C-SOX Auditor
- Pay Rate: $67.70/hour, depending on experience
- Contract Length: 5 Months
- Location: Calgary, Alberta
Raise is currently hiring a C-SOX Auditor on behalf of our client. They’re expanding their team to meet growing needs, making this a unique opportunity to work with an industry leader. Our client is responsible for the secure and reliable operation of the Alberta Interconnected Electric System. Note: The primary pay rate is based on T4 classification; however, we will also consider applications from candidates interested in an INC classification, where applicable.
Description The C-SOX Auditor reports to the Lead Auditor, Internal Audit, who reports to the Director, Internal Audit. The Director, Internal Audit reports functionally to the Audit Committee of the Board and administratively to the Vice-President, Finance and Compliance. This reporting structure ensures the independence and objectivity of the Internal Audit Function. The C-SOX auditor provides independent, risk-based, and objective assurance over the organizations
Internal Controls Over Financial Reporting (ICFR) for its annual C-SOX audit, with a focus on business controls (non-IT controls).
Responsibilities
- Assess and document the design, implementation and operating effectiveness of ’s C-SOX controls for the 2026 audit period, including entity-level controls, expenditures, capital, payroll, operating reserves, revenue and settlements, credit, treasury, financial close and reporting, including relevant automated controls.
- For each control, prepare complete design assessment documentation that clearly identifies:
- The financial reporting risk and relevant financial statement assertion.
- The control objective and how the control addresses the identified risk.
- The control owner and individuals responsible for performing and reviewing the control.
- Whether the control is preventive or detective, and manual, automated or IT-dependent.
- The control frequency, timing, precision, thresholds and level of aggregation.
- The reports, data, systems and other information used in performing the control.
- The evidence retained to demonstrate performance and review.
- The criteria used to conclude whether the control is appropriately designed.
- Any control-design gaps, recommendations and management responses.
- Confirm that each control has been implemented through inquiry, observation, inspection of supporting evidence and walkthroughs. Document the transaction selected for the walkthrough from initiation through processing, recording and financial reporting.
- Develop and document an operating-effectiveness testing plan for each control, including:
- Defined population and audit period.
- Population completeness and accuracy procedures.
- Sampling methodology and sample-size rationale.
- Items selected and selection method.
- Attributes and criteria tested.
- Evidence inspected.
- Test results and exceptions identified.
- Additional or extended testing performed.
- Final conclusion on operating effectiveness.
- Coordinate with the IT auditor on IT change testing to ensure significant changes during the test period impacting business control design are included in the IT change testing. If exceptions are noted in the completeness, accuracy and validity of information produced, coordinate recommendation(s) with the IT auditor to address control deficiencies
- Prepare workpapers that meet methodology and applicable IIA standards and contain sufficient, reliable, relevant and useful evidence so that an experienced auditor with no previous connection to the work can understand and reperform the procedures and reach the same conclusion.
- Cross-reference all risks, controls, procedures, samples, supporting evidence, exceptions and conclusions to the C-SOX risk and control matrix and supporting workpapers.
- Identify and document all exceptions, including the nature, cause, frequency, affected population, financial reporting risk and potential magnitude. Assess whether exceptions represent isolated errors or control exceptions in accordance
- with assessment ratings.
- Discuss potential exceptions with the control performer, the Lead Auditor and control owner, while maintaining Internal Audit’s independent assessment and conclusion. Obtain and document factual confirmation, management responses, remediation actions, accountable owners and target completion dates.
- Coordinate with the Lead Auditor to ensure quality control over assigned workpapers, including evidence of preparer and reviewer sign-off, review-note clearance and timely resolution of documentation gaps.
- Maintain the C-SOX status dashboard, showing planned and completed testing,
- outstanding information requests, exceptions, remediation status,
overdue actions and controls at risk of not being completed within the reporting timetable.
- Prepare clear summaries of control deficiencies, recurring issues, improvement opportunities, automation opportunities and matters requiring escalation to management.
- Immediately escalate missing evidence, scope limitations, suspected management override, repeated exceptions, potential fraud indicators and matters that could affect management’s certification.
Qualifications
- 8+ years of experience in internal audit or related governance, risk, and control roles with focus on non-IT controls.
- SOC, SOX, C-SOX or similar experience.
- Strong knowledge and application of IIA Standards; ability to conduct peer reviews.
- Strong verbal and written communications skills.
- Proven ability to establish and maintain working relationships with the internal audit team, audit clients, management and employees.
- Proven ability to resolve challenges proactively, preventing unnecessary escalation.
- Proficiency with technology to enhance audit efficiency e.g. data analysis
- Electricity Industry experience considered an asset.
- Experience with Workday, ServiceNow considered an asset.
- Education and Certifications
- Post secondary education within Business or IT discipline
- Professional CPA or CIA certification is required.
- CISA would be an asset.
Looking for meaningful work? We can help! Raise is an established hiring firm with over 65 years of experience. We believe strongly in making the world a better place through work, which is why we’re a certified B Corporation and donate 10% of our profits to charity. We strive to build teams that reflect the diversity of the communities we work in. We encourage all qualified applicants to apply, including people from traditionally underrepresented groups such as women, visible minorities, Indigenous peoples, people identifying as LGBTQ2SI, veterans, and people with visible/nonvisible disabilities.
We have a dedicated webpage for accommodations where you can learn more about what we offer and request accommodation: https://raise.jobs/accommodations/
In order to submit candidates for roles, our clients will sometimes require personal information to confirm the identity of applicants and their legal status to work. Raise will never ask you for personal or banking information unless you have been selected for a job. If you are ever unsure about the legitimacy of this or any other Raise job posting (or have any other questions), please contact us at +1 (phone hidden) or
[email protected].
#WES
📌 C-Sox Auditor (Calgary)
🏢 Raise
📍 Calgary