Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
IT Audit Specialist image - Rise Careers
Job details

IT Audit Specialist - job 2 of 2

IT Audit Specialist

Job Category: Information Technology

Time Type: Full time

Minimum Clearance Required to Start: None

Employee Type: Regular

Percentage of Travel Required: Up to 10%

Type of Travel: Local

* * *


The Opportunity:

CACI is currently looking for a Security IT Audit Specialist with agile methodology experience to join our BEAGLE (Border Enforcement Applications for Government Leading-Edge Information Technology) Agile Solution Factory (ASF) Team supporting Customs and Border Protection (CBP) client located in Northern Virginia! Join this passionate team of industry-leading individuals supporting the best practices in Agile Software Development for the Department of Homeland Security (DHS).

The Security IT Audit Specialist with both strong application and network security delivery skills will need to have a deep technical understanding of Cybersecurity and financial audit practices.  They will work as an integral part of a highly productive team of seasoned technical professionals who thrive on supporting our customer's mission and growth objectives– responsible for designing, developing, leading, and implementing secure application and infrastructure capabilities for a variety of legacy and modernized systems and applications.

They will work in close collaboration with software developers/engineers, quality assurance engineers, stakeholders, and end users within Agile Engineering processes. They must have a working knowledge of enterprise class information assurance requirements, FISCAM, and network security and survivability.

They will also be responsible for supporting development of a spectrum of engineering artifacts that adequately, but succinctly captures system security requirements, application and network security design, and network security architecture. This position is responsible for ensuring that all assigned work activities are performed in a timely, secure, compliant and cost-effective manner while maintaining the highest quality of performance.

Responsibilities:

Serve as an Internal Audit Sustainment Team member responsible for the Audit Readiness, Sustainment and Security of custom coded and COTS applications and databases. Responsible for activities associated with delivery of Cybersecurity technical control implementation, configuration, and architectural solutions associated with customer-defined systems/software projects; basic responsibilities include:

  • Implement Technical Audit Sustainment Program strategy
  • Understand and assist developers with FISCAM compliance
  • Enable assurance for information security during all phases of agile system development and deployment
  • Secure SAP and custom designed financial support systems
  • Assess entire system lifecycle requirements and network security impacts
  • Enhance – Implement Cybersecurity vulnerability/ hardening testing
  • Optimize – Cybersecurity development environment certification
  • Work with SAP security administrators to ensure Separation of Duties, Access Controls, and audit support functionality is incorporated into the system
  • Work with the CBP Independent Public Accountant (IPA) that is auditing the system by responding to request for information (RFI)s and delivering Provided by Client (PBC) data to the auditor.
  • Develop Corrective Action Plans (CAPs) in response to Notifications For Record (NFRs) received from the IPA
  • Evaluate the implementation and compliance of SAP GRC by working with SAP Security Administrators
  • Architect & Engineer security – develop security goals, capabilities, controls, and architecture
  • Maintain security posture – audit security settings, track security training, monitor threats, track reaccreditation and assist with synchronizing efforts for compliance with FISCAM and RMF
  • Continuously evaluate and recommend innovative proven best business practices and tools to enhance defense-in-depth
  • Monitor and inspect for approved software usage and implementation of approved security enabled software and tools
  • Works to achieve, team objectives, operational plans with measurable contribution towards the achievement of results of the job function or completion of a project.
  • Assist CBP with maintaining compliance with OMB Circular A-123 supporting management responsibilities for internal controls
  • Apply information security in accordance with National/DHS/CBP directives security policy


Qualifications:

