties of this job, the employee is regularly exposed to an indoor office setting with moderate noise. *Most roles require working in an office setting with moderate noise and the ability to lift 25 pounds.* Travel The ability to travel to various worksites and be on-call may be required.
About Us
Established in 1935, PenFed today is one of the country’s strongest and most stable financial institutions with over 2.8 million members and over $36 billion in assets. We serve members in all 50 states and the District of Columbia, as well as in Guam, Puerto Rico and Okinawa. We are federally insured by NCUA and we are an Equal Housing Lender. We are available to members worldwide, via the web, seven days a week, twenty-four hours a day.
We provide our employees with a lucrative benefits package including robust medical, dental and vision plan options, plenty of paid time off, 401k with employer match, on-site fitness facilities at our larger locations, and more.
Equal Employment Opportunity PenFed management will maintain and observe personnel policies which will not discriminate or permit harassment or retaliation against a person because of race, color, creed, age, sex, gender, gender identity, gender expression, religion, national origin, ancestry, marital status, military or veteran status or obligation, the presence of a physical and/or mental disability or medical condition, genetic information, sexual orientation, and all statuses protected by applicable state or local law in all recruiting, hiring, training, compensation, overtime, position classifications, work assignments, facilities, promotions, transfers, employee treatment, and in all other terms and conditions of employment. PenFed will also prohibit retaliation against individuals for raising a complaint of discrimination or harassment or participating in an investigation of same.
PenFed will also reasonably accommodate qualified individuals with a disability so that they can apply for a job or perform the essential functions of a job unless doing so causes a direct threat to these individuals or others in the workplace and the threat cannot be eliminated by reasonable accommodation or if the accommodation creates an undue hardship to PenFed. Contact human resources (HR) with any questions or requests for accommodation at 402-639-8568.
#LI-Hybrid
#J-18808-Ljbffr