IT Audit Principal

Reposted Yesterday
Be an Early Applicant
Austin, TX, USA
Hybrid
Senior level
Cloud • Information Technology • Professional Services • Sales • Software
As a leader in Enterprise Resource Planning, we're the essential partner for the world's most essential businesses.
The Role
Lead the evaluation of ITGCs, assess cybersecurity controls, drive cybersecurity audits, and provide advisory services on risk mitigation and compliance with SOX. Oversee SOX certification processes, emerging threats, and continuous improvement initiatives in IT Audit and cybersecurity.
Summary Generated by Built In

As an IT Audit Principal, you will lead and execute complex internal IT audits across a variety of technology environments, including cloud and on-premises infrastructure, with a focus on Cybersecurity, IT General Controls (ITGCs), and Application Controls. You will assess control design and operating effectiveness, evaluate technology and security risks, identify control gaps and root causes, and provide practical recommendations that strengthen the organization overall control environment.

In this role, you will serve as an independent and objective advisor, partnering with leaders across IT, Security, Finance, HR, and external audit teams. You will apply deep subject matter expertise through hands-on control evaluations, support major transformation initiatives, and advise leadership on effective ways to manage risk. We are seeking applicants with strong technical knowledge, sound judgment, and the ability to turn complex findings into clear actions that support a strong and sustainable control environment.

What you'll be doing

  • Lead internal IT audit engagements from planning through reporting, including risk assessment, control evaluation, stakeholder communication, and remediation monitoring.
  • Conduct cybersecurity audits using a comprehensive, risk-based approach to assess the design and effectiveness governance, risk management, and control processes established across key areas such as identity and access management, security monitoring, privileged access, vulnerability management, incident response, and other relevant cybersecurity domains.
  • Lead evaluations of cybersecurity programs and controls against established frameworks and standards such as NIST and ISO 27001, in alignment with the Internal Audit plan and business risk priorities.
  • Conduct ITGC SOX audits to assess the design and operating effectiveness of controls across key areas such as access management, change management, IT operations, interfaces, backups, and disaster recovery.
  • Evaluate System Development Life Cycle (SDLC) controls for major implementations, upgrades, and transformation, including project governance, requirements and design, user acceptance testing (UAT), data conversion, access and security, deployment readiness, and post implementation.
  • Provide thought leadership in the continuous development and execution of the risk based internal audit plan, supporting enterprise risk assessments, audit prioritization, scoping, and coordination across IT, SOX, and operational audit actives.
  • Partner with GRC, security, and technology teams to evaluate risks across cloud, infrastructure, and application environments and assess whether key controls are appropriately designed and operating effectively.
  • Act as a liaison to external auditors for ITGC and cybersecurity-related audits, ensuring alignment and timely communication of findings.
  • Lead and perform root cause analysis and provide recommendations for control deficiencies, including those related to cybersecurity incidents and/or control gaps.
  • Develop, review, and maintain IT control documentation, including process flows, narratives, and control matrices, and ensuring alignment with both SOX and cybersecurity requirements.
  • Enable continuous improvement initiatives across IT Audit and cybersecurity programs, including automation and deployment of new technologies.
  • Support executive leadership with special project advisory that inform strategic initiatives, risk assessments, and special transformational projects as needed.
  • Build and leverage AI solutions and workflows to enable capacity or unlock capability for an Internal Audit function.

What you'll likely bring

  • 8+ years of progressive experience in IT audit, IT compliance, SOX, and/or cybersecurity risk management (public accounting and/or industry). Big 4 is a plus.

  • Specialized experience in the Software industry.

  • Bachelor’s degree in Information Systems, Cybersecurity, Accounting, Finance, or related field.

  • Relevant certifications such as CISA, CISSP, CISM, CRISC, CIA, or CPA (or equivalent).

What can set you apart

  • Deep experience performing cybersecurity audits.
  • Strong knowledge of ITGC domains (Access Management, Change Management, Interfaces, Backups, Disaster Recovery), SDLC, and their intersection with cybersecurity controls.
  • Deep experience auditing systems such as SalesForce, Workday, Kinetic, Microsoft Azure (Entra ID), Active Directory, and different types of cloud environments (IaaS, PaaS, and SaaS).
  • Strong understanding of SOX requirements (e.g. 302, 404), principles-based internal control-integrated framework (COSO), IT Frameworks (e.g., COBIT) and cybersecurity control frameworks (e.g., NIST CSF, ISO 27001, CIS Critical Security Controls).
  • Experience leveraging automation and tools such as Workiva’s Wdesk and AI tools (ChatGPT, Copilot, Claude, etc.).
  • Excellent communication and stakeholder management skills, with the ability to influence at all levels of the organization.

