Sr. Spec. DDIT ISC Gov Proj. Control Assessments
Core
Performing independent project and technology control assessments to identify gaps, evaluate compliance, and support remediation for IT Compliance and Risk Assurance services.
Role type
Senior Specialist, IT Control Assessments
Builds
IT Compliance and Risk Assurance services across applications, platforms, cloud environments, infrastructure, and emerging technologies
Domain
Information Technology / Cybersecurity / Regulatory Compliance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
IT control testing, risk assessments, compliance reviews, security assessments, SOX compliance, IT General Controls (ITGCs), risk management principles, internal control frameworks, cybersecurity concepts
Preferred skills
Big 4 consulting experience, professional certifications (CISA, CISM, CRISC, CISSP)
Technologies
SOX, SOC1, SOC2, NIST, ISO 27001, COBIT, PCI DSS, GxP
Responsibilities
Perform risk-based Control Assessments and support IT Compliance and Risk Assurance services; Evaluate control design and operating effectiveness against policies and standards; Identify control gaps, compliance deficiencies, and potential technology risks; Recommend practical and risk-based remediation actions; Align findings and remediation plans with business, security, compliance, and technology stakeholders; Track remediation activities through closure and validate evidence; Support continuous improvement initiatives and control monitoring activities; Contribute to awareness sessions, training programs, and enhancement of assessment methodologies
Seniority
Senior, hands-on IC