Credence · 3 hours ago
IT Auditor
Credence is a leading provider of AI, cloud, cyber, and modernization solutions, recognized as a Top Workplace. They are seeking an IT Auditor to evaluate the effectiveness of Information Technology General Controls within the General Fund Enterprise Business System (GFEBS) environment, ensuring the integrity and confidentiality of financial data to support the Army's Audit Readiness goals.
GovTechInformation TechnologySoftware
Responsibilities
Internal Control Testing: Conduct rigorous testing of GFEBS controls, specifically focusing on the "Big Three" of ERP auditing:
User Access Management: Provisioning, de-provisioning, and periodic access reviews
Segregation of Duties (SoD): Identifying and mitigating conflicting roles within SAP GRC (Governance, Risk, and Compliance)
Change Management: Ensuring system updates and configuration changes follow the proper transport path without unauthorized alterations
System Interface Auditing: Evaluate the security and data integrity of automated interfaces between GFEBS and peripheral systems (e.g., ATAAPS for payroll, SPS for procurement)
Audit Liaison & Support: Serve as a focal point for external auditors (e.g., GAO, AAA, or Independent Public Accounting firms). Prepare "Provided by Client" (PBC) samples and explain complex system workflows
Risk Assessment: Identify vulnerabilities in the GFEBS landscape, including SAP HANA database security and cloud infrastructure hosting
Remediation Tracking: Monitor the status of Notice of Findings and Recommendations (NFRs) and assist functional owners in developing Corrective Action Plans (CAPs)
Qualification
Required
Bachelor's degree in Information Systems, Accounting, Cybersecurity, Computer Science, or a related discipline
Security Clearance - Secret (with ability to obtain a TS)
Experience: 3+ years in IT Audit, with specific experience in SAP environments
3+ years of relevant experience supporting audits conducted by DoDIG, GAO, Army Audit Agency, or external auditors
3+ years of relevant experience in IT auditing. Cybersecurity, compliance, and risk management experience a plus
Certifications: CISA (Certified Information Systems Auditor) is highly preferred; CISSP or CIA is a plus
Tools: Proficiency in SAP GRC, BI/BW reporting, and Data Analytics tools (ACL, IDEA, or SQL)
Familiarity with NIST SP 800-53 controls and the FISCAM (Federal Information System Controls Audit Manual) framework
Familiarity with Generally Accepted Government Auditing Standards (GAGAS)
Understanding of federal internal control frameworks such as OMB A-123, FISCAM, NIST SP 800-53/800-37, and RMF
To be successful in this role, the candidate should understand the following GFEBS modules and how they impact financial reporting: FI/CO: Financial Accounting and Controlling, Spending Chain: Purchase Requisitions to Payments, Reimbursables: Debt Management and Customer Orders, Property, Plant, & Equipment (PP&E): Accountability of Army assets
Preferred
Experience supporting Army organizations such as CIO/G-6, ASA(FM&C), DFAS, or Army Materiel Command
Familiarity with Army enterprise environments including ERP systems (e.g., GFEBS, LMP, GCSS-Army)
Proficiency in evaluating and implementing cybersecurity controls and audit strategies across complex IT environments
Benefits
Health Care Plan (Medical, Dental & Vision)
Retirement Plan (401k, IRA)
Life Insurance (Basic, Voluntary & AD&D)
Paid Time Off (Vacation, Sick & Public Holidays)
Family Leave (Maternity, Paternity)
Short Term & Long Term Disability
Training & Development
Work From Home
Wellness Resources
Company
Credence
Credence provides innovative technology, health, engineering, and management solutions to support mission-critical programs for Federal government customers.
Funding
Current Stage
Late StageRecent News
Washington Technology
2025-03-27
Washington Business Journal
2025-02-07
Washington Business Journal
2025-02-04
Company data provided by crunchbase