Salary
💰 $116,900 - $217,100 per year
About the role
- Assess, challenge, and support testing the design and operational effectiveness of controls using TR’s control framework
- Design and re-design controls aligned to SOC 1 and SOC 2 service criteria
- Set evidence expectations with control owners to meet testing deadlines
- Facilitate testing plans by external audit firms
- Oversee and act as a liaison for both external and internal audits
- Anticipate and identify non-compliance issues
- Recommend and support stakeholders making changes to address non-compliance issues
- Compile reports on audit results and present them to managers & supervisors
- Propose efficiencies and automation to optimize workflow
- Apply working knowledge of evolving technology and new compliance frameworks
Requirements
- Bachelor's degree in IT, Accounting, Finance or equivalent education and experience (preferable)
- At least 4+ years of relevant work experience in ISO, ITGC, SOC, PCI within Audit, Big 5, consulting firms, or managing large audit portfolio
- Control testing or working within a Governance or Compliance function across Financial Services or Technology organizations
- One of these certifications in order of preference is essential CISA, CISSP, CCAK, CISM, CRISC or ISO (preferred)
- Strong ethical principles and understanding of business and IS ethics
- Awareness about common security vulnerabilities of web and cloud applications and operating techniques from sources such as SANS, OWASP Top10 and CSA
- Experience in testing Cloud controls and related technologies will be an asset
- Excellent oral and written communication skills in English
- Additional expertise in French, Spanish or another language will be an asset
- Flexible hybrid working environment (2-3 days a week in the office)
- Work from anywhere for up to 8 weeks per year
- Comprehensive benefit plans including flexible vacation
- Two company-wide Mental Health Days off
- Access to the Headspace app
- Retirement savings
- Tuition reimbursement
- Employee incentive programs
- Resources for mental, physical, and financial wellbeing
- Paid volunteer days off annually
- Opportunities to get involved with pro-bono consulting projects and ESG initiatives
- Optional hospital, accident and sickness insurance paid 100% by the employee
- Optional life and AD&D insurance paid 100% by the employee
- Flexible Spending and Health Savings Accounts
- Fitness reimbursement
- Access to Employee Assistance Program
- Group Legal Identity Theft Protection benefit paid 100% by employee
- Access to 529 Plan
- Commuter benefits
- Adoption & Surrogacy Assistance
- Employee Stock Purchase Plan
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
control testingSOC 1SOC 2ISOITGCPCIcloud controlsaudit portfoliocompliance frameworksautomation
Soft skills
ethical principlescommunication skillsstakeholder managementproblem-solvingreportingcollaborationorganizational skillsanalytical skillspresentation skillsliaison
Certifications
CISACISSPCCAKCISMCRISCISO