  • Must be a U.S. Citizen with the ability to pass CBP background investigation, criteria will include:
    • 3-year check for felony convictions
    • 1-year check for illegal drug use
    • 1-year check for misconduct such as theft or fraud
  • College degree (B.S., M.S.) in Computer Information Systems, Finance or a related discipline
  • Certifications: minimum Security+ CE or equivalent, CISSP, CISM or CISA preferred
  • Professional Experience: Seven plus (7+) years related to technical experience with IT Financial Audit or FISCAM compliance
  • Must be available to work onsite in Ashburn, VA one day per week.
  • Working knowledge of and ability to assist others in the use of information security provisioning and monitoring tools to support process improvement
  • Ability to apply advanced principles, theories, and concepts, and contribute to the development of innovative IA principles and ideas
  • Experience working on unusually complicated problems and providing solutions that are highly creative and ingenious, exhibiting ingenuity, creativity, and resourcefulness
  • Determining how Governance Risk and Compliance Tools (SAP GRC, Greenlight, etc..) can enhance compliance
  • Implementing FISCAM, RMF, and NIST security solutions
  • Developing compliance solutions for OMB Circular No. A-123 (management's responsibility for internal control in Federal agencies)
  • Acting independently to expose and resolve problems
  • Excellent written and verbal communication skills
  • Strong collaboration skills and desire to work within a team
  • Highly responsible, team-oriented individual with very strong communication skills and work ethic; self-starter

Desired:

  • Experience as SAP Security Administrator
  • Experience on an audit team for an IPA
  • Knowledge for GRC tools to enhance compliance such as Greenlight and SAP GRC
  • Experience as an Information System Security Officer (ISSO) for a system

-

________________________________________________________________________________________

What You Can Expect:

 

A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

 

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy. 

 

Your potential is limitless. So is ours.

Learn more about CACI here.

________________________________________________________________________________________

Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.

The proposed salary range for this position is:

$94,400 - $198,300

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

Average salary estimate

$146350 / YEARLY (est.)
min
max
$94400K
$198300K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About IT Audit Specialist, CACI

If you're on the lookout for an exciting opportunity, CACI is seeking an IT Audit Specialist to join our enthusiastic team in Ashburn, Virginia. You’ll play a pivotal role in our BEAGLE Agile Solution Factory, working specifically with the Customs and Border Protection (CBP) client. This position seeks someone with agile methodology experience who can navigate the intricacies of cybersecurity and financial audit practices with ease. As an IT Audit Specialist, you'll collaborate closely with software developers, quality assurance experts, and stakeholders to design and implement secure application infrastructures. Your technical prowess in cybersecurity, application security, and network security will ensure that we maintain top-notch security standards while also meeting compliance requirements. The job is dynamic and rewarding, focusing on enhancing security measures and fostering strong collaboration within a talented team also committed to supporting national missions. Your experience in delivering cybersecurity solutions, assessing system lifecycle security requirements, and your understanding of FISCAM compliance will certainly make you a vital asset to our team. Here at CACI, we offer a culture of integrity and a strong commitment to your professional growth, ensuring you have the tools and resources you need to succeed. If you're ready to contribute to our mission and take your career to new heights, we'd love to hear from you!

Frequently Asked Questions (FAQs) for IT Audit Specialist Role at CACI
What are the key responsibilities of an IT Audit Specialist at CACI?

As an IT Audit Specialist at CACI, you will be responsible for ensuring audit readiness and sustainment of both custom-coded and COTS applications. This involves implementing cybersecurity technical control strategies, enhancing security measures, collaborating with various stakeholders, and responding to audits effectively. Your role ensures compliance with crucial requirements like FISCAM and will allow you to develop actionable plans to address security vulnerabilities.

Join Rise to see the full answer
What qualifications do I need to apply for the IT Audit Specialist role at CACI?

To be considered for the IT Audit Specialist position at CACI, you should hold a college degree in Computer Information Systems, Finance, or a related discipline. Additionally, you will need at least seven years of relevant experience in IT financial audits or FISCAM compliance, and maintain certifications such as Security+ CE or ideally CISSP, CISM, or CISA. Strong communication and collaborative skills are also essential.

Join Rise to see the full answer
What is the work environment like for an IT Audit Specialist at CACI?

The work environment for an IT Audit Specialist at CACI in Ashburn, VA is highly collaborative and focused on agility. You'll be part of a passionate team dedicated to innovation and excellence in supporting the Department of Homeland Security. CACI encourages a culture of integrity and creativity, ensuring you can thrive both professionally and personally through flexible work arrangements and continuous growth opportunities.

