Full-Time

Director of IT Internal Audit

Confirmed live in the last 24 hours

Hagerty

Hagerty

11-50 employees

Specialized insurance for classic cars

Automotive & Transportation
Consumer Goods

Senior, Expert

Remote in USA

Category
Auditing
Financial Analysis
Forensic Accounting
Accounting
Required Skills
Microsoft Azure
Requirements
  • Four-year degree in Information Technology, Computer Science, Accounting, or a related field. Master’s degree is preferred.
  • Proven experience in IT audit (IIA Standards), cybersecurity, SOX compliance, and/or ISO standards, including leadership responsibilities.
  • Proven track record of building and implementing aligned assurance risk assessment to support internal audit planning and overall IT audit management.
  • Proven experience in managing IT audits, leading teams, and collaborating with senior management and regulators.
  • Deep knowledge of IT systems and controls, particularly in insurance and financial services.
  • Strong understanding of regulatory requirements in the insurance and financial services industries.
  • Expertise in cybersecurity frameworks (e.g., NIST, ISO 27001, COSO, ITIL), SOX compliance, and IT governance principles.
  • Publicly traded company disciplines and regulatory knowledge (NYDFS, SEC, NAIC, BMA and international regulations).
  • Preferred professional certification in Certified in Risk and Information Systems Control - CRISC, CISA, CISSP, CIA). ISO certification a plus.
  • Knowledge of GRC platforms and other technologies (i.e., Diligent One, Service Now, SailPoint, ADO, Azure. Etc.).
  • Proficient in Microsoft Office (Word, Excel, Access, and Outlook).
  • Very strong analytical, problem-solving, and communication (verbal and written) skills, with the ability to influence and engage with senior stakeholders.
  • Ability to switch between work assignments quickly, and work under deadlines.
  • Ability to work effectively in a team environment that is rapidly changing.
  • Operate with a supportive and responsive manner.
  • Ability to collaborate with employees at all levels across the enterprise and in team settings.
  • Ability to effectively prioritize and execute tasks in a fast-paced environment and emerging growth company.
  • Experience in interfacing with and presenting to executive teams, business management, and external teams (i.e., external auditors).
  • Ability to convey issues and ideas in both business-friendly and technical-friendly language.
Responsibilities
  • Develop and implement a risk-based IT audit plan that addresses the highest risk and complexities facing the organization including evaluation of core strategic initiatives.
  • Evaluate resource allocation throughout the year to effectively and efficiently.
  • Conduct IT audits focusing on IT governance, application controls, cybersecurity, data privacy, and compliance with SOX and relevant ISO standards (such as ISO 27001).
  • Support risk based integrated audit approach when existing enterprise-wide audit engagement.
  • Evaluate the adequacy and effectiveness of IT controls, including those related to financial reporting (SOX), data integrity, security standards, and operational continuity.
  • Assess and audit the company’s cybersecurity measures, particularly those protecting sensitive customer data and financial transactions in insurance and lending platforms.
  • Review the security and integrity of IT systems supporting auction car sales, including payment processing, customer data protection, and online auction platforms.
  • Provide guidance on adopting and maintaining industry best practices in cybersecurity, ensuring compliance with regulatory requirements.
  • Collaborate with business and financial audit leaders to develop ensure there is a unified SOX 404 approach.
  • Ensure IT controls are designed and operating effectively to meet SOX 404 requirements, particularly those affecting financial reporting and data accuracy.
  • Collaborate with the finance and IT departments to evaluate and test IT general controls (ITGCs) and automated controls within financial applications.
  • Support external auditors in their assessment of the company’s SOX compliance, addressing any identified control deficiencies.
  • Direct day to day aspects of the Company’s SOX Program as it relates to IT with implementation the longer a long-term vision of transition core testing and administrative activities to management.
  • Develop Sarbanes Oxley IT policies, procedures, and work standards by applying the appropriate SOX methodologies using SEC requirements and PCAOB guidance.
  • Ensure IT audit activities align with regulatory requirements specific to the insurance industry, such as those mandated by state insurance departments and the NAIC.
  • Audit IT systems and processes to ensure they support compliance with lending regulations, including those related to consumer data protection and financial transactions.
  • Monitor emerging regulations and industry standards that impact IT controls and adjust audit plans accordingly.
  • Lead internal audits and gap assessments to identify areas for improvement in ISO compliance, particularly in IT processes supporting regulated financial activities.
  • Incorporate annual internal audit requirement related to NYDFS, ISO, SOX or other regulatory requirements when development annual audit plan and engagement programs.
  • Engage with senior management to communicate IT audit findings, risks, and strategic recommendations, with a focus on enhancing IT governance and security.
  • Work closely with the IT department to understand the technical environment and provide insights on mitigating risks related to new technologies or changes in the IT landscape.
  • Lead and develop a team of IT auditors, providing coaching and professional development opportunities to enhance their technical and audit skills.
  • Foster a collaborative and innovative culture within the internal audit team, encouraging the adoption of new audit tools and techniques.
  • Ensure the team stays current with emerging IT audit trends, regulatory changes, and best practices in cybersecurity and IT governance.
  • Collaborate with IA leadership team on development of internal audit budget.
  • Prepare comprehensive audit reports that clearly articulate findings, risks, and actionable recommendations for IT, finance, and business leadership.
  • Responsible for review of IT audit work papers to verify quality of work, ensuring compliance with internal audit standards and regulatory expectations within the GRC platform.
  • Support the audit recommendations tracking and monitoring processes related to IT observations for audit and SOX compliance.
  • Be a core contributor in developing and maintaining processes and internal audit tools/approach to facilitate continued awareness of risk and controls across the enterprise.
  • Leverage knowledge of business, industry, technology and current market to provide input for strategic research and leading practices recommendations.
  • Manage and lead the performance and professional growth of direct reports to ensure development of their skills and talent to help the organization achieve its long-term goals.

