Key Achievements:
- Streamlined IT audit procedures, reducing assessment time by 25%.
- Identified £75,000 in inefficiencies and potential system risks for clients.
- Assisted in implementing automated audit tools, saving 8–10 hours per week.
- Strengthened IT controls and security compliance, reducing risk exposure by 20%.
- Supported management in enhancing data integrity and system efficiency across client systems.
Duties & Responsibilities:
- Plan, perform, and document IT and systems audits in line with professional standards.
- Evaluate the effectiveness of IT controls, including access, security, and change management.
- Review system configurations, applications, and databases for compliance and risk.
- Perform testing of system processes, data integrity, and security protocols.
- Prepare audit working papers, schedules, and reports for management review.
- Identify areas of operational or system inefficiency and provide actionable recommendations.
- Ensure compliance with corporate IT policies, regulatory requirements, and industry standards.
- Liaise with IT teams and management to obtain documentation and clarify findings.
- Assist in assessing IT risk and developing mitigation strategies.
- Support audits of ERP systems, financial software, and other business-critical applications.
- Monitor the implementation of audit recommendations and action plans.
- Participate in special IT audit projects, including cybersecurity, cloud infrastructure, and software upgrades.
- Provide guidance on internal controls, IT governance, and regulatory compliance.
- Maintain confidentiality, integrity, and professionalism in all IT audit activities.
- Collaborate with internal and external auditors during system reviews.
- Conduct follow-up audits to verify implementation of prior recommendations.
- Train and mentor junior IT audit staff as required.
- Assist in continuous improvement of IT audit methodology, processes, and tools.
- Prepare ad-hoc analysis and reports on IT risk, compliance, and system performance.
- Stay up-to-date with emerging IT risks, regulatory changes, and industry best practices.
What does an IT & Systems Auditor do?
An IT & Systems Auditor reviews an organisation's technology infrastructure, information systems and IT controls to ensure they are secure, reliable and compliant with regulatory requirements. They assess cyber risks, data integrity and system effectiveness while recommending improvements.
What qualifications do you need to become an IT & Systems Auditor?
Many IT & Systems Auditors hold degrees in information technology, computer science, accounting or finance. Professional certifications such as CISA, ACA, ACCA or CISSP can further strengthen career prospects.
What skills are important for an IT & Systems Auditor?
Successful IT Auditors require technical knowledge of IT systems, cybersecurity and data controls alongside analytical thinking, communication skills and strong attention to detail. Experience with ERP systems, cloud platforms and information security frameworks is often beneficial.
Why are IT & Systems Auditors important?
As organisations become increasingly digital, IT Auditors help ensure systems remain secure, financial information is protected and technology controls operate effectively. Their work reduces cyber risk and supports regulatory compliance.
What career progression is available for an IT & Systems Auditor?
Career opportunities include Senior IT Auditor, IT Audit Manager, Cyber Risk Manager, Information Security Manager, Head of IT Audit or broader technology risk and governance leadership positions.