Future Opening: Site Security Auditor: Los Angeles Metro REMOTE

Independent Security Evaluators

Los Angeles (CA)

Hybrid

USD 70,000 - 110,000

Full time

9 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Work from home option
Unlimited vacation
Health premium plan option

Job summary

Independent Security Evaluators is seeking a Site Security Auditor to help grow our media and entertainment vendor audit program. You will perform site assessments, develop audit plans, and drive client security through robust risk management and ISMS practices.

The role requires experience in security audits, knowledge of MPA best practices, and strong communication skills. Travel may be international; visa sponsorship is not available for non-US locations. Reside in the Los Angeles metro area.

Qualifications

  • One year of audit experience in Media & Entertainment within the last four years.
  • Knowledge of security audit frameworks, practices, tools, and techniques.
  • Analytical and technical knowledge with strong communication and presentation skills.
  • Willingness to travel internationally.

Responsibilities

  • Perform site assessments of services facilities and workflows at physical premises.
  • Support security program development and ISMS implementation.
  • Meet with clients and vendors to discuss security policies and gaps.
  • Create audit plans, test controls, and verify compliance.

Skills

Security auditing
GRC knowledge
Interviews

Job description

We are anticipating the need to hire a Site Security Auditor in the future.

The Site Security Auditor at ISE will assist in the growth of our media and entertainment vendor audit program. Our ideal candidate for the Site Security Auditor must have hands-on technical expertise with GRC tools, intrusion prevention & detection and direct experience with security audits.

Please note, at this time, we are unable to provide visa sponsorship or hire candidates located outside of the United States.

What you’ll do at ISE:
  • Perform site assessments of services facilities, which conduct workflows at physical premises, including commercial and residential scenarios.

  • Drive client security through knowledge of security protocols and demonstrating responsible cybersecurity practices, including risk management, control implementation, ISMS implementation, and business continuity management, among other topics, to build a stronger overall security posture.

  • Conduct meetings with clients and clients’ vendors’ employees, while addressing the vendors’ security policies, workflow, physical, and digital security parameters.

  • Create audit plans to test key controls and verify compliance. Assess the severity of identified weakness and the impact of the risk involved.

  • Identify security gaps based on Motion Pictures Association (MPA) Best Practices and other best practice and standard bodies, understand any underlining causes or related impact, and how to address them.

  • Document and present audit findings, observations, and conclusions to internal and external stakeholders.

  • Evaluate and develop recommendations to ensure vendors compliance with industry best practices.

  • Collaborate with leadership to develop adjustments to existing policies and practices in order to address gaps within business processes and within the audit process.

  • Ensure completion of the project within the agreed-upon level of effort and time frame.

Must Haves:
  • One year of experience within the last four years in Media & Entertainment industry audit experience.
  • Reside in Los Angeles, California metro area
  • Knowledge of security audit frameworks, practices, tools, and techniques.

  • Auditors should possess analytical and technical knowledge together with interviewing, interpersonal and presentation skills.

  • Experience with Motion Picture Association (MPA) Best Practices and how they are integrated in vendor locations.

  • Minimum of two years of experience conducting IT audits covering Content Security, Cyber Security, Information Security, and/or Information Systems.

  • At least one active information security, cybersecurity, and/or IT audit certification below.

  • CompTIA

  • Security+

  • CASP+

  • PenTest+

  • EC-Council

  • CEH

  • GIAC

  • GSEC

  • GISF

  • GWAPT

  • GISP

  • ISACA

  • CISA

  • CISM

  • CRISC

  • CGEIT

  • CDPSE

  • CSX-P

  • ISC2

  • CISSP

  • PECB

  • ISO 27001 Certified Auditor

What you bring to the table:
  • Experience reading and illustrating architecture and network diagrams.

  • Understanding of the principals of information security policies, business continuity plans, and industry control requirements as they pertain to the security of the content.

  • Ability to identify gaps and develop recommendations around operations, policy management, and physical and digital security.

  • Knowledge of compensating controls or alternatives due to restraints such a budget, employment, nature of content, etc.

  • Strong writing, communication, logistics/time management, professionalism.

  • Ability to travel internationally.

