Job Description
#WeAreONEOK - Fortune 500 company. 100+ years in business. Leading midstream service provider. Safety first. Sustainable operations. Environmentally responsible. Employee focused. JOB SUMMARY We are seeking an IT Auditor, Senior to join our Audit team! A successful candidate would have a strong emphasis in cyber security, pipeline security, compliance, risk management, vulnerability management, system administration and network security. You must be able to communicate effectively with stakeholders across the organization, including senior executives, IT and security professionals, as well as end-users. CISA and CISSP certifications are preferred.
This position is hybrid to our corporate office in Tulsa, OK.
Job Profile Summary Conducts an advanced level of corporate audit services Information Technology (IT) audit activities.
Essential Functions and Responsibilities - Executes more complex IT audit fieldwork steps on assigned internal audits, Sarbanes-Oxley Section 404 IT General Control (ITGC) compliance testing, and special projects, designed to evaluate whether key risks are adequately controlled as defined by the Committee of Sponsoring Organizations (COSO)
- Proposes recommendations to resolve identified internal control deficiencies
- Executes project planning, audit program development, staff oversight of audit testing, audit reporting, and wrap-up
- Evaluates internal controls, compliance, systems, applications, and IT infrastructure
- Interviews employees throughout the company to identify and document IT risks and related controls
- Provides guidance, training and/or coaching to entry level audit staff, assist with determining work priorities, job assignments, and monitoring project execution
- Works with internal IT resources to understand critical applications, systems and networks supporting the company's business functions
- Assesses and evaluates IT systems for mitigation of IT-related business risks throughout the system development lifecycle
- Remains current in cybersecurity and IT audit risks
- Supports the audit department's applicable audit technologies including developments and advancements to automate manual tasks
- Participates in monthly departmental meetings
Education - Bachelor's Degree in computer science, management information systems, accounting information systems, information assurance, or other related field PLUS the following job related experience:
Work Experience - Extensive experience with and knowledge of internal IT auditing processes, industry best practice IT control frameworks, including Control Objectives for Information and Related Technologies (COBIT), and audit standards as promulgated by The Institute of Internal Auditors
- Extensive experience executing Sarbanes-Oxley Section 404 ITGC compliance testing requirements, application controls, and knowledge of COSO
- Experience in use and function of office equipment such as personal computers and related software. TeamMate experience is a plus
- Experience and/or training related to:
- IT auditing
- Data analytics
- Internal controls and internal audit techniques
- Enterprise risk management principles
- Sarbanes-Oxley compliance testing
- Report writing
- Interpersonal/communication skills
- Energy industry
- Extensive experience developing and executing IT audit programs, including researching, analyzing and preparing audit documentation
- Extensive experience reading and interpreting audit results, financial information and reports, governmental regulations, policies and procedures, publications, manuals, audit standards, benefit plan documents, contracts and correspondence
- Extensive experience conducting audit interviews, and interacting, advising, negotiating and communicating effectively with business experts
- Experience developing and presenting information to individuals and groups
Knowledge, Skills and Abilities - Knowledge of: Windows server administration, database administration, network engineering and administration, data security, data encryption, project management, application system development lifecyle, SQL queries, ACL data analytics, and cyber security risk mitigation
- Knowledge of: algebraic and statistical methods
- Skills in: written and verbal communication, presentation and technical writing skills with the ability to prepare documentation and analytical reports that summarize technical IT issues into non-technical terminology
- Ability to: proactively expand knowledge and understanding of technical environments though self-directed research, on-the-job experience and professional networking
- Ability to: identify fraud risks and perform proper assessment
- Ability to: clearly and professionally communicate in writing and verbally, as well as conduct
Licenses and Certifications - Certified Information Systems Auditor (CISA) preferred or
- ACL Certified Data Analyst (ACDA) preferred
Strength Factor Rating - Physical Demands/Requirements - Sedentary Work - Exerting up to 10 pounds of force occasionally (Occasionally: activity or condition exists up to 1/3 of the time) and/or a negligible amount of force frequently (Frequently: activity or condition exists from 1/3 to 2/3 of the time) to lift, carry, push, pull, or otherwise move objects, including the human body. Sedentary work involves sitting most of the time, but may involve walking or standing for brief periods of time. Jobs are sedentary if walking and standing are required only occasionally and all other sedentary criteria are met.
Strength Factor Description - Physical Demands/Requirements - Standing: Remaining on one's feet in an upright position at a work station without moving about (Occasionally)
- Walking: Moving about on foot (Frequently)
- Sitting: Remaining in a seated position (Constantly)
- Lifting: Raising or lowering an object from one level to another (includes upward pulling) (Occasionally)
- Carrying: Transporting an object, usually holding it in the hands or arms, or on the shoulder (Occasionally)
- Pushing: Exerting force upon an object so that the object moves away from the force (Occasionally)
- Pulling: Exerting force upon an object so that the object moves toward the force (includes jerking) (Occasionally)
- Climbing: Ladders, Stairs (Occasionally)
- Balancing: Maintaining body equilibrium to prevent falling (Occasionally)
- Stooping: Bending the body downward and forward by bending the spine at the waist (Occasionally)
- Kneeling: Bending the legs at the knees to come to rest on the knee or knees (Occasionally)
- Crouching: Bending the body downward and forward by bending the legs and spine (Occasionally)
- Crawling: Moving about on the hands and arms in any direction (Occasionally)
- Reaching: Extending hands and arms in any direction (Constantly)
- Handling: Seizing, holding, grasping, turning or otherwise working with the hand or hands (Manual Dexterity) (Constantly)
- Fingering: Picking, pinching or otherwise working with the fingers primarily (Finger Dexterity) (Constantly)
- Feeling: Perceiving such attributes of objects/materials as size, shape, temperature, texture, movement or pulsation by receptors in the skin, particularly those of the finger tips (Constantly)
- Talking: Expressing or exchanging ideas/information by means of the spoken word (Frequently)
- Hearing: Perceiving the nature of sound by the ear (Frequently)
- Tasting/Smelling: (Occasionally)
- Near Vision: Clarity of vision at 20 inches or less (Constantly)
- Far Vision: Clarity of vision at 20 feet for more (Frequently)
- Depth Perception: Three-dimensional vision; ability to judge distances and spatial relationships so as to see objects where and as they actually are (Frequently)
- Vision: Color - The ability to identify and distinguish colors (Constantly)
Working Conditions/Environment - Employee is subject to inside environmental conditions
Working Conditions - Well lighted, climate controlled areas (Constantly)
- Frequent repetitive motion (Constantly)
- CRT (Computer Monitor(s)) (Constantly)
Travel - Travel in and around office facilities system wide
Driving - Based on assigned tasks, employee may be assigned a company vehicle requiring the applicable driver's license
ONEOK is an equal opportunity employer committed to diversity and inclusion. All qualified applicants will receive consideration for employment without regard to race, color, sex, pregnancy, sexual orientation, age, religion, creed, national origin, gender identity, disability, military/veteran status, genetic information or any other categories protected by applicable law.
The job description is not intended to be a complete list of all responsibilities, duties or skills required for the job and is subject to review and change at any time, with or without notice, in accordance with the needs of ONEOK.
ONEOK is committed to making our workplace accessible to individuals with disabilities and will provide reasonable accommodations, upon request, for individuals to participate in the application and hiring process. To request an accommodation email HRSolutions@ONEOK.com or call 1-855-663-6547.
#LI-HYBRID
Job Tags
Work experience placement,