IT Audit, SOX & Internal Controls Expertise
Practical experience executing ITGC testing, SOX-aligned control assessments, audit procedures, and risk evaluations supporting compliance and internal control effectiveness.
Practical experience executing ITGC testing, SOX-aligned control assessments, audit procedures, and risk evaluations supporting compliance and internal control effectiveness.
IT Audit & Control Assurance
Risk-Based IT General Controls (ITGC) Testing
Tests of Design (TOD) & Operating Effectiveness (TOE)
Control Walkthroughs & Design Evaluations
Evidence Validation & Audit Workpaper Documentation
Audit Sampling & Deficiency Analysis
Governance, Risk & Compliance (GRC)
Enterprise Risk Assessments & Control Evaluations
Governance & Compliance Monitoring Activities
Policy & Control Alignment
Remediation Tracking & Issue Management
Continuous Control Improvement Initiatives
SOX & Compliance Execution
SOX 404 IT Controls Compliance & ITGC Testing
Internal Control Over Financial Reporting (ICFR) Support
Audit Readiness & Evidence Collection
Compliance Validation & Remediation Support
Key IT Control Domains
Logical Access Management
User Provisioning & Deprovisioning
Segregation of Duties (SoD) Analysis
Change Management & SDLC Controls
Backup & Recovery Processes
Logging, Monitoring & Privileged Access Oversight
Third-Party Risk Management (TPRM)
Vendor Risk Assessments & Due Diligence
Security Questionnaire Analysis (SIG, CAIQ)
Third-Party Control Reviews & Evidence Validation
Risk Evaluation & Prioritization
Risk Assessment & Audit Methodology
Inherent Risk & Risk-of-Failure Analysis
Risk-Based Audit Methodology
Audit Sampling & Population Analysis
Risk Scoring & Prioritization Frameworks
Frameworks & Standards
COSO
COBIT
NIST Cybersecurity Framework (NIST CSF)
PCI DSS
ISO 27001
SOX 404
SOC 1 / SOC 2 / SOC 3
HIPAA Security & Privacy Rules
Industry Experience
Financial Services
Fintech & Payments
SaaS & Technology
Healthcare
Logistics & Transportation
Education
Media & Entertainment
GRC & Audit Platforms
ServiceNow GRC
RSA Archer
Diligent HighBond
Enterprise Systems & Technical Environment
SAP (Ariba, Lumira)
Oracle
Microsoft Dynamics GP
Active Directory
Microsoft 365
Google Workspace
SharePoint
Visio
Power BI
Tableau
AI-Enabled & Intelligent Platforms
ChatGPT
Google Gemini
AI-Assisted Documentation & Workflow Optimization
Salesforce AI Features
HubSpot AI Tools
Gong
Salesloft
Outreach.io
ZoomInfo
Demandbase