No need for immigration sponsorship (e.g., H-1B, OPT, STEM OPT, CPT, TN, J-1, O-1)
Ability to work hybrid schedule: at least three days in office (including Tuesdays and Wednesdays), up to five days if needed
Bachelor's Degree in Business, Accounting, IT, or related field with focus on information systems
Minimum of five (5) years related experience, including minimum two years in software governance
Technical IT audit knowledge aligned to COBIT, NIST, and other industry standards
Full understanding of applicable state/federal legislation and industry regulations
Strong knowledge of IT general controls (operations, information security, change management for systems software, application source code, network, system database technologies)
Experience testing automated and manual application controls; security testing experience
Risk assessment ability and internal audit experience
Excellent communication, interpersonal, and report writing skills
Knowledge of IT security, infrastructure, and operating system platforms
Excellent analytical skills
Availability for emergency restoration assignments and travel between MA/CT/NH
Responsibilities
Develop and implement software governance program, including internal testing of IT control standards and procedures (test of design, test of operation, certifications) across multiple platforms and environments
Provide direct support for new system implementations to ensure compliance with General IT Controls and Security Protocols
Oversee policy, standards, guidelines, and control monitoring/testing for software governance program
Conduct process design, analysis, documentation, implementation, and testing activities
Analyze communication and recommend troubleshooting/training for business process continuity
Participate in testing and evaluation of new products and processes
Perform first-level troubleshooting, analysis, and monitoring of automated work processes for compliance with key security controls and practices
Communicate issues/concerns to stakeholders and audit management
Monitor implementation and completion of remediation efforts