Mandatory Qualifications:
1. Minimum of five (5) years of experience applying security policies, standards, testing, modification, and implementation. At least three (3) years of that experience must be in information security analysis.
2. Possession of a bachelor s degree in an IT-related or Engineering field.
Desirable Qualifications:
1. Minimum of five (5) years of work experience, as an IT Auditor, evaluating and assessing the effectiveness and efficiency of an organization's IT systems, processes, and controls in ensuring compliance with relevant regulatory, legal, and industry standards.
2. Minimum of five (5) years of work experience in the areas of information systems and security auditing, information technology risk assessments, and/or security assessments for large, complex organizations preferably in state or federal government.
3. Minimum of five (5) years of work experience within the past seven (7) years performing information security consulting, in the areas of information systems and security audit (e.g., vulnerability and compliance scans), program development and implementation, including program charter, governance structure, program strategy/priorities, policies and procedure, tactical planning, timeframe and resource development and budgeting.
4. Minimum of three (3) years of work experience of IT audit standards and framework such as NIST (National Institute of Standards and Technology) frameworks, ISO (International Organization for Standardization) standards, Information Systems Audit and Control Association (ISACA) Standards and Guidelines. Government Auditing Standards or related guidelines, and best practices related to information systems and security auditing.
5. Experience with executing the IT audits in compliance with the organization s set standards and objectives, sharing and presenting audit results, and providing recommendations to management based on the results.