Salary:

Associate to Mid Level: $70K-$90K

Senior Level: $90K-$110K

What we bring to the table:
  • Check out joinise.io for full details
  • Work that matters; projects that impact people’s everyday life and wellbeing

  • Quality, integrity, dedication, and education: our core values.

  • Life balance: flexible schedule, work from home option, and unlimited vacation

  • $0 health premium plan option, including spouse and family.

  • Opportunities to research and publish, speak at major security events and conferences.

  • Leadership and peers that support and mentor you: your growth is our growth, your success is our success.

  • Relaxed and fun environment: ditch the suit and tie, sit or stand at your desk or find a sofa.

How you’ll learn at ISE:

Everyone has a mentor, or two or three sometimes. We hold you and ourselves accountable for your advancement. You’ll learn directly from your mentor, your colleagues, resources vetted by the team, and at regular firetalk lunches by your peers. You also have access to paid training, workshops, university courses, certification courses, and we’ll pay for the certs too. Want to learn a new skill that you aren’t currently using but want to? Great! Innovation is key–new technology is important.

About ISE:

ISE is an independent security consulting and software firm headquartered in Baltimore, Maryland dedicated to securing high value assets for global enterprises and performing groundbreaking security research. Using an adversary-centric perspective driven by our elite team of analysts and developers, we improve our clients’ overall security posture, protect digital assets, harden existing technologies, secure infrastructures, and work with development teams to ensure product security prior to deployment.Our team enjoys working in a creative, educational, and comfortable environment where they can thrive professionally.

Building a Better Community:

We value different viewpoints and fresh perspectives. We embrace people who challenge our thinking and question the status quo. We are opposed to narrow minded, exclusionary, and discriminatory viewpoints or practices that inherently undermine our creative process, hinder growth, and impede innovation.

Need more info?

Be sure you spend some time at www.ise.io. Make sure you look through all the perks on the Careers page, then check out our Research and Blog, our events page for the IoT Village, and About page. Follow us on Twitter @ISEsecurity and @IoTvillage

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Future Opening: Embedded Studio Content Security Engineer HYBRID
Future Opening: Embedded Studio Content Security Engineer HYBRID

Independent Security Evaluators • Los Angeles (CA)

On-site
USD 90,000 - 130,000
Flexible schedule
Work from home options
Unlimited vacation
+2
Future Opening: Embedded AI Content Security Engineer HYBRID
Future Opening: Embedded AI Content Security Engineer HYBRID

Independent Security Evaluators • Los Angeles (CA)

On-site
USD 140,000 - 170,000
Work from home options
Unlimited vacation
Health premium plan option $0
Future Opening: Embedded Infrastructure Security Consultant HYBRID
Future Opening: Embedded Infrastructure Security Consultant HYBRID

Independent Security Evaluators • Los Angeles (CA)

Hybrid
USD 140,000 - 170,000
Flexible schedule
Work from home options
Unlimited vacation
+3
Senior Security Consultant
Senior Security Consultant

Independent Security Evaluators, LLC. • Los Angeles (CA)

On-site
PEN 372,605 - 603,265
Flexible schedule
Unlimited vacation
$0 health premium plan option
+1
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

Mantis Security Corporation • Reston (VA)

On-site
USD 130,000 - 180,000
Security, Risk and Compliance Consultant
Security, Risk and Compliance Consultant

SEI • Chicago (IL)

On-site
USD 150,000 - 190,000
Health insurance
Dental insurance
Vision insurance
+4
Security Systems Program Manager
Security Systems Program Manager

IREN • Fort Worth (TX)

On-site
USD 120,000 - 180,000
Health insurance
401(k) retirement plan
Paid time off
Information System Security Engineer (ISSE)
Information System Security Engineer (ISSE)

Agecareers • Trenton (MD)

On-site
USD 117,000 - 143,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+5
Security, Risk and Compliance Consultant
Security, Risk and Compliance Consultant

SEI • Cincinnati (OH)

On-site
USD 100,000 - 130,000
Enterprise - Information Systems Security Engineer - DIACAP, TCP/IP, STIGs
Enterprise - Information Systems Security Engineer - DIACAP, TCP/IP, STIGs

Erias Ventures • Columbia (MD)

Hybrid
USD 150,000 - 250,000
Above market pay
401k with vesting
Spot bonuses
+11