
Posted 7 days ago
Information Security Auditor (SOC Services)
AI Summary
A remote Information Security Auditor leads end-to-end SOC audits, designing control tests, assessing compliance against multiple frameworks, and delivering audit reports for clients across various industries.
About this role
We’re Hiring!
At KirkpatrickPrice, our mission is to take complicated audits and make them worth it. We educate, empower, and inspire our clients to greater levels of assurance by partnering with them to achieve challenging compliance goals.
Working at KirkpatrickPrice, we make sure audits are worth it, and maybe even fun! Auditing doesn’t have to be boring! This is our team: a lot of smiling, passionate people who want you to know that not all auditors are stuffy and boring. Whether they’re on site with a client or at a team sponsored event, KirkpatrickPrice employees always make sure to put a little fun in auditing.
Information Security Auditor / Information Security Associate (SOC Services)
KirkpatrickPrice is seeking an IT and security-savvy auditor who is ready to join a growing and changing compliance industry. We are assisting clients in achieving challenging compliance and security goals through conducting quality testing. Whether a startup or at the enterprise level, we deliver the same quality of diligence, providing an unmatched level of service and interpersonal partnership with our clients. This candidate will be skillful in designing effective control tests and understand and interpret how risk impacts a wide range of business environments.
A Day in the Life:
You will lead the delivery of audits. You will use various tools and technology to assess against frameworks. Tasks may include conducting interviews from C-level down to network administrator, traveling to client locations, performing test procedures, and gathering and documenting evidence. Our auditors work closely with our professional writing team to deliver high-quality audit reports on time.
Responsibilities Include:
-Conducting end-to-end SOC audits, ensuring compliance with industry standards and regulatory requirement.
-Conducting end-to-end assessments, including PCI, ISO 27001, HIPPA, HITRUST, etc.
-Collaborating to enhance internal controls and processes
-Evaluating and analyzing business processes and IT systems to identify potential risks and controls relevant to internal control over financial reporting (ICFR)
-Evaluating deficiencies, recommendations, and corrective action plans
-Participating in trainings to remain abreast of industry trends, regulations, and best practices to ensure continuous improvement in the audit process
Characteristics we love to see:
An extreme level of integrity. The top 1% of wealth holders in America rate integrity as their #1 factor that explains economic success.
Passion for teaching clients about applicable compliance standards, such as SOC1, SOC2, PCI, HIPPA. FISMA, GLBA, HITRUST, GDPR, and ISO. We love this alphabet!
Unparalleled professionalism, in conduct and appearance.
Willing to travel nationwide, 30-50%
Self-motivated to work virtually and independently with minimal supervision
Qualifications/Certifications:
Bachelor’s degree in accounting, finance, or related field, and/or master’s degree in similar area, including information systems
5+ years of experience in SOC services, including SOC1 and SOC2 assessments
CPA Certification is highly desirable
QSA, CISSP, CISA and other related certifications are also desired
Exposure to the audit function of information security as a beneficiary of audits
Direct audit experience
Strong analytical and problem solving skills with acute attention to detail
Excellent communication and interpersonal skills, with the ability to effectively interact with internal and external stakeholders
Strong ability to write workpapers
Proven Big 4 experience is a strong asset
In-depth knowledge of accounting principles, auditing standards, and regulatory requirements, including compliance standards SOC1, SOC2, PCI, HIPPA, FISMA, GLBA, HITRUST, GDPR, ISO
Exposure to a wide range of security tools
Experience coordinating simultaneous projects at different stages
Compensation:
$115,000-$150,000