Ampcus Inc ยท 3 months ago
IT Auditor 2
Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. They are seeking an IT Auditor 2 to review vendor contracts and evaluate cybersecurity controls, ensuring compliance with industry standards. The role involves conducting audits, preparing reports, and coordinating with stakeholders to manage vendor risks.
Data ManagementInformation Technology
Responsibilities
Review vendor contracts, SLAs, and other IT and cybersecurity contractual requirements to confirm compliance with contractual obligations
Evaluate the design and implementation of vendor cybersecurity controls against contractual and industry standards
Collect and analyze evidence such as security policies, system configurations, logs, and access records
Conduct interviews with vendor personnel to assess security practices and governance
Perform control testing and sampling to verify the effectiveness of technical and administrative safeguards
Identify gaps, deficiencies, or non-compliance in vendor controls and assess associated risks
Prepare audit reports summarizing findings, risks, and recommended corrective actions
Track remediation efforts and validate closure of audit findings
Coordinate with internal stakeholders to ensure vendor risks are communicated and addressed
Qualification
Required
Proven experience auditing controls against NIST, ISO 27001, PCI-DSS, or SOC 2 standards, with working knowledge of current data protection laws, regulatory compliance, and third-party risk management practices
Strong ability to evaluate security controls such as network protection, identity access management, endpoint security, and incident response across modern IT environments
Experienced in drafting audit reports, presenting findings to executive and legal stakeholders, and engaging vendors constructively
Demonstrated ability to identify security gaps, assess risk impact, and make sound, evidence-based recommendations
Hands-on experience conducting cybersecurity audits of external vendors, including due diligence, contract compliance, and risk assessments
Skilled at reviewing and validating security documentation, procedures, and control implementation for accuracy and completeness
Preferred
Experience auditing vendor environments hosted in AWS, Azure, or Google Cloud, including cloud-native controls and shared responsibility models
Familiarity with analyzing vendor incident response plans, reviewing past breaches, and evaluating remediation practices
Ability to interpret legal and technical language in vendor contracts to ensure proper implementation of SLAs, IT, and cybersecurity obligations
Background in auditing technology vendors serving courts
Experience summarizing technical findings for non-technical audiences, including C-suite executives or legal counsel
At least one relevant certification (CISA, CISSP, CRISC, or ISO 27001 Lead Auditor)
Company
Ampcus Inc
Ampcus is a global business, technology consulting and an staff augmentation firm specializing in AI/ML,digital solutions, Cybersecurity & Risk management, Testing, Forensics & Fraud services and human capital management.
H1B Sponsorship
Ampcus Inc has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (14)
2024 (13)
2023 (7)
2022 (16)
2021 (13)
2020 (18)
Funding
Current Stage
Late StageRecent News
2025-08-18
2025-07-31
Seattle TechFlash
2025-07-15
Company data provided by crunchbase