IT Audit Remediation Analyst

AssurIT

Fairfax (VA)

On-site

USD 90,000 - 130,000

Full time

9 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Health insurance
Paid time off

Job summary

Assurit seeks an IT Audit Remediation Analyst to coordinate remediation activities for audit findings and control gaps across technology processes and systems. You will drive workstreams, surface risks to leadership, and coordinate with control owners, auditors, and system teams with minimal oversight.

The role focuses on developing practical remediation plans, tracking actions to completion, validating new controls, and reporting status.

Qualifications

  • 5 years of experience in IT audit remediation or related field.
  • CISA, CISSP, or similar IT cert required (IAT II or equivalent).
  • Bachelor’s degree in information systems, computer science, or related field, or 4 years relevant experience.
  • Experience leading remediation efforts for audit findings, control deficiencies, or compliance gaps.
  • Familiarity with FISCAM, NIST, and FFMIA and IT general controls.
  • Ability to develop remediation plans with root-cause analysis, owners, and target dates.
  • Ability to assess design and operating effectiveness of controls.
  • Experience coordinating with IT, security, finance, and external auditors.
  • Strong knowledge of IT control domains (access, change, configuration, SDA, interfaces).
  • Experience preparing status updates, dashboards, and governance materials.

Responsibilities

  • Track and support remediation of NFRs and CAPs.
  • Coach system teams to develop CAPs and validate closures.
  • Plan and support off-site NFR workshops.
  • Document MOUs between client and internal roles across audit support functions.
  • Develop and maintain SOPs for Audit Liaison activities and RMF alignment.
  • Support metrics reporting for audit controls testing progress.
  • Manage FIAR scoping forms and ICOFR system lists.
  • Assist with data quality and interface control testing.
  • Document and validate compensating controls.
  • Support IT control rationalization playbooks and implementation playbooks.

Skills

Remediation leadership
Audit remediation
Cross-functional coordination
IT controls knowledge
Communication

Education

Bachelor's degree in information systems or computer science

Tools

SailPoint
CyberArk
AWS
Azure
Splunk

Job description

Assurit is currently seeking an experienced IT Audit Remediation Analyst to support one of our clients.
About the Role:

We are seeking an IT Audit / Business Transformation professional as part of the IT Audit Remediation staff responsible for coordinating and driving the execution of remediation activities to address audit findings and control gaps across technology processes and systems. The ideal candidate can independently drive assigned workstreams, manage competing priorities, and proactively manage upward by surfacing risks, recommendations, and decision points to leadership. This individual should be comfortable coordinating across control owners, auditors, and system teams, while requiring limited day-to-day oversight.

