Senior Information Systems Auditor

2 weeks, 2 days ago
Full-time
Senior
Cybersecurity
Picus Security

Picus Security

Picus Security offers a comprehensive security validation platform that continuously tests and optimizes security controls through automated attack simulations, enabling organizations to proactively identify vulnerabilities and enhance their overall cy...

Professional Services
51-250
Founded 2013
$32M raised

Description

  • Lead and oversee global compliance programs for standards including ISO/IEC 27001, 22301, 27701, 20000-1, SOC 2, NIST CSF, and CSA STAR.
  • Plan and execute risk-based IT and internal audits focused on secure SDLC, software engineering processes, cloud infrastructure, and AI security.
  • Evaluate and improve the effectiveness of security and governance controls through policy and process enhancements.
  • Contribute security and compliance input to RFPs and security questionnaires.
  • Manage audit findings and security vulnerability findings end-to-end through sustainable remediation.
  • Support Third-Party Risk Management by participating in SaaS security assessments and vendor due diligence.
  • Define, track, and report audit and compliance metrics to leadership and stakeholders.
  • Assess the risk and privacy impact of emerging technologies such as AI, ML, and automation, and guide secure adoption practices.

Requirements

  • 3+ years of hands-on experience in audit, compliance, risk management, or information security, preferably in a SaaS, cloud-native, or technology-driven environment.
  • Hands-on experience with ISO/IEC standards 27001, 27701, 22301, and 20000-1, as well as SOC 2.
  • Experience with preparation, audit coordination, and evidence management for compliance programs.
  • Experience advising cross-functional stakeholders and influencing control improvements in dynamic technology environments.
  • Practical knowledge of international security and privacy regulations such as GDPR and CCPA.
  • Experience supporting or managing Third-Party Risk Management, vendor due diligence, and customer-facing compliance processes.
  • Ability to manage multiple audits and compliance initiatives simultaneously in a fast-paced environment.
  • Strong verbal and written English communication skills, including documentation and policy writing.
  • Preferred certifications include ISO 27001, 22301, 27701, and 20000-1 Lead Auditor certifications.
  • Preferred ISACA certifications such as CISA, CISM, or CRISC, with ITIL certification as a nice-to-have.

Benefits

  • Remote work as part of a global team across Türkiye.
  • Opportunity to work on a fast-growing cybersecurity segment with significant ownership.
  • Ongoing career development opportunities due to the company’s growth.
  • Global exposure through interaction with customers around the world.
  • Equal opportunity employment with consideration regardless of protected characteristics.
  • Reference and identity checks conducted in line with local labor laws and company policy.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Compliance Lead, Fair Lending

Affirm 1K-5K Diversified Financial Services

Affirm is hiring a remote Compliance Lead to support its Fair Lending Program and help ensure products, models, and decisions comply with regulatory requirements across the credit lifecycle.

Machine Learning
13 minutes ago

Compliance Lead, Product Advisory

Affirm 1K-5K Diversified Financial Services

Affirm is hiring a Compliance Lead for its Direct-to-Consumer Product Compliance team to advise on financial products, partner with cross-functional teams, and help manage regulatory risk as the company scales.

2 hours, 47 minutes ago

VP, Global Privacy - Data Protection Officer

Saviynt 251-1K Internet Software & Services

Saviynt is seeking a remote UK Vice President, Global Privacy to lead its data protection officer function and oversee a global privacy program spanning AI, cloud, and SaaS operations.

4 hours, 6 minutes ago

Payroll Risk & Compliance Expert - UK&I

Remote 251-1K Professional Services

Remote is hiring a GP Compliance Expert to own regional payroll compliance and embed local legislation into its fully remote global payroll platform.

5 hours, 37 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers