Our client is a leading global professional services firm specializing in audit, advisory, and consulting services. They work with a diverse portfolio of clients across industries, delivering high-quality financial and business solutions. Known for their innovative approach and commitment to excellence, they invest in talent development and provide a collaborative environment for professionals to grow and make an impact.
This role sits at the sharp end of IT audit and technology risk, where strong controls directly protect business performance. As a GITC Specialist, the work goes beyond routine compliance, it shapes how organisations manage risk, secure their systems, and trust their data.
Based within a high-performing assurance and BI function, the position offers hands-on exposure to advanced IT ecosystems, modern audit analytics, and senior decision-makers. It is built for a professional who wants to deepen expertise in IT controls and cybersecurity while building a strong specialist profile in the market. The environment is fast, technical, and outcome-driven, rewarding people who can turn complex findings into practical improvements.
Ready to take ownership of high-impact IT audit work and build specialist credibility in a performance-driven environment?
Apply and step into a role where your expertise directly reduces business risk at
kgolagano@salixrecruitment.co.za
Responsibilities include :
- Perform and review General IT Control (GITC) assessments aligned to ISA 315 (Revised)
- Evaluate IT environments for compliance with governance and audit requirements
- Recommend and implement enhancements to improve GITC effectiveness and maturity
- Prepare and maintain audit working papers, analytics scripts, and supporting documentation
- Apply data analytics to large datasets to increase audit accuracy and coverage
- Develop dashboards and reports to identify trends, anomalies, and risk areas
- Support structured, data-driven audit testing and decision-making
- Assess cybersecurity controls and identify technology vulnerabilities
- Contribute to IT risk assessments impacting financial reporting and governance
- Translate auditing standards into practical audit procedures and control evaluations
- Identify and implement automation opportunities in audit and reporting workflows
- Support ERP reviews, implementations, and data migrations
- Design and standardise IT audit and GITC methodologies
- Collaborate with audit teams and client stakeholders to deliver actionable insights
- Provide guidance and training on analytics tools used in audit engagements
- Present technical content internally and at external industry forums
- Support SOC 1 and SOC 2 compliance engagements, including documentation and evidence review
- Ensure adherence to data governance, security, and regulatory requirements
Qualifications:- Matric (Grade 12)
- Bachelor’s degree in Computer Science, Information Technology, Accounting, or Finance (NQF Level 7)
- CISA Certification is a must
- Additional certifications in cybersecurity, data analytics, or IT governance (advantageous)
Experince:- 2 - 3 years’ experience in IT audit, IT risk management, or cybersecurity
- Practical exposure to IT control environments, including access controls and change management
- Can perform risk assessment based on ISA 315
- Experience with ERP systems such as SAP, Oracle, Syspro, or similar (advantageous)
- Exposure to SOC 1 and SOC 2 engagements and reporting
- Completed audit articles or post-article experience
Skills and comptencies:- Proficiency in audit analytics and visualisation tools such as IDEA, Power BI, and SQL
- Strong data analysis and scripting capability, including VBA or DAX
- Advanced Microsoft 365 and Excel skills for audit analysis
- Working knowledge of SOC reporting standards
- Strong analytical reasoning and attention to detail
- Ability to translate technical risk into clear business impact
- Effective stakeholder communication and presentation skills
- Capability to work independently within fast-paced audit teams
- Commitment to continuous professional development
- Confidence in presenting technical topics to varied audiences
- Proactive approach to improving IT control environments
If you have not had any response in two weeks, please consider the vacancy application unsuccessful. Your profile will be kept on our database for any other suitable roles / positions.