This Role Will:
  • Support the development of practical remediation plans
  • Work with control owners and stakeholders to track actions to completion
  • Validate that newly implemented controls are designed appropriately and operating effectively
  • Prepare clear status updates for leadership and reporting purposes
  • Highlight risks or delays
  • Support issue prioritization and escalation
  • Help maintain overall governance and documentation throughout the remediation lifecycle
Responsibilities:
  • Tracking and supporting remediation of planned DAF IT Notices of Findings and Recommendations (NFR) closures for the current Fiscal Year (FY)
  • Providing audit coaching to system teams to support the development of Corrective Action Plans (CAPs) and perform validation activities to support NFR closure and strengthen long-term control sustainment
  • Planning and supporting off-site NFR system deep-dive workshops
  • Documenting and managing memorandums of understanding (MOU) between the client and peer organizations roles and responsibilities across various audit support functions
  • Developing and maintaining SOPs for Audit Liaison activities, A-123 support, NFR remediation, CAP tracking, and third-party service provider oversight
  • Supporting metrics reporting and oversight for Air Force Audit Agency controls testing progress
  • Managing FIAR system scoping forms and ICOFR system lists
  • Assisting with data quality and interface control testing and validation
  • Documenting and executing annual FISCAM, FFMIA, and CUEC assessments
  • Documenting and validating compensating controls
  • Supporting the development of the IT control rationalization playbook
  • Supporting implementation playbooks for standardizing controls supported by enterprise capabilities
  • Facilitating Financial Management (FM) overlay implementation guidance aligned to the DAF’s Risk Management Framework (RMF)
Required Qualifications:
  • 5 years of experience
  • CISA, cyber security (e.g., IAT II or CISSP), or similar IT professional certification required
  • 4 year degree in information systems management, computer science, or other relevant field, or 4 years relevant experience
  • Demonstrated experience leading remediation efforts for audit findings, control deficiencies, or compliance gaps
  • Working knowledge of FISCAM, NIST, and FFMIA requirements and their application to IT general controls and financial system environments
  • Experience developing detailed remediation plans, including root cause analysis, corrective actions, owners, and target completion dates
  • Ability to assess and validate the design and operating effectiveness of newly implemented or enhanced controls
  • Experience coordinating with cross-functional stakeholders, including IT, security, finance, and external audit
  • Strong understanding of IT control domains such as access management, change management, configuration management, segregation of duties, interface controls, and system operations
  • Experience preparing status updates, dashboards, and reporting materials for leadership, auditors, and governance forums
  • Ability to identify remediation risks, dependencies, and delays, and elevate issues appropriately
  • Experience supporting external audits and coordinating with auditors
  • Knowledge of control testing methodologies, evidence requirements, and auditor expectations
  • Strong verbal and written communication skills, including the ability to translate technical issues into business and compliance impacts
Preferred Qualifications:
  • DAF or other DOW Agency Audit / Audit Remediation Support
  • Experience working with and/or auditing technologies such as SailPoint, CyberArk, AWS, Azure, Splunk
  • Familiarity with the DAF or DOW business process architecture (e.g., Business Enterprise Architecture (BEA) Framework)
Clearance:
  • Active or Interim Secret Clearance Required

Assurit is an award winning, certified small business headquartered in Fairfax, VA. We offer a highly competitive compensation and benefits package inclusive of medical and dental coverage, as well as paid time off.

Founded in 2013, Assurit has become a trusted provider of cybersecurity expertise to customers across federal, state and local governments, as well as the commercial sector. We are an employee-centric organization that focuses on the growth and development of our greatest asset – our people. We believe that if our Team is trained and educated, we will always be able to deliver our promise of customer success. If you enjoy work environments focused on continuous learning and growth, Assurit will be a great fit for you.

Assurit is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Audit Remediation Analyst Assurit
IT Audit Remediation Analyst Assurit

AssurIT • Washington

Hybrid
USD 100,000 - 140,000
Competitive compensation and benefits
Data Engineering & Reconciliation Specialist Assurit
Data Engineering & Reconciliation Specialist Assurit

AssurIT • Fairfax (VA)

Hybrid
USD 100,000 - 150,000
Medical and dental coverage
Paid time off
IT FIAR PMO Governance Analyst
IT FIAR PMO Governance Analyst

AssurIT • United States

Remote
USD 90,000 - 130,000
Medical and dental coverage
Paid time off
Competitive compensation package
Enterprise Asset Management & Data Quality SME
Enterprise Asset Management & Data Quality SME

AssurIT • United States

Remote
USD 120,000 - 170,000
IT Audit Remediation Specialist
IT Audit Remediation Specialist

AssurIT • Washington

Hybrid
USD 100,000 - 140,000
Competitive compensation and benefits
Enterprise Interface Specialist Assurit
Enterprise Interface Specialist Assurit

AssurIT • Fairfax (VA)

Hybrid
USD 110,000 - 160,000
Sr. Systems Engineer / Integrator Assurit
Sr. Systems Engineer / Integrator Assurit

AssurIT • Linthicum (MD)

Hybrid
USD 140,000 - 190,000
Senior Network Defense Analyst Assurit
Senior Network Defense Analyst Assurit

AssurIT • Linthicum (MD)

Hybrid
USD 140,000 - 200,000
Medical and dental coverage
Paid time off
Strategic IT Audit Remediation Lead
Strategic IT Audit Remediation Lead

AssurIT • Fairfax (VA)

On-site
USD 90,000 - 130,000
Health insurance
Paid time off
Cyber Tools Senior Test & Evaluation Engineer Assurit
Cyber Tools Senior Test & Evaluation Engineer Assurit

AssurIT • Linthicum (MD)

Hybrid
USD 120,000 - 150,000
Medical insurance
Dental coverage
Paid time off