Salary
💰 $64,000 - $112,000 per year
Tech Stack
AWSAzureCloudCyber SecurityGoogle Cloud Platform
About the role
- Assess security and compliance of client firms against regulatory and industry requirements and standards
- Perform audits/assessments and develop reports for clients
- Provide quality control and peer review to delivery staff
- Work closely with Project Managers, Directors and Delivery team to manage project timelines and deliverables
- Audit information systems and test technical controls, policies, procedures, laws, regulations, and best practices
- Draft audit programs and lead client interviews and walkthroughs
- Assess security vulnerabilities and inspect evidence documentation
- Prepare and review assessment reports and educate clients on compliance activities
- Manage priorities to achieve delivery utilization targets
- Maintain professional certifications and continuous development
- Travel 25-50% and ability to be successful when working remotely.
Requirements
- 1+ years of experience as an IT Consultant, IT auditor, Business Analyst, or similar role
- One of the following Information Security certifications required or ability to obtain: CISSP, CISM or ISO 27001 Lead Implementer.
- One of the following Audit certifications required or ability to obtain: CISA, GSNA, CIA, IRCA ISMS Auditor or higher, or ISO 27001 Lead Auditor.
- Bachelor's degree (four-year college or university) or equivalent combination of education and work experience. Degree preferably in Information Systems or Business.
- Strong written and verbal communication skills including quick response time the ability to explain technical matters to a non-technical audience
- Strong Consulting skills: ability to advise and challenge the status quo while building strong relationships
- Ability to build high-trust relationships, rapport and credibility quickly
- Strong personal initiative to appropriately manage time and meet deadlines
- High attention to detail and quality
- Computer and typing skills that permit rapid data collection and note taking
- Has a sense of urgency and ability to multi-task
- Ability to participate and facilitate meetings to small or large groups
- Public speaking and executive presence that solicits attention
- Inquisitive and curious nature with the ability to effectively probe for deeper information
- Diplomatic and broad minded
- Strong technical researcher
- General knowledge of IT audit procedures and cyber security best practices
- Experience and demonstrated ability to independently research a technical topic and develop logical testing approaches
- Experience and demonstrated ability to lead testing sessions for assigned controls.
- Demonstrated experience reading and interpreting security framework criteria