Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

IT Audit Manager

KBR Careers

Title IT Audit Manager KBR is seeking an experienced IT Audit Manager to join the Internal Audit & Advisory team. This role is responsible for leading and overseeing the organization's IT Sarbanes-Oxley (SOX) compliance program, including the planning, execution, and reporting of IT General Controls (ITGC), application controls, automated controls, interface controls, and Software Development Lifecycle (SDLC) control testing. The IT Audit Manager will partner closely with IT leadership, business process owners, internal controls teams, and external auditors to ensure an effective control environment, timely remediation of identified deficiencies, and ongoing compliance with SOX 404 requirements. The ideal candidate brings strong experience managing IT SOX programs within complex global organizations, demonstrated expertise in IT control frameworks and risk assessment methodologies, and a proven ability to lead and develop audit teams while driving high-quality, risk-based audit execution. Key Responsibilities Manage the annual IT SOX compliance program, including planning, execution, monitoring, and reporting activities across IT control domains. Develop and maintain risk-based testing strategies and audit plans covering IT General Controls (ITGCs), application controls, automated controls, interface controls, and SDLC controls. Oversee walkthroughs, control assessments, and testing activities to evaluate the design and operating effectiveness of key IT controls. Lead and review testing of ITGCs, including access management, change management, IT operations, and system development controls. Direct testing and evaluation of SDLC controls, including development approvals, testing evidence, release management, and production migration processes. Oversee testing of key automated controls, application controls, system interfaces, and management reports used in financial reporting processes. Manage and mentor onshore and offshore IT audit and SOX testing teams, ensuring consistency, quality, and adherence to established audit methodologies. Review workpapers, testing documentation, and audit evidence to ensure accuracy, completeness, and compliance with professional standards. Partner with IT management, Internal Controls, business process owners, and external auditors to coordinate testing activities, address control issues, and facilitate audit reliance. Evaluate identified control deficiencies, assess potential SOX impact and severity, and provide recommendations for corrective actions. Monitor remediation activities, validate the effectiveness of corrective actions, and track resolution through completion. Prepare and present status reports, executive dashboards, testing summaries, and risk updates to management and key stakeholders. Basic Qualifications Education & Experience Bachelor's degree in Information Systems, Information Technology, Computer Science, Accounting, Finance, Audit, or a related field. Minimum of 10 years of progressive experience in IT audit, IT risk management, IT controls, IT compliance, or related disciplines. Minimum of 4 years of experience leading and managing IT SOX compliance programs and audit teams. Experience conducting and overseeing SOX 404 testing within large, complex, and global organizations. Demonstrated experience leading cross-functional initiatives involving IT, Internal Controls, Finance, and external audit stakeholders. Experience managing distributed, onshore, and offshore resources in a testing or audit environment. Technical & Leadership Skills Deep knowledge of IT General Controls (ITGCs), including access management, change management, IT operations, and system development controls. Strong expertise in SOX 404 compliance requirements, control testing methodologies, and internal control frameworks. Experience evaluating and testing application controls, automated controls, interface controls, and system-generated reports. Strong understanding of Software Development Lifecycle (SDLC) processes and associated control requirements. Proven ability to assess control design and operating effectiveness, identify risks, and evaluate control deficiencies. Strong analytical, problem-solving, and risk assessment skills. Ability to manage multiple priorities, projects, and deadlines in a fast-paced environment. Effective leadership, coaching, and team development capabilities. Excellent verbal and written communication skills with the ability to present complex technical and compliance matters to diverse audiences. Strong stakeholder management and relationship-building skills across business and technology functions. Preferred Qualifications Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), or equivalent professional certification. Prior experience within a publicly traded organization with mature SOX compliance requirements. Experience supporting external audit reliance strategies and coordinating with external auditors. Knowledge of leading control frameworks and governance standards, including COBIT, NIST, and related IT risk frameworks. Experience supporting digital transformation, ERP implementations, cloud environments, or large-scale technology change initiatives. Advanced experience with data analytics, audit automation, or continuous controls monitoring tools. Additional Compensation: KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus, relocation benefits, short term incentives, long term incentives, or discretionary payments for exceptional performance. Benefits: KBR offers a selection of competitive lifestyle benefits which could include a 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development. Belong, Connect and Grow at KBR At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team’s philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver – Together. KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law. R2127914 #J-18808-Ljbffr

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the IT Audit Manager in Colorado Springs, CO vacancy
  •  ...technical teams. This is accomplished in compliance with DoD Risk Management Framework (RMF) policies and procedures/DCSA DAAG, including...  ...vulnerabilities.Participate in regular security self-inspections and audits.Assist with the selection and implementation of security... 
    Suggested
    Temporary work

    Kratos Defense & Security Solutions

    Colorado Springs, CO
    1 day ago
  • $130k - $142k

     ...to properly authorized individualsEnsure audit records are collected, reviewed, and documented...  ..., operating system, networking, security management) relative to assigned dutiesExecute the...  .../Veteran StatusJob SummaryCategory: IT / Cyber Security / Network SystemsPosition... 
    Suggested
    For contractors

    AMERICAN SYSTEMS

    Colorado Springs, CO
    2 days ago
  • $100k - $150k

     ...’s Information Systems Security ProgramMaintain the Information Systems Security, Education, Training, and Awareness Program (SETA)Manage and enforce Information Security Policies and ProceduresReview and oversee all Information Systems Security Plans/SSPs (Certification... 
    Suggested
    Full time
    Contract work
    Shift work

