Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

MATTHEW HAMMER

Park Ridge,IL

Summary

Experienced professional with over eight years of consulting experience that includes over five years with a big four firm. Experiences include both internal and external audits over ITGCs and business/internal controls for Sarbanes Oxley compliance, SOC 1 and 2 reporting, and various other assessments.

Overview

15
15
years of professional experience
1
1
Certification

Work History

TECHNOLOGY RISK CONSULTING MANAGER

ERNST & YOUNG, EY
08.2021 - Current
  • Manage 10 professionals across multiple client engagements, including a Fortune 25 client, issuing a total of nine SOC 1 and four SOC 2 reports, and three IT SOX audits
  • Responsibilities include leading all planning, staffing, reviewing work of team, project economics, and concluding/reporting
  • Built productive relationships with internal audit, IT organization, and key leaders at each client by focusing on quality and efficient execution of all engagement phases
  • Established an understanding of their IT environment and controls framework to assess compliance and provide recommendations for remediation and process improvement when needed
  • Champion of communications for 40+ professionals leading biweekly team meetings focusing on audit quality, updates to guidance and KPIs, and sharing helpful resources
  • Also lead monthly manager and senior manager meeting discussing internal initiatives with managing directors and partner.

CONSULTING SENIOR

TECHNOLOGY RISK
04.2018 - 08.2021
  • Worked on multiple client engagements ranging from IT SOX, SOC 1, and SOC 2 examinations
  • Responsibilities included leading walkthrough meetings to confirm design effectiveness, reviewing operating effectiveness testing, and reporting
  • Completed Agreed Upon Procedures and IT Risk Assessments to help clients identify gaps and solutions to mitigate risk
  • Work included areas over IT operations, change management, and logical access
  • Involved with the Audit Quality and Operations internal technology risk team pillars
  • Helped identify audit quality initiatives and learning opportunities for the team
  • Reviewed engagement metrics and scheduled hours to identify charged hour variances for the team.

SENIOR CONSULTANT

BAKER TILLY
01.2017 - 04.2018
  • Performed activities in support of all phases of the project lifecycles, which includes scoping, control assessment, testing process/documentation, and control remediation or process improvement efforts
  • Assisted with the project management of each engagement ensuring projects are staffed, client expectations are defined, timeline of deliverables are met, and billing is promptly completed
  • Experience working on IT SOX, SOC, IT risk assessments, and other IT consulting using the following frameworks and standards: ISO 27001, NIST SP 800-53, COBIT, and CIS Critical Security Controls.

STAFF CONSULTANT

Baker Tilly
06.2015 - 01.2017
  • Completed IT risk assessments of data centers, IT operations, change management, system development life cycle (SDLC), and logical access procedures
  • Completed IT SOX testing, SOC 1 and SOC 2 examinations, and various other IT audit projects
  • Operated in a Senior Consultant capacity on majority of engagements by leading client meetings, document requests, and ensuring timely completion of project deliverables.

PLATOON SERGEANT

WISCONSIN ARMY NATIONAL GUARD
07.2008 - Current
  • Hold the rank of Sergeant First Class and responsible for mentoring, training and supervising 50 soldiers
  • Attended multiple leadership schools, including Senior Leadership Course, which provided skills to prepare missions and brief senior leaders (i.e., prepare projects and brief key stakeholders)
  • Previously served on Active Duty Army from October 2003 - October 2006; deployed overseas for five tours supporting multiple operations

Education

Bachelor of Science - Business Administration Information Technology

Marquette University
Milwaukee, WI
06.2015

Skills

  • Technology risk management
  • Sarbanes Oxley IT compliance
  • SOC 1 and 2 reporting
  • IT General Controls (ITGC)

Certification

Certified Information Systems Auditor (CISA) – ISACA

Timeline

TECHNOLOGY RISK CONSULTING MANAGER

ERNST & YOUNG, EY
08.2021 - Current

CONSULTING SENIOR

TECHNOLOGY RISK
04.2018 - 08.2021

SENIOR CONSULTANT

BAKER TILLY
01.2017 - 04.2018

STAFF CONSULTANT

Baker Tilly
06.2015 - 01.2017

PLATOON SERGEANT

WISCONSIN ARMY NATIONAL GUARD
07.2008 - Current

Bachelor of Science - Business Administration Information Technology

Marquette University
MATTHEW HAMMER