Director of Internal Audit
Chapman University · Orange, CA · 3 days ago
On-siteFinanceFull-time
Responsibilities
- Lead the annual risk assessment process and develop a risk-based internal audit plan by identifying emerging risks, gathering input from management and key stakeholders, and recommend audit priorities.
- Lead and perform internal audit and advisory engagements from planning through reporting, including defining objectives and scope, conducting interviews and walkthroughs, evaluating risks and controls, performing testing, and documenting results.
- Assess the design and operating effectiveness of internal controls across operational, financial, compliance, and technology-related processes, and identify opportunities to strengthen control environments and improve efficiency.
- Prepare clear, concise, and well-supported audit reports that describe issues, root causes, risk implications, and practical recommendations for corrective action.
- Present audit results and recommendations to management and senior leadership, build alignment on action plans, and escalate significant issues as appropriate.
- Provide periodic updates to the Audit Committee, including presenting the annual audit plan for approval and reporting year-end audit results.
- Maintain oversight of management corrective action plans and perform follow-up procedures, as needed, to validate implementation of agreed-upon actions.
- Contribute to coverage of technology risk areas, including topics such as user access, systems and applications, data protection, third-party risk, and IT general controls, in coordination with audit resources and subject matter expertise as appropriate.
- Develop and maintain effective working relationships across the University and serve as a trusted advisor by providing objective, risk-based insight on controls, governance, and operational improvement opportunities.
- Supervise audit staff and student employees, review workpapers and reports, support resource planning, and help shape the overall direction and maturity of the internal audit function.
- Perform other specialized duties related to the Office of Institutional Compliance and Internal Audit.
Qualifications
- Knowledge of internal auditing standards, risk assessment practices, internal control frameworks, and audit methodology.
- Strong understanding of governance, compliance, financial, operational, and technology risk concepts, with the ability to apply sound professional judgment in varied environments.
- Demonstrated ability to plan and execute complex audits, analyze issues, synthesize information, and develop practical, risk-based recommendations.
- Strong written and verbal communication skills, including the ability to prepare executive-ready reports and present results to management and senior leadership.
- Ability to build effective working relationships, influence constructively, and navigate sensitive matters with diplomacy, objectivity, and confidentiality.
- Experience evaluating technology-related controls and risks, such as user access, system configuration, data protection, vendor risk, or IT general controls, is preferred.
- Ability to manage multiple priorities, work independently, and lead projects to completion within established timelines.
- Demonstrated people leadership experience, including coaching, reviewing work, delegating assignments, and supporting staff development, is preferred.
- Bachelor’s degree in accounting, business, finance, public administration, information systems, or a related field required.
- Director level: typically requires at least 10 years of progressively responsible relevant experience, including demonstrated leadership or supervisory responsibility.
- At least one certification required (CPA, CIA, CISA).