Internal Security Compliance Auditor

Oneleet

Beaverton (OR)

On-site

USD 80,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Comprehensive health & wellness benefits
20 days PTO per year, plus 8 floating holidays
Remote work culture
Team off‑sites in stunning places
Competitive compensation & equity

Job summary

Oneleet, based in Beaverton, Oregon, is seeking an Internal Security Compliance Auditor to enhance client compliance readiness. This role demands strong knowledge of SOC 2, ISO 27001, PCI, HIPAA, and GDPR regulations. Key responsibilities include conducting quality assurance reviews on compliance documentation and collaborating with Security Program Managers. The position offers comprehensive benefits, 20 days of PTO, and a competitive compensation package, under a remote-first work model.

Qualifications

  • Deep understanding of compliance frameworks and security controls.
  • Strong technical knowledge required for evidence evaluation for audits.
  • Experience in pre-audit preparation and quality assurance.

Responsibilities

  • Perform thorough internal reviews of client evidence for compliance.
  • Conduct quality assurance checks prior to audits with third-party firms.
  • Identify and recommend improvements for evidence documentation.
  • Develop and maintain internal QA standards and methodologies.
  • Provide feedback to enhance compliance platforms.

Skills

Deep understanding of SOC 2
ISO 27001 knowledge
Experience with PCI
Familiarity with HIPAA
Knowledge of GDPR requirements
Strong written communication skills
Attention to detail
Ability to work independently
Knowledge of compliance automation tools
Experience in internal quality assurance

Education

Certification in relevant frameworks (e.g., CISA, ISO 27001 Lead Auditor)

Job description

About Oneleet

Oneleet is one of the fastest-growing security and compliance platforms in history. We are on a mission to change the compliance and security industry by making cybersecurity and compliance effective, easy, and painless. We provide a platform that helps companies build, manage, and monitor their cybersecurity programs and achieve compliance standards such as SOC 2 and ISO 27001 efficiently, without cutting corners.

Who we’re looking for

We value passionate self‑starters with a growth mindset and a bias for action and personal accountability. If you love solving hard problems, thrive in ambiguity, and want to make a real impact, you’ll fit right in.

We’re especially drawn to:

  • Rebels with a cause — frustrated with the status quo and eager to disrupt it.
  • Opinionated (but not obstinate) builders — decisive yet collaborative, who help us move fast.
  • Clear communicators — who own their ideas and follow through.
The Role

The Internal Security Compliance Auditor plays a critical role in ensuring the quality and completeness of client evidence before they undergo formal external compliance audits. Working behind the scenes as part of our internal quality assurance team, you’ll partner with our Security Program Managers to review controls documentation, validate evidence quality, and perform final pre‑audit quality assurance checks across multiple compliance frameworks including SOC 2, ISO 27001, PCI, HIPAA, and GDPR.

Your expertise will strengthen our clients’ compliance posture and prepare them thoroughly for their audit processes, while maintaining the high standards that differentiate Oneleet in the marketplace. This position requires deep technical knowledge of compliance frameworks combined with meticulous attention to detail.

Key Responsibilities
  • Perform thorough internal reviews of client‑uploaded evidence for compliance frameworks including SOC 2, ISO 27001, PCI, HIPAA, and GDPR.
  • Conduct detailed quality assurance checks on individual controls to verify completeness, accuracy, and sufficiency prior to their audits with third‑party auditing firms.
  • Execute comprehensive final QA reviews prior to clients engaging with an external auditor.
  • Identify gaps or weaknesses in evidence documentation and recommend improvements.
  • Develop and maintain internal QA standards and review methodologies.
  • Create guidance documents to help clients improve evidence quality.
  • Collaborate with Security Program Engineers to address compliance gaps.
  • Stay current on evolving compliance requirements across multiple frameworks to ensure our pre‑audit preparation meets industry standards.
  • Track audit readiness metrics and identify opportunities for process improvement.
  • Provide expert feedback to our product team for compliance platform enhancements to better support pre‑audit readiness.
Requirements
  • Deep understanding of SOC 2, ISO 27001, PCI, HIPAA, and GDPR requirements.
  • Strong technical knowledge of security controls and their implementation.
  • Experience reviewing and evaluating evidence for compliance audits, particularly in preparing organizations for external audit processes.
  • Excellent attention to detail and quality control mindset.
  • Strong written communication skills for documenting findings.
  • Ability to work independently while supporting multiple client engagements.
  • Familiarity with compliance automation platforms and tools.
  • Experience in pre‑audit preparation and internal quality assurance, preferably with multiple frameworks.
  • Certification in relevant frameworks (e.g., CISA, ISO 27001 Lead Auditor) preferred.
Perks & Benefits
  • Comprehensive health & wellness benefits.
  • 20 days PTO per year, plus 8 floating holidays.
  • Remote work culture.
  • Team off‑sites in stunning places (Amsterdam, Italy, etc.).
  • Competitive compensation & equity.
Compensation

We hire globally and compensate competitively within each market using geographic pay bands. The range for this role reflects a U.S. national baseline. Offers for candidates in higher cost‑of‑labor markets (e.g., San Francisco, New York, Zurich) may fall at or above the top of the posted range, while offers in other markets are benchmarked to local standards and are lower. Within any range, individual compensation is determined by work location, skills and experience demonstrated through the interview process, and relevant education or training. This posting reflects base salary only and does not include equity or benefits.

Remote‑First & Global Hiring

We’re a remote‑first company and hire globally in regions where we can legally engage talent directly or via our employer‑of‑record (EOR) partner. If you’re based outside the U.S., we’ll explore the most compliant hiring arrangement for your location. We make hiring decisions based on merit, skills, and potential regardless of location.

U.S. Hiring & E‑Verify

For U.S.‑based candidates, Oneleet participates in E‑Verify to confirm employment eligibility, in accordance with federal regulations. We are an equal opportunity employer. We do not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Program Manager
Security Program Manager

Oneleet • United States

Remote
USD 90,000 - 120,000
Comprehensive health & wellness benefits
Competitive compensation & equity
Generous PTO
+2
Product Marketing Manager, Engagement & Enablement
Product Marketing Manager, Engagement & Enablement

Oneleet • United States

Remote
USD 100,000 - 130,000
Comprehensive health & wellness benefits
Generous PTO, including floating holidays
Flexible, remote work culture
+1
Framework Engineer
Framework Engineer

Doist • Northern (KY)

Hybrid
USD 120,000 - 180,000
Health benefits and wellness
25 days PTO and floating holidays
Remote-first culture
+2
Community Event & Engagement Manager
Community Event & Engagement Manager

Oneleet • Northern (KY)

Hybrid
USD 100,000 - 160,000
Health benefits
20 days PTO + 8 floating holidays
Remote work culture
+2
Senior Product Designer
Senior Product Designer

Oneleet • United States

Remote
USD 90,000 - 130,000
Comprehensive health & wellness benefits
Competitive compensation & equity
Generous PTO and floating holidays
+2
Community Event & Engagement Manager
Community Event & Engagement Manager

Oneleet • United States

Remote
USD 100,000 - 150,000
Health benefits
20 days PTO
Remote work culture
+1
Senior Security Assurance Lead - Global Compliance & Audit
Senior Security Assurance Lead - Global Compliance & Audit

United States Digital Space LLC • New York (NY)

On-site
USD 120,000 - 190,000
Medical, dental, and vision insurance
Mental health benefits
401(k) plan with company match
+2
Senior Security Assurance Analyst
Senior Security Assurance Analyst

United States Digital Space LLC • New York (NY)

On-site
USD 120,000 - 190,000
Medical, dental, and vision insurance
Mental health benefits
401(k) plan with company match
+2
Security Compliance Framework Engineer (Remote)
Security Compliance Framework Engineer (Remote)

Oneleet • Beaverton (OR)

On-site
USD 100,000 - 150,000
Health benefits
PTO 20 days
Remote culture
+2
Staff Security Engineer (Compliance) - Moveworks
Staff Security Engineer (Compliance) - Moveworks

ServiceNow • Mountain View (CA)

Hybrid
USD 180,000 - 240,000