#LI-CM1

#HYBRID

About Epicor 

At Epicor, we’re truly a team. Join 5,000 talented professionals in creating a world of better business through data, AI, and cognitive ERP. We help businesses stay future-ready by connecting people, processes, and technology. From software engineers who command the latest AI technology to business development reps who help us seize new opportunities, the work we do matters. Together, Epicor employees are creating a more resilient global supply chain. 

We’re Proactive, Proud, Partners.  

Whatever your career journey, we’ll help you find the right path. Through our training courses, mentorship, and continuous support, you’ll get everything you need to thrive. At Epicor, your success is our success. And that success really matters, because we’re the essential partners for the world’s most essential businesses—the hardworking companies who make, move, and sell the things the world needs.

Competitive Pay & Benefits 

  • Health and Wellness: Comprehensive health and wellness benefits designed to support your overall well-being. 

  • Internal Mobility: Opportunities for mentorship, continuing education, and focused career goal setting, with 25% of positions filled internally. 

  • Career Development: Free LinkedIn Learning licenses for everyone, along with our Mentoring Program to boost your personal development. 

  • Education Support: Geographically specific programs to balance the cost of education with the benefits of continued learning and personal development. 

  • Inclusive Workplace: Collaborate with a diverse team in an inclusive, global workplace that fosters innovation and celebrates partnership. 

  • Work-Life Balance: Policies built on mutual trust and support, encouraging time off to rest, recharge, and reconnect. 

  • Global Mobility: Comprehensive support for international relocations and permanent residency processes.  

Equal Opportunities and Accommodations Statement 

Epicor is committed to creating a workplace and global community where inclusion is valued; where you bring the whole and real you—that’s who we’re interested in. If you have interest in this or any role- but your experience doesn’t match every qualification of the job description, that’s okay- consider applying regardless.  

We are an equal-opportunity employer.  

Recruiter:

Christi McCall

Skills Required

  • 8+ years of experience in IT audit, IT compliance, SOX, and/or cybersecurity risk management
  • Bachelor's degree in Information Systems, Cybersecurity, Accounting, Finance, or related field
  • Relevant certifications such as CISA, CISSP, CISM, CRISC, CIA, or CPA

Epicor Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Epicor and has not been reviewed or approved by Epicor.

  • Healthcare Strength Health coverage (medical, dental, vision) is characterized as decent to solid, complemented by wellness resources. Company materials highlight health and wellness programming alongside core plans.
  • Leave & Time Off Breadth Flexible or unlimited PTO exists in U.S. roles, and the organization emphasizes taking time to recharge. When team norms support it, the flexibility is considered a meaningful perk.
  • Retirement Support A 401(k) with company match is available as part of the standard offering. The match level is generally viewed as modest but serviceable.

Epicor Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Austin, TX
6,280 Employees
Year Founded: 1972

What We Do

We’re the Digital Brains of Our Customers’ Operations We help businesses stay future-ready with cognitive ERP that connects people, processes, and technology. From software engineers who command the latest AI technology to business development reps who help us seize new opportunities, the work we do matters. Together, Epicor employees are creating a more resilient global supply chain.

Why Work With Us

Our policies are built on mutual trust, support, and a commitment to maintaining a healthy work-life balance. That's why we encourage you to take the time off you need to rest, recharge, and reconnect.

Gallery

Gallery

Similar Jobs

SailPoint Logo SailPoint

Customer Success Manager

Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Remote or Hybrid
United States
2461 Employees
60K-101K Annually

Shield AI Logo Shield AI

Director, Enterprise Strategy and Operations (R5626)

Aerospace • Artificial Intelligence • Machine Learning • Robotics • Software
In-Office or Remote
4 Locations
190K-290K Annually

Shield AI Logo Shield AI

Senior Lead, Enterprise Strategy and Operations (R5624)

Aerospace • Artificial Intelligence • Machine Learning • Robotics • Software
In-Office or Remote
4 Locations
160K-240K Annually

Agero Logo Agero

Cybersecurity Governance Analyst

Automotive • Big Data • Insurance • Software • Transportation
Easy Apply
Remote or Hybrid
14 Locations
1600 Employees
75K-95K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account