Information Security Consultant - System and Organization Controls (SOC 1 / SOC 2) Compliance jobs in United States
cer-icon
Apply on Employer Site
company-logo

Tevora · 4 months ago

Information Security Consultant - System and Organization Controls (SOC 1 / SOC 2) Compliance

Tevora is a tight-knit community of professionals with a shared passion for cybersecurity and compliance. They are seeking an Information Security Consultant to assess SOC compliance for various clients and provide mentorship to junior team members while participating in compliance assessments and developing necessary documentation.

Management Consulting
check
Growth Opportunities
badNo H1Bnote

Responsibilities

Participating in and leading IT and Compliance assessments, audits, gap analyses, and remediation
Leading and actively contributing to projects in the areas of System and Organization Controls (SOC 1 & SOC 2) Compliance assessments
Communicating with project stakeholders to effectively convey the requirements of technical and process improvements
Supporting various information security compliance projects, such as PCI or ISO gap assessments
Assisting in the development of customized policies, procedures, controls, disaster recovery plans and other documentation for applications, systems, and infrastructure for our clients
Managing policy exceptions, including working directly with the teams to document exceptions, and identifying compensating controls and remediation action plans
Take on additional responsibilities as needed or as new opportunities arise. Proactively support the team with tasks and projects that emerge over time

Qualification

SOC 1 ComplianceSOC 2 ComplianceInformation SecurityCISSP CertificationCISA CertificationCISM CertificationCRISC CertificationISO Lead AuditorISO 27001 CompliancePCI ComplianceExecutive-Level ReportsMS Office ProficiencyTechnical DocumentationCommunication SkillsProblem Solving

Required

Completed minimum 2 years of experience in information security, information technology, business consulting, enterprise risk, or compliance field
Hold at least one Auditing, Risk, or IT certification from the following list: CISSP, CISA, CISM, CRISC, ISO Lead Auditor, or Military equivalent
Possess knowledge of common IT and security concepts such as firewall management, server management, access control, and authentication
Ability to connect easily with clients and colleagues to communicate effectively across business and technical boundaries- to offer recommendations as an expert with best practices
Ability to work independently without detailed guidance
Proficient in writing executive-level reports and technical documentation
Proficient in MS Office tools and basic professional acumen

Preferred

Hold a bachelor's degree from an accredited 4-year university
Demonstrated experience in at least one other information security compliance assessment (ISO 27001, PCI Level 1, HITRUST) or Military equivalent
Prior or current CPA license
Commitment to continued learning

Benefits

Comprehensive benefits including: Medical, Dental, Vision & Basic Life Insurance
Paid Vacations, Sick Time, & Holidays
401 (k) with discretionary company match
Vibrant work culture

Company

Tevora

twittertwittertwitter
company-logo
Tevora is a specialized management consultancy focused on cyber security, risk and compliance services.

Funding

Current Stage
Growth Stage

Leadership Team

leader-logo
Ray Zadjmool
Chief Executive Officer
linkedin
Company data provided by crunchbase