Internal Audit Manager - IT
Position Overview
The Illinois Tollway is dedicated to providing and promoting a safe and efficient system of highways while ensuring the highest possible level of service to our customers. Whether it's I-PASS, the Move Illinois Program, open road tolling or keeping you safe with our H.E.L.P. trucks, we are committed to delivering great benefits and services to customers.
The Tollway is a user-fee system – no state or federal tax dollars are used to support maintenance and operations. Operations are funded by toll and concession revenues.
Under the leadership of the Board of Directors and Executive Staff, the Tollway is committed to achieving the following goals: increase collaboration with regional transportation and planning agencies, promote the regional economy, maintain financial integrity, foster environmental responsibility and sustainability, maintain the safety and efficiency of the Tollway system, further transparency and accountability, enhance customer service, and maintain public trust.
In support of this vision, Internal Audit Manager is responsible for assisting in the development and implementation of the annual audit work plan to evaluate the efficiency and effectiveness of internal controls and policies of all functions of the Illinois Tollway and to determine whether Tollway policies, State, and Federal regulations are appropriately followed. The Internal Audit Manager is in-charge of audit engagements and oversee the team's execution of procedures to provide assurance to Tollway management on financial, operational, administrative, and compliance internal controls. The Manager oversees the day-to-day activities of the department. Duties performed by the Manager and staff include internal audits, compliance audits, information technology audits, construction audits, vendor audits, consulting services, and management reviews. The Internal Audit Manager performs periodic reviews and updates of Internal Audit policies and procedures and the Internal Audit Charter. The Manager also assists the Chief Internal Auditor (CIA) on reports to the Executive Director, Audit Committee, and the Tollway Board of Directors.
The Internal Audit Manager has authority over the Internal Auditors and Senior Internal Auditors and reports to the Senior Internal Audit Manager and the Chief Internal Auditor. The Internal Audit Manager must be knowledgeable of and comply with the requirements of the Standards for the Professional Practice of Internal Auditing and the Code of Ethics published by the Institute of Internal Auditors (IIA).
The Internal Audit Manager should have general knowledge in multiple key areas such as: auditing, accounting, engineering, construction standards and principles, internal controls, information systems, and laws/regulations governing operations. The Manager must also have the ability to furnish management with analyses, reports, recommendations, and the pertinent facts concerning activities reviewed. The Manager must be able to plan, manage, and review the technical work of subordinates; establish and maintain effective working relationships with all levels of management and outside organizations; and effectively communicate both orally and in writing.
Internal Audit is responsible for effectively and efficiently managing the internal and project control functions in accordance with Tollway policies and procedures, utilizing the highest ethical and professional standards. The department serves as a managerial control to measure and evaluate the effectiveness and efficiency of the organization's internal control systems. The Chief Internal Auditor works closely with the Audit Committee, Board of Directors, Executive Director, and senior management discussing work plans and advising on the status of reviews and results achieved. Department parameters permit considerable latitude for the exercise of independent judgment and compliance with professional standards of accounting, information technology, construction, auditing, government, and other business practices.
Essential Job Functions
The responsibilities include but are not limited to:
- Assist department management in the development and implementation of the annual audit plan that is in conformance with FCIAA, professional standards, agency requirements, and operational risks.
- Liaison with and represent the Internal Audit Department to internal and external parties including external auditors. Also, manage co-sourced audit relationships if applicable.
- Manage the day-to-day activities of auditors conducting internal audits, consulting services, SOX control activities, and other enterprise risk related programs.
- Manages project work plans and the audit approach that describes in detail, the nature, timing, and extent of internal audit procedures for each audit project.
- Coordinate, review, and approve risk assessment activities that will define and drive the scope of audit engagements.
- Review audit work paper documentation to ensure clear support for all audit findings and work performed, including work paper retention policies.
- Obtains and prepares reports, statements, exhibits, and other relevant information; maintains confidential records and files; ensures the security and confidentiality of information gathered.
