Jobs and Careers
EY
Digital Risk Senior Consultant - IT audit
EYPolandfull_timeVerifiedPosted 2 Jun 2025
About the role
<p><span><strong>Digital Risk Senior Consultant – IT audit</strong></span></p>
<p> </p>
<p><span>Location: Katowice (remote) or Wrocław (hybrid model: 2 days in the office, 3 days home office)</span></p>
<p> </p>
<p><span>Let us introduce you the job offer by EY GDS Poland – a member of the global integrated service delivery center network by EY. </span></p>
<p> </p>
<p><span><strong>The opportunity </strong></span></p>
<p> </p>
<p><span>As part of our Consulting Enterprise Risk Process and Controls team you will participate client engagements related to Internal Audit, Process Compliance and Reviews, SOX 404 Reviews, Development of Standard Operating Procedures manuals & Enterprise Risk Management. </span></p>
<p><span>We are looking for strong Staff Consultant with knowledge and minor expertise in Internal Audit and Enterprise Risk Management to join our EY Risk Consulting Team. This is a fantastic opportunity to be part of a leading firm whilst being instrumental in the growth of a new service offering. </span></p>
<p><span> <strong> </strong></span></p>
<p><span><strong>Your key responsibilities</strong></span></p>
<p> </p>
<p><span>Your key responsibilities will include:</span></p>
<ul>
<li><span>Consistently deliver quality client services. Drive high-quality work products within expected timeframes and on budget. Monitor progress manage risk and ensure key stakeholders are kept informed about progress and expected outcomes.</span></li>
</ul>
<ul type="disc">
<li><span>Foster relationships with client personnel to analyse, evaluate, and enhance information systems to develop and improve security at procedural and technology levels.</span></li>
</ul>
<ul>
<li><span>Use knowledge of the current IT environment and industry trends to identify engagement and client service issues and communicate this information to the engagement team and client management through written correspondence and verbal presentations. Stay abreast of current business and industry trends relevant to the client's business.</span></li>
</ul>
<ul type="disc">
<li><span>Demonstrate deep technical capabilities and professional knowledge. Demonstrate ability to quickly assimilate to new knowledge.</span></li>
</ul>
<p> </p>
<p><span><strong>Skills and attributes for success</strong></span></p>
<p> </p>
<ul>
<li><span>You will leverage your proven track record of IT Internal controls, IT Audit experience and strong personal skills, to effectively deliver quality results in the assessment, design, and support implementation of controls, security and IT risk solutions.</span></li>
</ul>
<p> </p>
<p><span><strong>To qualify for the role, you must have</strong></span></p>
<p> </p>
<ul>
<li><span>A bachelor’s or master’s degree and approximately 3-6 years of related work experience</span></li>
<li><span>At least 2-4 years of experience in IT Risk and Compliance</span></li>
<li><span>Design IT Risk Controls framework such as IT SOX</span></li>
<li><span>Implementation and Testing of internal controls such as IT general controls, IT application controls, IPE related controls, interface controls etc.</span></li>
<li><span>Identify control gaps, weaknesses and areas of improvements.</span></li>
<li><span>Conducting IT internal control reviews, and review of SOC1 or SOC2 reports</span></li>
<li><span>Have experience working on IT Internal or external audits</span></li>
<li><span>Knowledge of IT risk, information security or cyber security frameworks such as COSO, COBIT, ISO, NIST etc.</span></li>
<li><span>IT Risk and Controls assessment with exposure of any of the technologies such as SAP, Oracle, Workday, MS Dynamics or emerging technologies such as Cloud, RPA, AI/ML</span></li>
<li><span>IT Infrastructure and Architecture risk assessments including data quality and data migration reviews, data privacy reviews, OS DB reviews etc.</span></li>
<li><span>Strong exposure working in client facing roles, collaborate with cross functional teams including internal audits, IT security and business stakeholders to assess control effectiveness and facilitate remediation activities.</span></li>
<li><span>Excellent communication, documentation and report writing skills.</span></li>
<li><span>Good to have relevant industry certifications such as CISA, CISM, CISSP, CRISC, CCSK, ISO 27001, and others (as relevant)</span></li>
</ul>
<p> </p>
<p><span><strong>Ideally, you’ll also have</strong></span></p>
<p> </p>
<ul>
<li><span>Advanced command of German or Spanish language </span></li>
</ul>
<p> </p>
<p><span><strong>What we offer</strong></span></p>
<p> </p>
<p><span>EY Global Delivery Services (GDS) is a dynamic and truly global delivery network. We work across ten locations – Argentina, China, Hungary, India, the Philippines, Poland, Sri Lanka, Mexico, Spain and the United Kingdom – and with teams from all EY service lines, geographies and sectors, playing a vital role in the delivery of the EY growth strategy. From accountants to coders to advisory co
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s