IT Auditor - Mid
Koitecc Solutions
The IT Auditor-_Mid supports SEC ISS contract objectives by driving vulnerability assessment and audit remediation activities across SEC IT environments. This role performs business process engineering to strengthen how vulnerabilities are identified, documented, prioritized, and remediated. The position supports SEC OIT requirements for FISMA compliance, audit readiness, and corrective action execution for internal and external findings. The role also improves remediation workflows and documentation practices to reduce repeat findings and improve enterprise security posture. Primary Responsibilities Vulnerability Assessment and Analysis Perform vulnerability assessments across SEC-supported systems and databases. Review and analyze vulnerability reports, validate findings, and assess severity and operational impact. Coordinate with infrastructure, application, and database teams to prioritize and remediate identified vulnerabilities. Maintain visibility into open vulnerabilities and track progress through remediation and closure. Audit Remediation and Corrective Action Management Support remediation of audit findings from Inspector General iCFR, FISMA, GAO, and SEC OIT Security audits. Triage new findings to determine ownership, remediation path, and required resources. Develop and maintain corrective action plans and POA&M tracking to closure. Validate remediation evidence and document completed actions to support audit closeout. Business Process Engineering and Control Improvement Perform business process engineering for remediation of vulnerabilities found during vulnerability assessments. Document remediation requirements, dependencies, and control updates needed to address findings. Align remediation activities with SEC change control practices, SOPs, and security policies. Identify process weaknesses and implement improvements to reduce introduction of new vulnerabilities. Documentation, Reporting, and Stakeholder Coordination Record vulnerabilities, remediation tasks, and status updates in approved tracking/ticketing workflows. Produce recurring reports on remediation status, risk posture, and aging findings. Prepare audit artifacts and supporting documentation for compliance reviews and inspections. Communicate risks, issues, and remediation progress to SEC stakeholders and program leadership. Required Qualifications Citizenship/Work Authorization: Must meet contract requirements. Clearance: Ability to obtain and maintain SEC Public Trust (or higher if required). Education: Bachelor's degree. Experience 8+ years of experience in IT auditing, vulnerability assessment, and audit remediation in enterprise IT environments. Minimum 5 years of related experience as an IT auditor performing vulnerability assessments and audit remediation, specializing in business process engineering. Experience assessing system and database vulnerabilities. Experience recording vulnerabilities and documenting requirements needed to remediate vulnerabilities. Technical Skills IT auditing focused on vulnerability assessments and audit remediation. Business process engineering for remediation of vulnerabilities identified during vulnerability assessments. System and database vulnerability assessment and analysis. Vulnerability recording and remediation requirement documentation. Preferred Qualifications Experience supporting SEC or other federal civilian agency cybersecurity/compliance programs. Working knowledge of NIST/FISMA risk management practices in regulated environments. Experience managing remediation against CISA Known Exploited Vulnerabilities (KEV) timelines. Hands-on experience with enterprise ticketing/reporting platforms (e.g., ServiceNow) for audit and remediation workflows. Ability to coordinate cross-functional remediation across hybrid infrastructure, applications, and database platforms. CISA, CISSP, CGRC (CAP) Work Environment / Other Operational Support: May require participation in on-call or surge support activities depending on operational needs. Location: Telework. Travel: As required per contract direction. All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws. #J-18808-Ljbffr
- ...NACBA is seeking an IT Auditor-Mid to support the SEC ISS contract by managing vulnerability assessments and audit remediations. The role involves improving remediation workflows and ensuring compliance with SEC OIT requirements. Candidates should have over 8 years of...SuggestedContract workRemote work
- ...Koitecc Solutions is seeking an experienced IT Auditor_Mid to support SEC ISS contract objectives by driving vulnerability assessment and audit remediation activities across SEC IT environments. This position entails performing business process engineering to enhance...SuggestedContract work
- ...Job Description Job Description IT Systems Auditor (Senior Level) Employment Type: Proposal Role – Future Job Opportunities The IT Systems Auditor (Senior Level) supports the assessment and evaluation of information system controls within federal financial...SuggestedWork at office
- ...various accounting systems, how data can be captured and analyzed in various environments. Overview We are seeking a Senior IT Systems Auditor to join our team! TekSynap is a fast growing high-tech company that understands both the pace of technology today and the...SuggestedFull timeContract workTemporary workLocal areaRemote workMonday to FridayWeekend workDay shiftAfternoon shift
- ...SecureIT is looking for an experienced IT Audit Manager to join our team. The winning... ...reviewing audit and assessment projects for mid-sized to large public companies, as well as... ...of experience working as an IT/security auditor or risk adviser for a public accounting firm...Suggested
- ...Fannie Mae is looking for an IT Internal Auditor - Lead Associate in Reston, VA. This hybrid role involves working both onsite and offsite, with responsibilities such as planning and executing audits related to cyber security and technology systems. We seek candidates...
