IT Auditor II jobs in United States
cer-icon
Apply on Employer Site
company-logo

RESPEC · 3 months ago

IT Auditor II

RESPEC is an employee-owned company focused on tackling complex challenges in various sectors. They are seeking an experienced IT Auditor II to support the Office of Court Administration in evaluating vendor cybersecurity controls and ensuring compliance with regulatory standards.

Management Consulting

Responsibilities

Review vendor contracts, SLAs, and cybersecurity clauses for compliance and alignment with Texas state standards
Audit vendor environments and assess cybersecurity controls against NIST, ISO 27001, PCI-DSS, and SOC 2 frameworks
Collect and analyze technical evidence—such as configurations, access logs, and security policies—to validate control effectiveness
Conduct interviews with vendor personnel to evaluate governance and operational practices
Identify control gaps, assess risk exposure, and recommend corrective actions
Prepare concise, professional audit reports and risk summaries for executive stakeholders
Track and validate remediation activities and closure of audit findings
Collaborate with internal OCA staff and RESPEC project leadership to ensure vendor risks are communicated and addressed

Qualification

NIST auditingISO 27001 auditingPCI-DSS auditingSOC 2 auditingTechnical IT auditingVendor risk auditingAudit report draftingAnalytical skillsCloud cybersecurity auditingIncident response experienceContract interpretationGovernment industry backgroundCISA certificationCISSP certificationCRISC certificationISO 27001 Lead Auditor certificationCommunication skills

Required

5+ years auditing cybersecurity frameworks (NIST, ISO 27001, PCI-DSS, SOC 2)
5+ years technical IT auditing across network, IAM, endpoint, and incident response systems
5+ years drafting audit reports and presenting findings to executive, legal, or compliance audiences
5+ years analytical and investigative experience identifying and remediating IT control gaps
4+ years vendor or third-party risk auditing experience
3+ years reviewing policy and documentation accuracy and completeness

Preferred

Cloud cybersecurity auditing (AWS, Azure, Google Cloud)
Experience in incident response or breach assessment
Ability to interpret technical and legal contract language (SLAs, security clauses)
Background in government or regulated industries
Strong communication skills for executive-level presentations
Certifications: CISA, CISSP, CRISC, or ISO 27001 Lead Auditor

Company

RESPEC

twittertwittertwitter
company-logo
RESPEC is a geoscience, engineering, data, and integrated technology solutions for major industry sectors.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Todd Kenner
President / CEO
linkedin
leader-logo
Phil Welling
Chief Financial Officer
linkedin
Company data provided by crunchbase