Vendor Cybersecurity Auditor #2945

Genius Road, LLC

Austin (TX)

On-site

USD 85,000 - 115,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Opportunities for professional growth
Collaborative work environment
High visibility within the team

Job summary

A leading cybersecurity firm in Austin is seeking a Vendor Cybersecurity Auditor to ensure third-party vendor security compliance. This role involves auditing cybersecurity controls, analyzing documentation, and presenting findings. Ideal candidates will have over 5 years of experience in technical IT auditing and a relevant certification. The position promises professional growth in a supportive environment.

Qualifications

  • 5+ years of experience auditing cybersecurity controls against NIST, ISO 27001, SOC 2, or PCI-DSS frameworks.
  • Strong experience creating audit documentation and presenting findings to executives.
  • Experience auditing vendors in a government or regulated industry.

Responsibilities

  • Review vendor contracts for compliance with contractual obligations.
  • Evaluate vendor security controls against industry standards.
  • Draft clear audit reports summarizing findings and risks.
  • Collaborate with internal teams to manage vendor risks.

Skills

Auditing cybersecurity controls
Technical IT auditing
Creating audit documentation
Investigative and analytical skills
Vendor cybersecurity risk assessments
Reviewing security policies
Auditing cloud-hosted environments
Interpreting contracts
Auditing in government industry
Presenting findings to executives

Education

Relevant certification: CISA, CISSP, CRISC, ISO 27001 Lead Auditor

Job description

Vendor Cybersecurity Auditor

Location: Austin, Texas (onsite and telework – must live locally)

Project Length: 3-6+ months

About the Role

We are seeking a Vendor Cybersecurity Auditor to assess and ensure the security and compliance of our third-party vendors. In this role, you will evaluate cybersecurity controls, identify gaps, and ensure vendors meet their contractual obligations related to IT and security standards.

This is a critical position that plays a key role in protecting organizational data and managing third-party risk — ideal for someone who thrives in detail-driven environments, values evidence-based analysis, and is confident in interfacing with both technical and legal stakeholders.

Minimum Qualifications
  • 5+ years of experience auditing cybersecurity controls against NIST, ISO 27001, SOC 2, or PCI-DSS frameworks.
  • 5+ years of technical IT auditing experience, including assessment of network security, identity access management, endpoint protection, and incident response.
  • Strong experience creating audit documentation and presenting findings to executives, legal, and technical teams.
  • Demonstrated investigative and analytical skills in identifying risk and security gaps.
  • 4+ years of experience in third-party/vendor cybersecurity risk assessments and audits.
  • 3+ years reviewing security policies and documentation for completeness and accuracy.
  • Experience auditing cloud-hosted environments (AWS, Azure, or GCP) and understanding of shared responsibility models.
  • Familiarity with vendor incident response plans and breach assessments.
  • Ability to interpret contracts and ensure alignment with SLAs and cybersecurity requirements.
  • Experience auditing vendors in a government or regulated industry (e.g., courts, justice systems).
  • Proven ability to present complex findings to executive or legal audiences.
  • At least one relevant certification: CISA, CISSP, CRISC, or ISO 27001 Lead Auditor.
Key Responsibilities
  • Review vendor contracts, SLAs, and cybersecurity-related requirements for compliance with contractual obligations.
  • Evaluate vendor security controls against contractual terms and recognized industry standards (e.g., NIST, ISO 27001, SOC 2, PCI-DSS).
  • Analyze documentation and technical evidence including system configurations, access logs, and security policies.
  • Conduct interviews with vendor personnel to assess their security practices and governance maturity.
  • Perform sampling and control testing of administrative and technical safeguards.
  • Identify control deficiencies and assess associated risks to the organization.
  • Draft clear, professional audit reports summarizing findings, risks, and recommended remediations.
  • Track remediation efforts and validate closure of findings.
  • Collaborate with internal teams to ensure vendor risks are appropriately managed and escalated.
Why Join
  • Contribute to an organization committed to data protection and vendor governance.
  • Work in a supportive and collaborative environment with high visibility.
  • Be part of a forward-looking cybersecurity team that values transparency and accountability.
  • Opportunities for professional growth and continued learning.

Genius Road, LLC is proud to be a Certified Women’s Business Enterprise, an Equal Opportunity Employer and values diversity. All employment is decided on the basis of qualifications, merit and business need.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Supply Chain Analyst (Vendor & Supply Chain Risk)
Supply Chain Analyst (Vendor & Supply Chain Risk)

Crux Security • Austin (TX)

Hybrid
USD 90,000 - 130,000
Vendor Risk Management
Vendor Risk Management

Synergis • Atlanta (GA)

Hybrid
Fractional Supply Chain Analyst
Fractional Supply Chain Analyst

Gofractional • Austin (TX)

Hybrid
USD 90,000 - 130,000
Hybrid IT Auditor: Vendor Security & Compliance (Austin)
Hybrid IT Auditor: Vendor Security & Compliance (Austin)

Vibotek LLC • Austin (TX)

Hybrid
USD 90,000 - 130,000
Senior Cybersecurity Analyst #3344
Senior Cybersecurity Analyst #3344

Genius Road, LLC • Austin (TX)

Hybrid
USD 150,000 - 190,000
Certified Women’s Business Enterprise
Equal Opportunity Employer
Security Third Party Risk Management Lead
Security Third Party Risk Management Lead

Cloudflare • Austin (TX)

On-site
USD 150,000 - 190,000
Security Third Party Risk Management Lead
Security Third Party Risk Management Lead

Webhosting • Austin (TX)

On-site
USD 140,000 - 210,000
Vendor Risk Manager
Vendor Risk Manager

Aquent • Westlake (TX)

On-site
USD 120,000 - 180,000
Health insurance
Vision insurance
Dental insurance
+2
Director, Security Risk Management
Director, Security Risk Management

CardWorks Servicing LLC • United States

Hybrid
USD 151,000 - 168,000
Medical, Dental, and Vision coverage
401(k) Plan with Company Match
Paid vacation and sick days
Vendor Security Management
Vendor Security Management

Business Intelli • California (MO)

On-site
USD 165,000 - 248,000