Join Rise to see the full answer
What types of projects would the IT Audit Specialist work on at CACI?

The IT Audit Specialist at CACI will engage in a variety of projects aimed at enhancing system security and compliance. This includes working on agile system development for CBP, applying cybersecurity best practices, developing security architectures, and ensuring adherence to compliance directives like OMB Circular No. A-123. You'll also collaborate closely with software developers to ensure security requirements are met throughout project lifecycles.

Join Rise to see the full answer
How does CACI support career growth for IT Audit Specialists?

CACI is committed to supporting the career growth of its IT Audit Specialists through robust learning resources and professional development opportunities. With a focus on continuous improvement, employees are encouraged to pursue additional certifications, engage in training, and take on new challenges that align with their career aspirations, ensuring you can build a successful and fulfilling career with us.

Join Rise to see the full answer
Common Interview Questions for IT Audit Specialist
How do you ensure compliance with FISCAM in your previous roles?

To ensure compliance with FISCAM, I prioritized understanding its directives and integrating them into every phase of project development. This involved conducting regular audits, collaborating closely with technical teams, and implementing robust documentation practices to provide transparency and accountability throughout the process.

Join Rise to see the full answer
Can you describe your experience with cybersecurity vulnerabilities?

Certainly! In my previous role, I conducted frequent vulnerability assessments and collaborated with developers to prioritize remediation efforts. I applied industry-standard tools and techniques to identify weaknesses, and through proactive monitoring, I ensured that security measures were always updated and effective against evolving threats.

Join Rise to see the full answer
What steps do you take to prepare for an audit?

I start by reviewing all relevant documentation and previous audit findings. This goes hand in hand with making sure that necessary controls are implemented and functioning as intended. Then, I facilitate discussions with the audit team to address concerns early and ensure we can respond swiftly to any requests during the audit.

Join Rise to see the full answer
How do you approach teamwork in an Agile environment?

In an Agile environment, I believe in open communication and transparency. I actively participate in Scrum meetings, share progress, and solicit feedback from team members. This collaborative spirit not only fosters teamwork but also enhances the team's overall efficiency in delivering high-quality results.

Join Rise to see the full answer
Why do you believe security should be integrated into the software development lifecycle?

Integrating security into the software development lifecycle is crucial because it addresses potential vulnerabilities before they become significant issues. By embedding security measures from the outset, we ensure protecting sensitive information, comply with regulatory requirements, and ultimately reduce the cost and effort required for remediation down the line.

Join Rise to see the full answer
What tools do you use for monitoring and managing security compliance?

I have experience using a variety of GRC tools, including SAP GRC, to monitor compliance effectively. These tools allow me to automate compliance processes, generate real-time reporting, and track metrics that help inform our security strategy and decision-making.

Join Rise to see the full answer
How do you handle conflicts among team members during a project?

When conflicts arise, I believe in addressing them promptly and openly. I initiate a constructive conversation to understand differing perspectives and work towards a compromise while keeping the project goals in focus. Promoting a culture of respect and collaboration is key to resolving conflicts effectively.

Join Rise to see the full answer
What motivates you in the role of an IT Audit Specialist?

I'm motivated by the opportunity to contribute to national security efforts through my expertise in IT auditing and cybersecurity. The challenge of safeguarding systems and ensuring compliance gives my work purpose, and I find fulfillment in knowing I’m part of a team that supports critical government missions.

Join Rise to see the full answer
How do you stay up-to-date with the latest cybersecurity trends?

I stay updated with the latest cybersecurity trends by regularly attending industry conferences, participating in webinars, and following influential experts in the field. I also engage with professional communities and invest time in ongoing training to ensure that my skills and knowledge are current and applicable.

Join Rise to see the full answer
Can you share an experience where you overcame a significant challenge in your role?

Certainly! One significant challenge was when a vulnerability was discovered right before a major audit. I quickly coordinated with the development team to implement a patch, documented the process, and ensured we could present a compliant system to the auditors. Through teamwork and rapid response, we successfully averted potential issues.

