Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Sr IT Auditor image - Rise Careers
Job details

Sr IT Auditor

As a community, the University of Rochester is defined by a deep commitment to Meliora - Ever Better. Embedded in that ideal are the values we share: equity, leadership, integrity, openness, respect, and accountability. Together, we will set the highest standards for how we treat each other to ensure our community is welcoming to all and is a place where all can thrive.

Job Location (Full Address):

Remote Work - New York, Albany, New York, United States of America, 12224

Opening:

Worker Subtype:

Regular

Time Type:

Full time

Scheduled Weekly Hours:

40

Department:

100034 University Audit

Work Shift:

UR - Day (United States of America)

Range:

UR URG 114

Compensation Range:

$86,482.00 - $129,723.00

The referenced pay range represents the minimum and maximum compensation for this job. Individual annual salaries/hourly rates will be set within the job's compensation range, and will be determined by considering factors including, but not limited to, market data, education, experience, qualifications, expertise of the individual, and internal equity considerations.

Responsibilities:

GENERAL PURPOSE
Develops, directs, plans and evaluates internal audit programs for the organization's information systems and related procedures to ensure compliance with the organization's policies, procedures and standards. Audits information systems applications to ensure that appropriate controls exist and that information produced by the system is accurate. Advises others on information systems, internal controls and security procedures. Prepares reports and recommendations for management on the results of information systems audits.

ESSENTIAL FUNCTIONS

  • Conducts annual audits and risk assessments of the University's related to a wide array of information systems areas.
  • Evaluates the University's compliance with the standard requirements and assessment procedures.
  • Completes the applicable report for the assessment and attestation of compliance, obtains any required signatures, and submits annually to the University's acquiring bank.
  • Plans and leads meetings with clients to discuss the goals and objectives of the audit, with a focus on business processes and internal controls.
  • Develops audit procedures geared toward helping business units achieve objectives and identifies areas of exposure that may prevent objectives from being met while allowing for a broad range of coverage to maximize impact. Promotes the ability to provide advisory services through continuous communication with management.
  • Executes internal control risk assessments and develops customized audit strategies for the client under audit.
  • Creates a plan for the scope, timing, and resources needed to complete assigned audit projects and presents to leadership. Obtains, analyzes, and appraises evidentiary data as a basis for an informed, objective opinion on the overall efficiency and effectiveness of management's internal controls, business processes, and ability to meet goals and objectives.
  • Prepares formal reports expressing opinions on the adequacy and effectiveness of activities performed. Makes presentations to leadership prior to and at the conclusion of audits, addressing deficiencies and explaining recommended effective actions.
  • Uses technology to support audit projects. Identifies, clarifies, and researches problems to find the best solutions. Performs independent analysis and reasoning with attention to detail, while challenging the culture and status quo to generate new ideas.

Other duties as assigned.

MINIMUM EDUCATION & EXPERIENCE

  • Bachelor's degree and 3 years of relevant experience required or equivalent combination of education and experience


KNOWLEDGE, SKILLS AND ABILITIES

  • Knowledge of network architecture, servers, databases, and cloud environments required
  • Knowledge of data management practices, including data governance, protection, and privacy relevant to regulations such as HIPAA and GDPR required
  • Knowledge of standards and best practices for cybersecurity protocols, including firewalls, intrusion detection, and encryption techniques required
  • Knowledge of IT governance / control frameworks and standards (e.g., COBIT, HITRUST, NIST, ISO) required
  • Proven experience in IT auditing or risk management, with a focus on assessing IT controls and cybersecurity required
  • Proven experience in performing audits of IT systems, applications, and data security practices required
  • Familiarity with Systems Development Life Cycle (SDLC) required
  • Understands internal controls, business processes, auditing procedures and risk assessments required
  • Proficient in PC functionality and Microsoft Excel, Word and PowerPoint required
  • Ability to manage appropriate steps to get projects completed; has strong abilities to organize people and processes required
  • Ability to present ideas effectively and persuasively and convey concepts in a wide-variety of forums (Speaking to large groups, one-on-one, etc.) required
  • Ability to understand the “big” picture; champions University’s mission to those in all levels of the organization; sets short and long term goals to align business with University vision required
  • Ability to write thoughts and concepts in a clear and organized manner; effectively manages formal and informal communication required
  • Ability to understand how organizations operate required
  • Ability to manage effectively in a highly political environment required
  • Strong interpersonal skills required.
  • Ability to effectively communicate and relate to all levels within and outside the organization required
  • Able to use logic to solve challenging problems required
  • Able to resolve problems in a fair manner and gain the respect and trust of others involved in the negotiations required.
  • Able to make timely or planned decisions appropriate to the circumstances or situation required
  • Continuous energy to see projects through to completion, especially when faced with difficult obstacles required.
  • Ability to learn new technical skills and information adeptly required
  • Ability to perform at a high level due to strong functional knowledge required
  • Knowledge of electronic work papers required
  • Systems implementation experience preferred.
  • Experience in the health care and/or higher education environment preferred.