- Reviews, coordinates, and approves findings, recommendations, and internal audit reports.
- Maintains a system of follow-up controls to ensure responsive consideration and action on audit findings and recommendations.
- Assists in confidential investigations/audits concerning allegations of conflicts of interest, fraud, corruption, mismanagement, gross or aggravated misconduct, or conduct that may be criminal in nature by employees or vendors of the agency.
- Conducts vendor and contractor compliance audits in a confidential manner.
- Manages and leads a team of employees, establishes objectives, and career development goals for all direct reports.
- Ensures continuous process improvements of audit methodologies, templates, instructions, and documentation.
- Assists in the development of the annual department budget and training program for staff members.
- Represents the department on committees or at meetings requiring technical or professional audit expertise; presents and oversees the presentation of audit reports and results to department managers, external clients, and stakeholders.
- Attends continuing educational training that meets or exceeds requirements as set forth by the Institute of Internal Auditors (IIA) and Illinois State Internal Audit Advisory Board (SIAAB).
- Performs other related duties as required or assigned.
There are also IT specific responsibilities that are crucial to this position. Addendum below notates associated IT functions and responsibilities.
Addendum – IT Specific Responsibilities
- Periodically perform reviews of IT applications, solutions, systems and configurations, policies, processes and procedures, user access controls, etc., to ensure compliance with industry best practices, and applicable regulations.
- Assist in the coordination of internal/external IT audits and assessments. Organize, track, and ensure the remediation of IT audit findings and recommendations. Escalate concerns as applicable.
- Perform cybersecurity assessments to ensure that agency information and assets are adequately safeguarded.
- Act as the primary liaison for Internal Audit on the Tollway’s PCI compliance reviews. Keep Internal Audit management informed on a timely basis on the status of the annual PCI review, and associated assessments, including any potential risks or concerns.
- Act as the primary liaison for Internal Audit on the Tollway’s Business Continuity and Incident Response programs. Participate in annual exercises and report on activities to the Chief Internal Auditor. Perform testing of programs as necessary.
- Review documentation and support to validate that IT vendors comply with internal policies and regulations, as applicable.
- Perform other related information technology auditing duties as requested.
Qualifications
Education (Required)
- Bachelor's degree in Accounting, Business, Finance, Information Technology (IT), Engineering, Construction Science, Construction Management, or related field.
Skills and Experience (Required)
- A minimum of 7 years of internal audit, external audit, engineering, information technology or construction experience with at least 3 years of supervisory experience.
- Progressively responsible experience focused on auditing, financial analysis, accounting, information technology, construction, engineering, operational analysis, and/or oversight.
- Demonstrated ability to manage multiple projects simultaneously.
- Strong analytical skills assessing the probability and impact of internal control weaknesses.
- Excellent written and oral communication skills.
- Staff mentoring and administrative management proficiency.
- Strong computer skills including proficiency in Microsoft Office Suite products.
Skills and Experience (Preferred)
- Strong Knowledge of Generally Accepted Accounting Principles (GAAP), Generally Accepted Auditing Standards (GAAS), Information Systems Audit and Control Association (ISACA), and/or industry equivalent based on work experience.
- Ability to multi-task and is detail oriented.
- Thorough understanding of risks and controls and the demonstrated ability to conduct financial, operational, and/or compliance audits.
- Proven ability to partner with multiple stakeholders to drive results.
- Ability to prepare thorough, accurate, and clear reports of complex information and to exercise sound judgment in appraising and evaluating operations.
- Professional certification as a Certified Public Accountant (CPA), Certified Internal Auditor (CIA), Certified Fraud Examiner (CFE), Certified Information Systems Auditor (CISA), or equivalent.
The Illinois Tollway is committed to creating a diverse environment and is proud to be an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, marital status, national origin or ancestry, disability, unfavorable discharge from military services, age, order of protection status, military status, sex, or sexual orientation.