Principal IT Auditor
University of Minnesota - 15th Ave - Minneapolis, MN
Apply NowJob Description
Apply for Job Job ID372014 LocationTwin Cities;Duluth Job FamilyAudit Full/Part TimeFull-Time Regular/TemporaryRegular Job Code9781IS Employee ClassAcad Prof and Admin Add to Favorite Jobs Email this Job About the Job We are hiring a Senior IT Auditor II (Job Opening ID 372020) or a Principal IT Auditor (Job Opening ID 372014 ). Depending on qualifications and experience, and our good faith evaluation, you'll be hired into one of the following jobs and receive the respective benefits package as stated below. Come join the University of Minnesota's widely respected Office of Internal Audit (OIA) as the principal information technology (IT) auditor The Principal IT Auditor position is responsible for performing internal audit work focused on information technology throughout the University of Minnesota. The University encompasses a wide array of diverse activities including academic support functions, sponsored research, large scale business operations, academic health care, intercollegiate athletics, and municipal/utility operations. The complexity and size of audit assignments will vary significantly and will encompass audits of University units and processes, investigations, and other special projects. Incumbents are expected to have 8 or more years of applicable experience and be able to demonstrate proficiency in evaluating IT risk, security, and operations as part of internal audit work that conforms to the Institute of Internal Auditor's professional standards. Work assigned to incumbents will normally be defined, but work direction and scope may be at a high-level and require additional research and refinement by the incumbent. It is expected this work will be carried out with limited supervision. Decisions regarding the scope of work to be performed, the nature of testing to be completed, and the reporting and disposition of results will be delegated to this position with oversight by supervisors or managers. Additionally, the OIA will fund training and exam fees for key certifications such as the CIA, CISA, CFE and CPA, and you'll earn bonuses for achieving certifications. Please note, this position is not eligible for H-1B or Green Card sponsorship. This position does not offer a STEM OPT training program. Flexible work arrangements are available. This is a hybrid position (some remote and some in person.) This job could be based at the University of Minnesota Duluth or at the University of Minnesota Twin Cities. However, the position has system-wide responsibilities for all University locations and activities. Essential Responsibilities: (~25%) Perform engagement management activities associated with IT audits of University units or processes. This will include: Managing work assignments and evaluating work product of staff assigned to the audit. This includes being responsible for ensuring the work product is complete, logical and complies with both the Institute of Internal Auditor's professional standards and department practices. Ensuring staff are using appropriate audit judgment when drawing conclusions and evaluating the significance of audit findings. Coaching staff regarding completion of IT audit processes, evaluation of the units and IT business processes being reviewed, and creation of recommendations. Coordinating work effort and communication with line management responsible for assigned areas. Performing reviews of others' audit work to ensure it contains relevant facts to support audit scope and conclusions and adhere to internal audit policies and procedures. Managing client interaction during course of audit. Providing guidance to non-IT auditors (i.e., generalist auditors) leading audits where IT concerns are only a subset of the overall project. The incumbent will be assigned to review the IT audit planning, field work and reporting material associated with these audits. For these audits, the incumbent will normally consult with the IT Audit Manager before and after field work is performed for a vice and concurrence on planning and reporting strategies. (~25%) Plan IT audits of all levels of complexity independently with minimal supervision from audit management. The plans and procedures are to be developed using a risk-based methodology, focusing our audit effort on those activities creating the greatest risks to the institution. Plans must be developed in recognition of the limited audit resources available for each audit engagement. This will include: Collecting background material needed through a variety of mechanisms including interviews and data queries for defining the scope of planned audits based on risk analysis and management needs. Summarizing discoveries during the planning process. Drafting engagement letters, audit programs, time budgets, and work schedules for the audit. (~15%) Communicate the results of the audit work performed, using both verbal and written skills. This will include: Developing and documenting findings, and recommendations that properly address risks and conclusions. Meeting with the audit client(s) to discuss both the preliminary and final audit results. Using appropriate audit judgment in evaluating the significance of audit findings and the impact/risk of the issue. Drafting the initial audit report in a clear, concise, manner that effectively communicates results to all relevant levels of management. Ensuring recommendations made are both actionable and cost-effective, and that they identify appropriate root cause. (~25%) Perform IT audit testing of both University units and processes to evaluate the efficiency and effectiveness of internal control, risk management, and governance processes independently with minimal supervision from audit management. This includes assessing whether: Risks are appropriately identified and managed by the process owners and/or University management. Employees' actions comply with policies, standards, procedures, and applicable laws and regulations. Resources are acquired economically, used efficiently, and adequately protected. Programs, plans, and objectives are achieved. Quality and continuous improvement are fostered in the University's control processes. Significant legislative or regulatory issues impacting the University are recognized and addressed appropriately. The above audit work should be carried out by: Using accepted audit procedures and techniques during the audit, and performing audit steps in the programs established to evaluate the adequacy of controls, risk management and/or governance processes. Documenting, reviewing and assessing internal controls and the efficiency and effectiveness of business practices used in the units/processes being audited. This typically is accomplished through the use of questionnaires, interviews and flowcharts, data analytics and also through the testing of transactional activity. Obtaining, analyzing and appraising transactions, documents, records, reports and methods that provide the basis for our conclusions on the effectiveness and efficiency of controls over the unit or process being audited. Collecting and analyzing, through the use of data analytics and... For full info follow application link. The University recognizes and values the importance of diversity and inclusion in enriching the employment experience of its employees and in supporting the academic mission. The University is committed to attracting and retaining employees with varying identities and backgrounds. The University of Minnesota provides equal access to and opportunity in its programs, facilities, and employment without regard to race, color, creed, religion, national origin, gender, age, marital status, disability, public assistance status, veteran status, sexual orientation, gender identity, or gender expression. To learn more about diversity at the U:
Created: 2026-02-02