empty

Sr Internal Auditor - Cybersecurity

Truist

Job Description

Posted on: 
November 25, 2024

Summary and company overview

Summary Information about the Role

The Cybersecurity Auditor will be an integral part of the Internal Audit Department, responsible for performing cybersecurity assurance work, cybersecurity risk assessments and ensuring compliance with regulatory requirements. This role requires a highly skilled professional with a deep understanding of cybersecurity frameworks, strong understanding of network security, end-point security, encryption, identity and access management, cloud security, and incident response. The ideal candidate will have the ability to provide actionable insights and recommendations to enhance the bank’s security controls and mitigate cyber risks. This role will interpret the results of audit work performed, determine internal control weaknesses, and make value-added recommendations. On occasion, this role may lead segments or primary elements of targeted audits or special reviews.

Company Overview

NA

Responsibilities

  • Prepare for and lead effective client interviews and document interview results via narratives, flowcharts and process maps for complex business processes.
  • Analyze process documentation to evaluate design effectiveness and efficiency of controls.
  • Design and execute testing strategy by incorporating the use of data analytics.
  • Identify internal control weaknesses, including risks and root cause.
  • Assist in guiding junior team members to enhance achievement of goals and objectives
  • Present and effectively communicate identified audit issues to Management and the Engagement Manager.
  • Develop advanced audit skills and begin developing risk assessment and project management skills
  • Deepen knowledge of the organization, operations, policies, and procedures (including banking laws and regulations) under which Truist operates.
  • Create work papers in line with Truist Audit Services procedures and documentation requirements.
  • Work independently with minimal oversight to ensure work is completed on time and within deadlines.
  • Receive constructive feedback and apply to future assignments.

Job Requirements

Required Qualifications:

  • Bachelor’s degree in accounting, business or related field or equivalent education and related training or experience.
  • Four to six years of banking, auditing or other relevant experience related to area of responsibility.
  • Good decision-making skills.
  • Strong knowledge of audit principles, practices, and methodologies including risk assessment, and audit documentation.
  • Good aptitude for learning analytical, audit and/or facilitation skills.
  • Ability to grasp the underlying concepts in complex information.
  • Ability to identify root causes of problems.
  • Ability to formulate solutions based on a synthesis of information.
  • Proficiency in computer applications, such as Microsoft Office software products.
  • Ability to manage multiple priorities of varying complexities.
  • Ability to work independently with minimal oversight.

Preferred Qualifications:

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • Possess relevant professional certifications such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH)
  • Proficiency in using cybersecurity tools and technologies, as well as audit management software.

Additional commentary

Additional Commentary

  • Location: Please note - to be considered for these roles, candidates must be in one of the following locations a minimum of 4 days per week:

  • Charlotte NC - 214 North Tryon Street

  • Raleigh NC - 3201 Beechleaf Court

  • Atlanta, GA - 303 Peachtree Street

  • Richmond, VA.- 1001 Semmes Ave

  • No Full Remote/Telecommute. No Relocation Assistance.

  • Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.

  • Truist supports a diverse workforce and is an Equal Opportunity Employer that does not discriminate against individuals on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status or other classification protected by law. Truist is a Drug Free Workplace.

Summary and company overview

Summary Information about the Role

The Cybersecurity Auditor will be an integral part of the Internal Audit Department, responsible for performing cybersecurity assurance work, cybersecurity risk assessments and ensuring compliance with regulatory requirements. This role requires a highly skilled professional with a deep understanding of cybersecurity frameworks, strong understanding of network security, end-point security, encryption, identity and access management, cloud security, and incident response. The ideal candidate will have the ability to provide actionable insights and recommendations to enhance the bank’s security controls and mitigate cyber risks. This role will interpret the results of audit work performed, determine internal control weaknesses, and make value-added recommendations. On occasion, this role may lead segments or primary elements of targeted audits or special reviews.

Company Overview

NA

Apply now