LICENSES AND CERTIFICATIONS

  • CIA, CISA, CISM, CISSP, CRISC, CGEIT, CPA, and/or MBA upon hire preferred.

The University of Rochester is committed to fostering, cultivating, and preserving an inclusive and welcoming culture to advance the University’s Mission to Learn, Discover, Heal, Create – and Make the World Ever Better. In support of our values and those of our society, the University is committed to not discriminating on the basis of age, color, disability, ethnicity, gender identity or expression, genetic information, marital status, military/veteran status, national origin, race, religion, creed, sex, sexual orientation, citizenship status, or any other characteristic protected by federal, state, or local law (Protected Characteristics). This commitment extends to non-discrimination in the administration of our policies, admissions, employment, access, and recruitment of candidates, for all persons consistent with our values and based on applicable law.

Average salary estimate

$108102.5 / YEARLY (est.)
min
max
$86482K
$129723K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs

Join Strong Memorial Hospital's outpatient surgical center as an LPN providing direct perioperative and ambulatory patient care across pediatric and adult populations on a daytime schedule.

The University of Rochester's Sawgrass Surgical Center is hiring a Registered Nurse (Level 2) to deliver high-quality pre-op and post-op perianesthesia care in an ambulatory surgical setting.

Posted 15 hours ago

Dole Packaged Foods seeks an experienced IT Support Analyst III to deliver L3 support, security monitoring, and operational process documentation at its Westlake Village office.

Photo of the Rise User
Posted 14 hours ago
Inclusive & Diverse
Feedback Forward
Collaboration over Competition
Growth & Learning

OpenAI is hiring a Director of Supply Chain Systems to lead and scale Oracle Fusion-based supply chain platforms and integrations that support global procure-to-pay, inventory, planning, and order management.

The Simulation Technology Specialist is a part-time, hands-on technical role responsible for operating and maintaining simulation manikins, AV/recording systems, and associated technologies to support healthcare education.

Photo of the Rise User
Stratas Foods Hybrid 7000 Goodlett Farms Pkwy, Cordova, TN 38016, USA
Posted 21 hours ago

Experienced ERP-focused Business Analyst needed to support shipping, receiving and warehouse processes, manage system configurations and lead ERP implementations across Stratas Foods plants.

Photo of the Rise User
Abridge Hybrid San Francisco
Posted 7 hours ago

Abridge is hiring a hybrid IT Support Engineer in San Francisco to deliver hands-on, white-glove desktop and collaboration tool support while driving excellent internal customer experiences.

Resultant is hiring an onsite Technical Support Specialist in Winamac, IN to provide desktop, network, and user support for client environments and ensure high-quality technical customer service.

Delaware Nation Investments/Emerging Technologies is hiring a Senior Systems Administrator to enforce DoD/USAF cybersecurity controls and manage IT/OT systems across AFSC depots.

Photo of the Rise User

Visa is hiring a Senior Cybersecurity Analyst to lead incident response, threat hunting, and detection engineering efforts within its Cyber Fusion Center to defend global payments infrastructure.

Tides Hybrid No location specified
Posted 2 hours ago

Lead and scale Tides’ cybersecurity program by developing governance, policies, and incident response capabilities while partnering across the organization to manage risk and compliance.

Photo of the Rise User
Posted 23 hours ago

Peraton is hiring a seasoned Network Engineer to lead design, security, and operations for DoD networks with COMSEC responsibilities and an active TS clearance.

Photo of the Rise User
Posted 3 hours ago

Lead Delinea's Cloud Support and Data Center teams to deliver secure, resilient infrastructure and operational excellence across on-prem and cloud environments.

Photo of the Rise User

TekSynap is hiring a Cybersecurity Technology Management Analyst to lead RMF/NIST compliance, enterprise security architecture, and advanced cybersecurity solutions for a DLA task order.

Photo of the Rise User
Posted 17 hours ago

Experienced IT Business Analyst needed to translate business needs into clear, testable requirements for transactional and API-based systems at Nelnet Business Services in Lincoln, NE.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
September 6, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!