Key Responsibilities of the IT Auditor;
Develop risk based IT audit programs, tests and checklists to assist in execution of IT audits for various systems in the Bank.
Execute risk- based audits in line with the approved IT Audit Plan from engagement planning carrying out appropriate tests, documenting IT risk exposures and making recommendations for improvement.
Review the IT Strategy for the Bank and offer assurance on its alignment to the Bank’s Strategy.
Provide assurance on the effectiveness of the Bank’s IT governance, IT management structure, adequacy of processes to support management in decision making process.
Provide assurance that the practice of acquisition, development, testing and implementation of information systems meet the Bank’s strategies and objectives.
Provide assurance that the processes for maintenance of the Bank’s information systems is adequate and whether they meet the user’s needs, expectations and overall bank strategy.
Review IT Policies, Procedures and Processes and controls for completeness and alignment to the generally accepted IS Standards, ISO 27001 and other best practices.
Carry out value for money reviews by evaluating the business case for the prosed IT investments in information systems to determine whether they meet the business objectives.
Evaluate risk management practices in the in order to determine whether IT related risks are adequately managed to avert loses to the Bank.
Assist the Head of Internal Audit in preparing IT Audit reports for submission to Management and the Board Audit Committee.
Present the key IT audit findings to Senior Management.
Coordinate IT audits carried out by external auditors such as Group Inspection, Central Bank, and the Bank’s External Auditor.
Assist Internal Auditors in developing scripts and data analytics to assist them in their audit work.
Offer support in carrying out fraud investigations that involve technical system manipulation.
Support Internal Auditors in optimizing use of Computer Assisted Audit Techniques (CAATS) such as
Teammate, and data analytic tools such as ACL, IDEA where appropriate.
Provide advisory on proposed IT developments such as acquisition of new systems and system upgrades to
ensure that IT risks are properly identified and controls embedded to mitigate the risks.
Qualifications for the IT Auditor Job: Bachelor’s degree in information systems/Technology, computer science or related field from a recognized university. Master’s Degree will be an added advantage.
Qualification in Certified Information Systems Auditor (CISA).
Certifications in Certified Information Security Manager (CISM), Certified in Risk and Information Systems and
Control, Certified Information’s Systems Security Professional (CRISC), Certified Public Accountant (CPA K) will be an added advantage.
4- 5 years’ experience in carrying out and managing IT audit projects in a financial institution.
Proficiency in Data Analysis tools ACL, IDEA.
Knowledge of other Audit tools such as Teammate will be an added advantage.
Experience in carrying out audits in other areas such as Credit, Operations, Treasury, Finance within a Bank is desirable.
In- depth understanding of Bank operating environment and interlink between IT systems and business operations.
Must be a member of Information Security Audit and Control (ISACA).
Possess technical knowledge in information systems (Particularly Networks, Databases, Operating systems and general computer applications).
Having knowledge in Accounting and Audit fields will be an added advantage.
Integrity
Analytical Skills
Innovative/ Creative
Initiative
Dynamic/Adaptable
Negotiation Skills
Continuous Professional Learning/Education
go to method of application »