    LMI

    Colorado Springs, CO
    2 days ago
  • $116.2k - $194k

     ...findings.#NISSC#LI-EW1 Qualifications Education: Bachelors in IT, Cyber, CS, IS, Data Science, or SW Engineering OR equivalent...  ...incidents underlines a proactive approach to security management.Experience leveraging tools such as eMASS, XACTA, CORE, ACAS, SCAP... 
    Suggested
    Contract work

    AMERICAN SYSTEMS

    Colorado Springs, CO
    4 days ago
  • $104k - $120k

     ...t just be limited to software development—it will directly support the Air Force in expanding...  ...of scan findings and IAVAs, and manage incident response workflows and recovery operations...  ...expert guidance in support of cyber audits, ATO packages, and continuous compliance processesEngage... 
    Suggested
    Full time
    Temporary work
    Work experience placement
    Local area
    Relocation package
    Flexible hours

    KBR

    Colorado Springs, CO
    4 days ago
  • $260k - $300k

     ...with a security program that is not only audit‑ready but genuinely resilient. Equally, the...  ...risk and compliance, but ensuring the IT foundation beneath the business is modern...  ...information security strategy, overseeing risk management, governance, compliance, and threat... 
    Full time
    Contract work
    For contractors
    Local area
    Remote work
    Home office
    Flexible hours
    Shift work

    Defense Unicorns

    Colorado Springs, CO
    1 day ago
  •  ...operate under the direction of the Information System Security Manager (ISSM), ensuring the technical and non-technical security aspects...  ...with approved system security plans, to include weekly system auditing. Develop and update Risk Management Framework Assessment and... 
    Temporary work
    Work at office
    Local area
    Flexible hours

    ClearanceJobs

    Colorado Springs, CO
    1 day ago
  • $80k - $120k

     ...Domain Awareness and Combat Power, and Battle Management Command, Control and Communications...  ...oversight, guidance, and technical support, on IT and information system security issues...  .... Experience conducting security audits/system assessments of information systems... 
    Contract work
    For contractors
    Work at office

    SAIC

    Colorado Springs, CO
    5 days ago
  • $78.3k - $102k

     ...vulnerabilities identified during risk assessments, audits, inspections, etc. Promote awareness of security issues among management and ensure sound security principles are...  ...remediation. Lead and align information technology (IT) security priorities with the security... 
    Casual work
    Remote work
    Flexible hours

    MIT Lincoln Laboratory

    Colorado Springs, CO
    4 days ago
  • $120k - $160k

     ...oversight, guidance, and technical support, on IT and information system security issues...  ...security authorization activities Manage and oversee system General and Privileged...  ...employment Vulnerability scanning and auditing experience Knowledge and hands on experience... 
    Contract work
    For contractors
    Work at office
    Afternoon shift

    SAIC

    Colorado Springs, CO
    2 days ago
  •  ...accreditation artifacts into a structured, auditable repository.Support audits, assessments,...  ...Linux-based systems.Experience accrediting IT systems against U.S. Government standards...  ....Understanding of configuration management and automation tools (e.g., Puppet, Terraform... 
    Full time

    Contact Government Services LLC

    Colorado Springs, CO
    4 days ago
  •  ...information systems by leading cybersecurity compliance, risk management, and system authorization activities. This role focuses on maintaining...  ...cybersecurity requirements Support security assessments, audits, inspections, and authorization activities Collaborate with... 

    Razor Talent

    Colorado Springs, CO
    4 days ago
  • Information System Security Officer II Global Resource Solutions, Inc. (GRS) is seeking an enthusiastic, motivated, detail orientated, and talented individual for the position of Information System Security Officer II. Summary: The ISSO II's primary function is working...
    For contractors
    Work at office

    GRS

    Colorado Springs, CO
    1 day ago
  • $52 - $61 per hour

     ...Description This role supports execution of the audit plan. Supports the execution of all phases of IT audits including planning, risk assessment,...  ...phases of the audit with limited oversight from the Manager of IT Audit. Assists with ongoing monitoring of project... 
    Hourly pay
    Temporary work
    Work experience placement
    Work at office

    Wings Credit Union

    Colorado Springs, CO
    1 day ago
  • $90k - $105k

     ..., creating and maintaining vulnerability management policies, procedures and trainingApply security...  ...for the control system(s), including IT components, interconnections, and...  ...and figuring out how to fix themConduct audits and assessments focused on uncover vulnerabilities... 
    Temporary work
    Local area
    Relocation package
    Flexible hours

    KBR

    Colorado Springs, CO
    5 days ago
  •  ...multiple classified network domains. You will manage the full security lifecycle for assigned...  ...security-driven configuration changes  Audit system logs and monitors outputs to...  ...with CI Polygraph  Bachelor’s degree in an IT-related field, or 10+ years of relevant IT... 

    General Dynamics Information Technology

    Colorado Springs, CO
    15 days ago
  • Sr IT Lead Internal Auditor (CISA, CISM, Risk Assessments, Audit Controls, Audit Techniques) in Colorado Springs, CO ATM Software Stack, Audit Testing Automation...  ...as intended -Skill in planning and project management, and in maintaining composure under pressure while... 
    Permanent employment
    Full time
    Work experience placement
    Local area
    Remote work
    Worldwide

    DBA Web Technologies

    Colorado Springs, CO
    more than 2 months ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to IT Audit Manager. Be the first to apply!