Significance is a woman-owned consulting firm serving the federal government. We are known for building trusted relationships within our teams and with our clients and hiring the highest-level experts who implement innovative solutions. We also like to have fun! Our focus on culture has contributed to Significance being named a Washington Business Journal Best Place to Work each of the last five years. We are seeking two ITGC Support consultants to join our Army FIAR program. This role will be performed on a hybrid basis with onsite work expected 2-3 days per week in Tysons Corner, VA or Crystal City, VA. In this role you will provide IT RMIC internal audit support to ASA(FM&C). The focus will be on the in-scope Army information systems and Service Provider systems/processes relevant to Army’s strategic goal of obtaining an audit opinion. Specific duties will include:• Develop test plans to evaluate the ITGCs, ITACs, and CUECs.• Perform Test of Design (Todd) to confirm controls have been appropriately documented for the selected systems and identify any control gaps.• For controls that pass ToD, perform Test of Effectiveness (ToE) to confirm the controls are operating as intended and identify control gaps.• For controls that fail ToD, work with the system and business process owners to develop remediation plans.• Develop corrective actions to mitigate identified gaps.
Required Skills/Experience
Active Secret security clearance (interim OK)
Master’s Degree in Accounting, Finance, Information Technology, or Business Management or CPA or CISA or PMP or CGFM or CDFM
4 years of experience with federal financial management, and 2 years of federal accounting experience
Public sector audit or audit readiness experience with a focus on IT general and application controls for financially relevant systems associated with internal / external audits.
Significant FISCAM and NIST SP 800-53 testing experience performing IT assessments to evaluate controls and execute audit procedures from an access control, configuration management, and segregation of duties perspective.
Significant Data Quality Planning experience required.
Must be a strong team player and have excellent written and verbal communication skills around information assurance and security relating to IT general controls, application controls and system interfaces.
Requires information security and compliance knowledge and experience to determine acceptable levels of information security risks.
Experience with CAP development, implementation, and validation.
Project management skills to monitor all tasks and follow up with client organizations as needed
Technical skills needed to prepare status reports for the project and other client presentations as needed
Communication skills (verbal and written)
Attention to detail and ability to multi-task
Management skills to lead a team of 3-5 team members.