What are the responsibilities and job description for the IT Audit Manager position at Performance Food Group?
We Deliver the Goods:
Responsible for analyzing and evaluating risks and internal controls of the company's data and IT systems as well as the planning and execution of the company's IT Audit program and other IT audits (operational, financial & SOX) and special projects for the purpose of appraising and continuously improving the effectiveness and efficiency of IT governance, processes and internal control within Performance Food Group. The Manager, IT Audit may participate in the testing and/or review of SOX ITGC testing. Additionally, the Manager, IT Audit will work closely with management to provide guidance on IT risk management matters including application and infrastructure security and serve as the technical expert on IT projects to provide direction, interpretation and alternatives to maintain effective IT controls. This position requires a proactive approach to identifying emerging IT risks and advising on best practices to strengthen the overall IT environment within PFG.
Position Responsibilities:
- Competitive pay and benefits, including Day 1 Health & Wellness Benefits, Employee Stock Purchase Plan, 401K Employer Matching, Education Assistance, Paid Time Off, and much more
- Growth opportunities performing essential work to support America’s food distribution system
- Safe and inclusive working environment, including culture of rewards, recognition, and respect
Responsible for analyzing and evaluating risks and internal controls of the company's data and IT systems as well as the planning and execution of the company's IT Audit program and other IT audits (operational, financial & SOX) and special projects for the purpose of appraising and continuously improving the effectiveness and efficiency of IT governance, processes and internal control within Performance Food Group. The Manager, IT Audit may participate in the testing and/or review of SOX ITGC testing. Additionally, the Manager, IT Audit will work closely with management to provide guidance on IT risk management matters including application and infrastructure security and serve as the technical expert on IT projects to provide direction, interpretation and alternatives to maintain effective IT controls. This position requires a proactive approach to identifying emerging IT risks and advising on best practices to strengthen the overall IT environment within PFG.
Position Responsibilities:
- Independently develop IT audit programs by conducting IT Risk Assessments, evaluate system controls, perform fieldwork and testing, document audit results, make recommendations, and communicate findings to Internal Audit and senior management.
- Prepare and present comprehensive reports on the results of IT audits and special projects to Internal Audit and senior management.
- Present and communicate complex technological issues in a clear, concise and effective manner to technical and non-technical audiences.
- Perform risk assessment and execute testing of the company's IT controls following relevant control framework (COBIT, NIST, ISO27001, SOX) for Cybersecurity, IT general controls and business application controls.
- Consult with IT management in the design, documentation and remediation of IT process controls in a wide range of environments, including policies and procedures that address key areas of an IT organization, including system development, change management, network security, infrastructure, operations and segregation of duties.
- Provide support to internal and external audit teams as required.
- Maintain or acquire sufficient knowledge of authoritative and regulatory issues governing information technology, auditing, or other fields as required to complete audit assignments.
- Performs other related duties as assigned.
- Bachelor's Degree in Management Information Systems, Information Security, Information Technology/Computer Information Systems or related discipline
- 5-7 years of experience in IT Audit/IT Governance
- Experience leading all facets of IT audit projects
- Working knowledge of security and technology frameworks