Hagerty specializes in services for classic and collector car enthusiasts, offering tailored insurance policies that consider the unique value and usage of vintage vehicles. Their insurance is designed specifically for classic car owners, providing better coverage and competitive rates compared to standard auto insurance. In addition to insurance, Hagerty has a membership program that includes benefits like roadside assistance, exclusive event access, and discounts on automotive products. The company also fosters a strong community through content creation, such as articles and virtual car shows, which helps engage car lovers and attract new clients. By focusing on the classic car market, Hagerty serves a dedicated clientele that views their vehicles as investments and pieces of history, setting them apart from competitors in the broader automotive industry.

Company Stage

IPO

Total Funding

$684.8M

Headquarters

Traverse City, Michigan

Founded

N/A

Growth & Insights
Headcount

6 month growth

6%

1 year growth

6%

2 year growth

6%
Simplify Jobs

Simplify's Take

What believers are saying

  • Hagerty's strategic hires, such as the former Amazon executive, signal a commitment to innovation and digital growth, potentially leading to new revenue streams and enhanced customer experiences.
  • The company's vibrant community and membership program, including events like HDC Days, foster strong customer loyalty and engagement, which can drive long-term growth.
  • Their involvement in high-profile events like Motorlux and partnerships with luxury brands and auctions can elevate Hagerty's brand prestige and attract high-net-worth clients.

What critics are saying

  • The niche focus on classic and collector cars limits their market size, making them vulnerable to economic downturns that affect discretionary spending.
  • Integrating new digital initiatives and leadership could face challenges, potentially leading to execution risks and strategic misalignments.

What makes Hagerty unique

  • Hagerty specializes exclusively in classic and collector cars, offering tailored insurance policies that consider the unique value and usage patterns of these vehicles, unlike standard auto insurers.
  • Their strong community engagement through content creation, events, and a membership program sets them apart from competitors who may not offer such a comprehensive ecosystem.
  • The recent hiring of a former Amazon executive to lead their Digital Marketplace and Valuation tools indicates a strategic focus on enhancing their digital offerings, which is a unique move in the classic car insurance market.

Help us improve and share your feedback! Did you find this helpful?