Join Rise to see the full answer
Similar Jobs
CACI Hybrid US DC Washington
Posted 2 days ago

Join CACI as a Pega Application Developer and contribute to important software solutions for a key federal agency.

Be part of CACI’s team as a Senior Intelligence Planner, supporting vital intelligence operations for USCENTCOM in the heart of Tampa, FL.

Posted 2 days ago

As a Cybersecurity Operations Analyst II at CACI, you'll play a pivotal role in supporting national security through innovative IT solutions.

Photo of the Rise User
Rodeo FX Remote 99 Prince, Montréal, Canada
Posted 10 days ago

Rodeo FX is looking for a talented Systems Administrator to oversee their IT infrastructure and maintain the seamless operation of their creative services.

Photo of the Rise User
Posted 7 days ago

Visa Inc. is looking for a Senior Site Reliability Engineer to enhance application performance and ensure stability in Austin, TX.

LMI is looking for an experienced Chief Technology Officer to drive technology solutions within the Military Health & VA sectors.

Photo of the Rise User

Take the lead in driving IT efficiency and project delivery as an IT Business Operations Lead at ProDriven Brands.

Join Children’s Mercy as an Information Systems Inventory Analyst to help maintain technology inventory and uphold our values of kindness and inclusion.

Photo of the Rise User

Join Link Solutions as a Senior Computer and Information Systems Manager to lead innovative military IT projects in a dynamic environment.

Photo of the Rise User
Posted 14 days ago
Inclusive & Diverse
Collaboration over Competition
Growth & Learning
Mission Driven
Transparent & Candid

Join Coinbase as a Staff Blockchain Security Architect and play a critical role in securing the future of blockchain technology.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 10, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
6 people applied to SOC engineer at Optimiza
Photo of the Rise User
Someone from OH, Akron just viewed Entry Level Communications at Smart Solutions
Photo of the Rise User
51 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
47 people applied to Security Analyst Jr at DEUNA
Photo of the Rise User
Someone from OH, Toledo just viewed Processing Technician at Jushi
Photo of the Rise User
Someone from OH, Greenfield just viewed HR Generalist II at Protolabs
Photo of the Rise User
10 people applied to Intern/Co-op-4 at GE
S
12 people applied to SOC Intern at SHEIN
C
Someone from OH, Bowling Green just viewed Field Service Administrator at Cornerstone Building Brands
Photo of the Rise User
Someone from OH, Cleveland just viewed Vice President, Revenue Operations at Docebo
Photo of the Rise User
Someone from OH, Mansfield just viewed Director, Professional Education at Evolus
1
Someone from OH, Cleveland just viewed Copywriter at 1840 & Company
Photo of the Rise User
Someone from OH, Louisville just viewed Communications Manager at Shearer's Foods
Photo of the Rise User
Someone from OH, Uniontown just viewed Part-Time Patient Access Specialist at Hummingbird
Photo of the Rise User
Someone from OH, Cincinnati just viewed Chief of Staff to the CFO at Super.com
Photo of the Rise User
Someone from OH, Columbus just viewed 5-8th Grade Art Teacher - SY 24-25 at ACCEL Schools
H
Someone from OH, Akron just viewed Brand Marketing Manager at Huntington
Photo of the Rise User
Someone from OH, Columbus just viewed Insider Threat Analyst at SpaceX
Photo of the Rise User
Someone from OH, Cincinnati just viewed AI - RESEARCH SCIENTIST at City of New York
Photo of the Rise User
Someone from OH, Chardon just viewed Casting: 'Blood Ties' at Backstage
Photo of the Rise User
Someone from OH, Cincinnati just viewed Staff Accountant (Grant Administration) at Texas Health Action
Photo of the Rise User
Someone from OH, Cleveland just viewed Administration & Marketing Assistant Intern at Bosch Group
Photo of the Rise User
Someone from OH, Columbus just viewed Manager – Music Publishing Licensing at Spotify
Photo of the Rise User
Someone from OH, Columbus just viewed Manager of Government Affairs and Policy at Mastercard
Photo of the Rise User
Someone from OH, Powell just viewed Senior Compliance Analyst at Nirvana Insurance