IT Audit Manager
Apotex Inc.TorontoThe Manager of IT Audit supports the global Internal Audit function focused on Information Technology and Information Security at Apotex.This role ensures the effectiveness of IT internal controls,...Show more
As a key member of the Internal Audit Services (IAS) team, the IT Audit Manager is accountable for planning and executing risk-based, process focused IT audit assignments and IT General Control (ITGC) Testing with the goal to the overall risk/control environment of Canadian Tire Corporation.
What you'll do
Support the execution and completion of IT and cybersecurity process audits by assisting in performing risk assessments and developing detailed audit plans
Assist in execution of audit plans by assessing risks, design adequacy and operating effectiveness of IT and cybersecurity controls for various IT processes including but not limited to access, network security, vulnerability and patching, endpoint security, data security, cloud security, logging and monitoring, and change and incident management
Assess audit findings to derive risk / control stated recommendations
Document audit testing and audit test results in audit working papers that meet CTC Internal Audit and IIA standards and communicate findings to IT Audit Portfolio Managers in a clear and concise manner
Design IT audit data analytics, execute testing and analyze the results
Lead testing of assigned ITGCs in support of 52-109 certification. Test and document design and operating effectiveness of controls in a timely and efficient manner, clearly identify and communicate control weaknesses to the relevant internal and external stakeholders
Promote compliance to CTC policies and procedures, standards, and guidelines
Maintain and develop current and professional knowledge to enhance and complement work skill set
Leverage artificial intelligence technologies such as large language models (LLMs) to enhance the efficiency and effectiveness of audit execution
What you bring
4+ years of IT audit or information technology experience with focus on cybersecurity or risk management
University degree and CISA certification desired
Solid working knowledge and application of IT, cybersecurity, and service organization reporting control frameworks, specifically COBIT, NIST, and SOC (1 and 2)
Knowledge of various industry regulations such as 52-109, PCI, PIPEDA, and GDPR
Knowledge and experience with data analytics tools
Excellent relationship management, time management, organization, planning, and process mapping skills
Experience with IT process/controls, auditing practices, ITGC testing, and principles relevant to completing risk and control assessments
Technical knowledge of various IT infrastructure and network components such as operating system (Windows, Linux), databases (Oracle), and network
Strong understanding of public cloud networking and network security controls on platforms such as Azure, GCP, AWS
Proficiency with process mapping of controls, systems and processes
Strong skills in MS Excel, ideally experience with pivot tables and v-lookup. Knowledge of VBA would be an asset
Superior verbal and written communication skills sufficient to prepare and communicate audit findings dealing with facts and concepts for presentations to client executives and external auditors
Ability to take initiative and work independently and in a team environment
Detail-oriented with strong organizational abilities
We’re always looking for great talent! In addition to competitive pay, we offer:
Comprehensive benefits and retirement programs
Performance incentives, Continuing Education Programs
Other perks to support your well-being
Career growth opportunities and product discounts
Our typical hiring range is between $64,000.00 and $106,000.000 per annum. Salary decisions are also dependent on other factors such as your experience, job-related knowledge, skills and competencies, market location, industry benchmarks, internal equity and other role-specific requirements. We're committed to attracting top talent. For critical roles, the compensation offering will be reviewed to ensure alignment with market rate and conditions and the unique value you bring to the role.
This posting represents an existing vacancy within our organization.
We may use artificial intelligence tools as part of our recruitment process to assist in the initial screening of resumes. All hiring decisions, including candidate evaluation, selection, and disposition, are made by human recruiters.
IT Audit Manager • Toronto, ON