Grant Thornton logo

IT Risk Manager (SOX & Internal Audit) - Insurance

Grant Thornton

Philadelphia, PAJob$138–173K/yrSeen 1mo agoSeen in employer's feed 3 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
$138–173K/yr
Location
Philadelphia, PA
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

CIA CertificationBachelor's degree

Job overview

The IT Risk Manager will collaborate with teams to execute and report on risk management, internal control and audit engagements, helping insurance and financial services clients understand and address IT risks while adhering to professional standards and confidentiality.

Skills & qualifications

RequiredNice to have

Skills

COBITNISTISOAccess Control SoftwareSecurity Architecture and AdministrationInternet Use/FirewallsNetwork Security Awareness and EnforcementSecurity Policies and StandardsDatabase Security AuditingOperating Systems Windows UNIX AS400Staff and Audit Management

Qualifications

Bachelor’s Degree in Accounting, Finance, Information Technology, MIS or Related FieldMinimum 6 Years Related Work ExperienceCIA CertificationCISA CertificationCISSP CertificationCISM CertificationCPA LicenseExperience Serving Insurance OrganizationsTechnology Risk Assessment Experience

Full job description

As an IT Risk Manager (Insurance), you will get the opportunity to grow and contribute to our clients' business needs by helping them understand their business risks and assist in addressing risk in both proactive and responsive contexts for the Risk, Compliance & Controls Practice – all with the resources, environment, and support to help you excel. You’ll collaborate with teams to execute and report on risk management, internal control and internal audit engagements that develop, assess, or improve the design and operating effectiveness of IT risk management and internal control activities.

From day one, you’ll be empowered by the greater Risk team to help clients make the moves that will help them achieve their vision and help you achieve more, confidently for clients, including insurers and other financial services organizations.

Your day-to-day may include:

  • Perform engagement management responsibilities, including performance reviews, task delegation, project scheduling, project economics and financials, quality review and client management

  • Manage business development activities, such as proposals, capture, account teams, whitepapers, conferences, and/or other thought leadership material

  • Adhere to the highest degree of professional standards and strict client confidentiality

  • Understand and manage firm risk on audits and proposals

  • Working with organizations to identify and manage IT risks within their strategy execution model.

  • Assist clients in applying key frameworks such as COBIT, NIST & ISO

  • Apply knowledge of insurance operations and regulatory expectations when assessing technology risks and controls, with emphasis on property and casualty insurance environments.

  • Developing IT components with enterprise risk management programs

  • Leading IT risk assessments ranging from internal audits, system implementations and specialized IT areas (security, basis, access provisioning, etc.)

  • Leading and executing IT audits and IT SOX engagements, including engagements involving insurance platforms, policy administration, claims, billing, reinsurance, and financial reporting systems

  • Apply current knowledge of IT trends and systems processes to identify security and risk management issues

  • Manage the evaluation and testing of IT processes, system controls and identification of areas of risk

  • Manage internal auditing outsourcing and co-sourcing engagements for clients

  • Meet or exceed targeted billing hours (utilization) and meet or exceed sales targets for new and follow-on work

  • Work closely with Grant Thornton managers and partners to promptly identify and resolve client concerns

  • Manage, develop, train, and mentor staff on projects, assess performance for engagement and year-end reviews

  • Interview campus and/or experienced candidates

  • Other duties as assigned

You have the following technical skills and qualifications:

  • Bachelor’s degree in Accounting, Finance, Information Technology, MIS, or a related field is required

  • Minimum 6 years of related work experience in a similar consulting practice or function servicing cross-industry clients at a national level

  • Experience serving insurance organizations, preferably property and casualty carriers, reinsurers, brokers, managing general agents, or third-party administrators, is preferred.

  • Certification required, CIA,CISA, CISSP, CISM, CPA license/certification preferred

  • Experience performing technology risk assessments and audits, operational internal audits, and process control reviews and strong familiarity with IIA’s Standards

  • Expertise in one or more of the following: access control software, security architecture and administration, Internet use/firewalls, network security awareness and enforcement, security policies and standards, database security auditing, operating systems (Windows, UNIX, AS400)

  • Strong experience in staff and audit management in an integrated client service team

  • The base salary range for this position is between $138,000 and $172,500. Placement within the pay range is at Grant Thornton’s discretion, and it is based on multiple factors, including but not limited to, job -related knowledge/skills, experience, business needs, progression within the role, geographic location, and internal equity. At Grant Thornton, compensation decisions are dependent upon the facts and circumstances of each position and candidate.

#LI-CL2

About Us

About the Team

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.