Senior Consultant, SOC 2 Assessment

2 weeks, 3 days ago
Full-time
Senior
Operations
Coalfire

Coalfire

Coalfire is a cybersecurity advisor that helps organizations avert threats, reduce risk, and turn security into a competitive advantage, fueling their success.

Internet Software & Services
251-1K
Founded 2001
$9M raised

Description

  • Lead audits and assessments, with primary focus on SOC 2 and additional SOC 1 and C5 engagements.
  • Prepare audit plans, review documentation and evidence, evaluate procedures, and conduct client interviews.
  • Review, prepare, and approve assessment reports and client-ready deliverables.
  • Manage project priorities, tasks, and hours with project managers and delivery team members to meet deadlines and utilization targets.
  • Escalate client and project issues promptly to management and coordinate needed resources.
  • Mentor Associates and Consultants in audit, assessment, technical review, and writing.
  • Interface with clients throughout engagements and build collaborative relationships with stakeholders.
  • Draft audit programs and lead walkthroughs to determine conformity with applicable requirements.
  • Assess security vulnerabilities and corroborate findings through inquiry, evidence review, and interview notes.
  • Develop recommendations and documentation to improve client security posture and internal engagement methodology.

Requirements

  • Bachelor’s degree or equivalent combination of education and work experience, preferably in Information Systems, CIS, MIS, or IT.
  • 3-5 years of experience with security frameworks and regulatory requirements such as SOC 2, C5, SSPA, ISO, NIST, COBIT, HIPAA/HITECH, HITRUST, or PCI.
  • Ability to evaluate the design and effectiveness of technology controls throughout the business cycle.
  • Demonstrated ability to structure and lead projects successfully.
  • Strong written and verbal communication skills.
  • Ability to build trust, rapport, and credibility quickly with clients and internal stakeholders.
  • Strong personal initiative and time management skills to meet deadlines and manage others’ time effectively.
  • Ability to facilitate meetings, present to groups, and demonstrate executive presence.
  • Inquisitive, diplomatic, and broad-minded approach with strong technical research skills.
  • Preferred experience working with cloud-hosted technologies such as AWS, Microsoft Azure, or Google Cloud Platform.
  • Preferred certifications such as CCSK, Security+, CISSP, CISM, Certified ISO 27001 Lead Implementer, CISA, GSNA, Certified ISO 27001 Lead Auditor/Internal Auditor, IRCA ISMS Auditor, or CIA.
  • Up to 20% travel required.

Benefits

  • Competitive salary of $86,000 to $148,000 per year.
  • Eligibility for annual incentive, commission, and/or recognition programs.
  • Flexible work model with the ability to work from home or an office.
  • Paid parental leave.
  • Flexible time off.
  • Certification and training reimbursement.
  • Digital mental health and wellbeing support membership.
  • Comprehensive insurance options.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior SAP IS-U Customizing Consultant - EDM & Device Management

Infosys 100K+ Internet Software & Services

Infosys Consulting is hiring an SAP IS-U consultant to design and configure utilities processes for a greenfield SAP Cloud for Utilities environment, supporting EDM, Device Management, and smart metering for client transformations.

SAP ABAP
15 hours, 8 minutes ago

Consultant/Senior Consultant - Energy Trading & Risk Management (ETRM)

Infosys 100K+ Internet Software & Services

Infosys Consulting is hiring a Consultant or Senior Consultant for its Energy Practice to support power trading and dispatch projects within its Energy Trading & Risk Management team.

15 hours, 8 minutes ago

SVP, Consulting

Pine Services Group Internet Software & Services

Pine’s portfolio company is hiring a Senior Vice President of Consulting to lead its delivery practice, oversee strategic client relationships, and shape the future of its technology consulting services.

ERP NetSuite Oracle SAP
15 hours, 22 minutes ago

Real Estate Due Diligence Consultant - Property Condition Assessments (PCA)

Rimkus 1K-5K Construction & Engineering

Rimkus is hiring a Property Condition Assessment Consultant to conduct site inspections, analyze building conditions, and prepare due diligence reports that inform capital planning and investment decisions for clients.

Asana
1 day, 15 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers