Information Security Auditor

Securitypalhq

San Francisco (CA)

Hybrid

USD 166,000 - 170,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A cybersecurity firm located in San Francisco is looking for an Information Security Auditor to lead vendor assessments and provide strategic security recommendations. The ideal candidate should possess a Master’s Degree in Cyber Security, with at least 30 months of relevant experience. You will foster client relationships, develop tailored methodologies, and conduct ISO 27001:2013 and SOC 2 Type 2 audits. Salary will range from $166,000 to $170,000 per year, depending on experience. Telecommuting is allowed.

Qualifications

  • Master’s Degree in Cyber Security and Information Assurance or related field.
  • Thirty months of work experience in a Cyber Security role.
  • Experience in conducting IS Audits compliant with ISO 27001:2013 and SOC 2 Type 2.

Responsibilities

  • Lead a team providing vendor assessments on security risks.
  • Main point of contact for client communications.
  • Develop tailored assessment methodologies.

Skills

Information Security Audits
Client Communication
Risk Assessment
Incident Response

Education

Master’s Degree in Cyber Security

Job description

SecurityPal, Inc.

San Francisco, CA

Information Security Auditor
Duties
  • Lead a team that provides comprehensive vendor assessments to evaluate security risks and compliance with standards and regulations.
  • Serve as the main point of contact for clients, ensuring clear communication, understanding of requirements, and satisfaction with services provided.
  • Develop and implement assessment methodologies tailored to client needs and industry best practices.
  • Collaborate with clients to identify their security needs and customize assessment approaches accordingly.
  • Analyze assessment findings and provide strategic security recommendations to clients to mitigate risks effectively.
  • Generate detailed assessment reports outlining findings, risk levels, and recommendations for remediation.
  • Present findings to clients in a clear, concise, and actionable manner.
  • Foster strong client relationships by proactively addressing concerns, anticipating needs, and providing exceptional service.
  • Act as a trusted advisor on security matters.
  • Collaborate with clients during security incidents to provide technical guidance and support incident response efforts.
  • Perform comprehensive risk assessments beyond vendor assessments, such as enterprise‑wide risk assessments, to identify and prioritize risks across different business units or systems.
  • Collaborate with other teams within the organization (e.g., IT, legal, compliance) on security‑related initiatives such as policy development, security awareness programs, or incident response exercises.
  • Conduct readiness assessments for ISO, SOC 2, FedRAMP compliance, evaluating current processes, controls, and documentation to identify gaps and areas needing improvement to achieve compliance and certification.

Telecommuting Allowed for this position

Minimum Requirements
  • Master’s Degree in Cyber Security and Information Assurance or a substantially related field.
  • Thirty (30) months of work experience in a Cyber Security role.
  • Experience conducting Information Security (IS) Audits compliant with ISO 27001:2013 and SOC 2 Type 2 standards.
Salary

$166,000-$170,000 per year, depending upon experience

Hours

9:00 A.M. - 6:00 P.M

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Auditor
Information Security Auditor

securitypal • San Francisco (CA)

Hybrid
USD 166,000 - 170,000
Remote Information Security Auditor & Vendor Risk Lead
Remote Information Security Auditor & Vendor Risk Lead

securitypal • San Francisco (CA)

Hybrid
USD 166,000 - 170,000
Remote Lead Information Security Auditor & Client Advisor
Remote Lead Information Security Auditor & Client Advisor

Securitypalhq • San Francisco (CA)

Hybrid
USD 166,000 - 170,000
Information Security Analyst
Information Security Analyst

Maritz Holdings Inc. • United States

On-site
USD 85,000 - 110,000
Information Security Specialist (Cyber security analysis)
Information Security Specialist (Cyber security analysis)

AditiStaffing • Bellevue (WA)

On-site
USD 85,000 - 110,000
Career growth focus on cybersecurity
Confidential handling of information according to EEO guidelines
IT Security Analyst
IT Security Analyst

The ProSource Group, Inc. • Carlsbad (CA)

Hybrid
USD 90,000 - 120,000
Information Security Risk & Compliance Analyst
Information Security Risk & Compliance Analyst

Illinois Attorney General • Springfield (IL)

On-site
USD 65,000 - 90,000
Information Security Analyst
Information Security Analyst

Veriipro • Phoenix (AZ)

On-site
USD 90,000 - 120,000
Sr Security Engineer
Sr Security Engineer

The Timberline Group • St. Louis (MO)

On-site
USD 110,000 - 160,000
Security Analysts
Security Analysts

The Timberline Group • St. Louis (MO)

On-site
USD 85,000 - 110,000