If you need assistance with filling out our application form or during any phase of the application, interview, or employment process, please notify our Human Resources Team at 801-366-6947 option 1 or email macurecruiting@macu.com and every reasonable effort will be made to accommodate your needs in a timely manner.
LOCATION
Mountain America Center - Hybrid:
9800 S Monroe St
Sandy, UT 84070
SCHEDULE
*This is a Hybrid Schedule- this team is in office 3 days a week (Tuesday, Wednesday, and Thursday) with 2 days remote (Monday and Friday)
Key Responsibilities
Lead and perform audits of IT systems, applications, infrastructure, and cybersecurity processes.
Execute all phases of the audit lifecycle, including planning, process walkthrough, risk assessment, fieldwork testing, and reporting.
Evaluate and align third-party IT control frameworks as inputs to audit scope.
Identify risks and control gaps, across MACU IT processes and systems.
Contribute to IT audit entity risk assessments and development of the IT audit plan.
Conduct and lead interviews with key MACU IT personnel to gather required understanding of process and risks for advisory engagements
Provide insights into IT and cyber risk exposures, control design, and governance effectiveness.
Recommend practical, risk-based solutions to improve IT controls, processes, and compliance posture.
Prepare clear, concise audit documentation including work papers, findings, and audit reports.
Prepare and communicate audit engagement status and observations to management and stakeholders.
Track and validate remediation efforts to ensure timely resolution of audit findings.
Contribute to continuous improvement of audit methodologies, tools, and data analytics capabilities.
Stay current with emerging technologies, cybersecurity risks, and regulatory expectations.
Support adoption of audit automation and GRC tools (e.g., Archer or similar platforms, if applicable in your environment).
Partner with business, IT, Risk Management, and Compliance teams to enhance alignment across the Three Lines model.
Serve as a trusted advisor while maintaining auditor independence and objectivity.
Provide guidance and mentorship to Staff Auditors and interns.
Review audit workpapers and ensure quality and adherence to standards.
Assist managers in audit planning and stakeholder engagement.
Maintain and develop competencies aligned with internal audit standards and professional development expectations.
Uphold independence, objectivity, and ethical standards in all audit activities.
Minimum Qualifications
Education
Bachelor’s degree in information systems, Computer Science, Accounting, Cybersecurity, Data Analytics or a related field.
Experience
Three years performing end-to-end IT and/or cybersecurity audits
One or more years of experience leading IT and cybersecurity end-to-end process and control walkthroughs.
Certification
Passed at least one of the following CISA, CPA or CIA exams.
Preferred Qualifications
Education
Master’s degree in information systems, Computer Science, Accounting, Cybersecurity, Data Analytics or a related field.
Experience
Demonstrated understanding of how to apply IT control frameworks (e.g., NIST, COBIT, ISO 27001) in auditing.
Demonstrated ability to assess risks, analyze complex systems, and identify control weaknesses.
Strong written and verbal communication skills, with the ability to present to management with confidence.
Demonstrated application of analytical thinking and synthesis of disparate information.
Demonstrated ability to work autonomously and execute more than one audit engagement simultaneously.
Certification
Achieved at least one of the following CISA, CPA or CIA certifications.
Managerial Responsibility
None
Computer/Office Equipment Skills
Language Skills
Other Skills and Abilities
PHYSICAL ABILITIES / WORKING CONDITIONS
Physical Demands
Ability to sit, talk and hear consistently
Ability to stand, walk, and use hands to handle or reach occasionally
Vision Requirements
Close vision (clear vision at 20 inches or less)
Distance vision (clear vision at 20 feet or more)
Weight Lifted or Force Exerted
Ability to lift up to 25 pounds occasionally may need to lift up to 50 pounds.
Environmental
There are no unusual environmental factors (such as a typical office)
Noise Environment
Moderate noise (business office with computers and printers, light traffic)
***This Job is not eligible to be performed in Colorado or Connecticut, either remotely or in-person.***
Mountain America Credit Union is an EEO/AA/ADA/Veterans employer.