About this role
Job Description:
We’re KSM, one of the top 50 largest independent advisory, tax, and audit firms in the United States. But more than our size, it’s our people and culture that set us apart. We believe great things happen when people are supported, challenged, and given the freedom to do their very best work. That’s why we’ve built a workplace where your career and personal life can thrive together – where you have the flexibility to manage your time, the resources to grow, and a team that genuinely cares about your success.
We’ve been employee-owned since 2001, giving every team member a stake in our collective success. This ownership mentality fosters a culture of collaboration, curiosity, and excellence – where new ideas are welcomed, different perspectives are valued, and you’re encouraged to explore what excites you most. Whether you’re expanding your skills, tackling new challenges, or making an impact beyond the office, we provide the resources and support to help you grow in the direction that’s right for you.
At KSM, your contributions matter – not just to the firm, but to your colleagues, clients, and the communities we serve across the U.S. If you’re looking for a place where you can do meaningful work, build lasting relationships, and grow in ways that align with what’s most important to you, we’d love to meet you.
Position Summary:
The Associate, IT Risk Advisory Services supports the delivery of IT risk advisory, attestation, internal audit, financial statement audit support, and consulting engagements. This role evaluates client processes, technology, risks, and internal controls while working under the guidance of experienced team members. The Associate contributes to high-quality client service through accurate execution, professional judgment, collaboration, and continuous technical development.
Responsibilities:
- Execute assigned procedures for SOC 1, SOC 2, HITRUST, internal audit, cybersecurity, financial statement audit support, and other IT risk advisory engagements.
- Evaluate IT, cybersecurity, and business process controls through testing and documentation.
- Assess client documentation and supporting evidence for completeness, accuracy, and compliance.
- Prepare clear workpapers, document conclusions, and communicate findings to engagement teams.
- Support financial audit teams through IT control testing and risk assessments.
- Coordinate with clients and internal teams to gather information and meet engagement deadlines.
- Manage multiple assignments while maintaining quality and attention to detail.
- Build knowledge of KSM service offerings and contribute to a collaborative team environment.
Requirements/Qualifications:
- Bachelor's or master's degree from a business school, with a major or concentration in Information Systems, Management Information Systems, Business Technology & Analytics, or a closely related information systems field.
- Commitment to pursue a professional certification such as CISA, CISSP, or another relevant credential.
- Internship or academic experience in IT, cybersecurity, audit, compliance, risk management, or internal controls preferred.
- Strong analytical, communication, organization, documentation, and problem-solving skills.
- Proficiency with Microsoft Office applications (Excel, Word, Outlook), including comfort building and navigating Excel formulas and spreadsheets, paired with strong personal organizational habits for managing workpapers, documentation, and deadlines across multiple engagements.
- Ability to work in a hybrid environment and manage multiple priorities.
We are an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, color, sex, sexual orientation, gender identity, disability, genetic information, national origin, race, religion, veteran status, or any other protected category.
KSM only accepts resumes directly submitted by a candidate and referrals submitted by current KSM employees. Unsolicited resumes or candidate profiles sent by staffing agencies and fee-based referral services will not be considered outside of a signed KSM vendor contract. KSM will not pay a fee to recruiters or agencies that do not have a signed KSM vendor contract.