- ...IT Audit Staff & IT Audit Seniors Location: Alexandria, VA or McLean, VA (Hybrid — 2–3 days on-site) Clearance: Active Top Secret required RM Advisory Services LLC (RMAS) is hiring IT Audit Staff and Seniors to support Department of Defense and Federal agency audits....Full time
$141k - $184k
...Fannie Mae is looking for an IT Internal Auditor - Advisor to evaluate its IT environment and enhance governance and risk management. This role involves utilizing advanced analytics and Generative AI technologies to improve audit processes. Candidates should have at least...- ...About the job IT Auditor II Our employees work at the center of the worlds financial markets, bringing both innovation and stability to the entire post-trade lifecycle. Our work environment favors openness and gives people the freedom to do their jobs well, by...Full timeWork at officeFlexible hours
- ...trusted audit professionals evaluates every aspect of Fannie Mae’s IT environment. From on-premises environments to cutting edge cloud... ...the IT environment.THE IMPACT YOU WILL MAKEThe IT Internal Auditor - Advisor role will offer you the flexibility to make each day your...Work at officeRemote work
$140k - $160k
Overview AMERICAN SYSTEMS is an employee-owned federal government contractor supporting national priority programs through our strategic solutions in the areas of Information Technology, Test & Evaluation, Program Mission Support, Engineering & Analysis, and Training...For contractors- # IT Internal Auditor - Lead Associate (Hybrid)InstantServe LLCFull TimejuniorHybridPosted 3 days ago## Job DescriptionIT Internal Auditor - Lead Associate (Hybrid)Hybrid-Full Time RoleHybrid with days working onsite and offsite to be determined and dependent upon company...Full timeFlexible hours
- ...SPS Consulting, LLC is seeking an IT Auditor in McLean, Virginia. Responsibilities include conducting system control reviews, preparing comprehensive reports, and advising management on risks related to information security and financial operations. The candidate must...
- ...to eliminate or manage the weaknesses identified. Likewise, the auditor will serve as a consultant, providing advice to management and technical... ...FISMA audits Document the assessment of design and fairness of IT control objectives in compliance with latest NIST instructions...
- ...Assessment and Authorization (SAA) process. Advise system owners on all matters, technical and otherwise, involving the security of assigned IT systems. In coordination with SO team, develop standard operating procedures in accordance with security control requirements....Full timeWork experience placementLocal areaFlexible hours
- What You Will Build Summary Serve as the primary security authority for SAP Concur’s FedRAMP-authorized environment, establishing and maintaining the security governance and compliance portfolio required to ensure continuous ATO sustainment and risk management. Focus on...Full timeContract work
- ...policies, managing risk assessments, and ensuring compliance with relevant regulations and standards. You will work closely with other IT teams to identify vulnerabilities, develop security protocols, and monitor systems for potential security threats. The ideal...Temporary workImmediate startFlexible hours
- ...of Defense cybersecurity requirements. Company Overview Advanced IT Concepts is a fast‑growing, proven Information Technology... ..., compliance, and business risk to executives, program leaders, auditors, and non‑technical stakeholders. Preferred Qualifications Master...Full timeContract workFor contractorsFor subcontractorLocal areaRemote work
$105k - $135k
...field security approvals. Conduct and analyze auditing requirements continuously. Required Qualifications 5+ years of experience in IT security and/or information assurance Background in secure software development Experience and enjoyment in working directly with customers...For contractorsRemote work$99k - $225k
...work with in‑house teams, subcontractors, and vendors to identify the right mix of tools and techniques to translate your customers’ IT needs and future goals into a plan that will enable secure and effective solutions. We need to come up with the best solutions, so you...Full timePart timeFor subcontractorWork at officeLocal areaRemote work- ...Assurance, Software Development, DevSecOps, Security Engineering, and Cloud Engineering. We enable and protect our nation's most important IT assets and invest in the long-term career development of every employee! We are currently looking for the next ISSO to join our team...Full timeImmediate start
- ...IT Auditor / Government & Risk Compliance Consultant Job location-Richmond/McLean VA (Hybrid) Role is surrounding a continuous controls monitoring program that they're trying to stand up within cybersecurity. They're looking to build out what will be many audits...
- ...Information Security Specialist, Security Compliance Officer, Information Assurance Analyst, Security Operations Center (SOC) Analyst, IT Security Manager, Security Risk Analyst, Cyber Risk Manager, Security Architect, Cybersecurity Engineer, System Security Engineer,...Temporary workFor contractorsImmediate startFlexible hours
- ...national security and counterterrorism operations. This full-time position, based in Vienna, VA, plays a critical role in securing complex IT systems in a high-visibility, mission-driven environment. The selected candidate will work closely with government and contractor...Full timeFor contractors
$66k - $106k
...extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at...Contract workShift work- Senior Information Systems Security Officer (ISSO) Location: Annapolis, MD / Reston, VA / Washington, DC Work Model: 100% Onsite (SCIF Environment) Work Type: Full-Time Experience Required: 13+ Years The Senior ISSO will support mission-critical cybersecurity initiatives...Full time
- - CMMC Champion and Head of IT Security and GRC - Direct Recruiters, Inc.# CMMC Champion and Head of IT Security and GRC## Job DescriptionCMMC Champion and Head of IT Security, Data Governance and IT Risk Audit and ControlsUnique Newly Created Role with a multi-national...Work at officeLocal areaMonday to Friday
$117.3k - $145.1k
At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared purpose to pursue the limitless potential of technology and ingenuity for...Live inWork at officeLocal area$120k - $150k
Information System Security Officer Reston, Virginia, United States Babel Street is the trusted technology partner for the world's most advanced identity intelligence and risk operations. We deliver advanced AI and data analytics solutions providing unmatched, analysis...Flexible hours- Altus Consulting Seeks an Information Systems Security Officer to Champion Cybersecurity If you find exhilaration in safeguarding digital assets and possess a deep understanding of cybersecurity frameworks and best practices, Altus Consulting invites you to explore ...Contract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Auditor - Mid. Be the first to apply!
- IT account executive Reston, VA
- IT network Reston, VA
- information technology and services consultant Reston, VA
- IT governance analyst Reston, VA
- intern IT Reston, VA
- information technology graduate Reston, VA
- entry level IT tech Reston, VA
- entry-level information technology Reston, VA
- information technology contractor Reston, VA
- entry level computer information technology Reston, VA


