66 information security auditor jobs at 55 companies in United States
1mo
Save
Mark Applied
Hide
1mo
Information Security Auditor
Rosemont, Illinois, United States
$65k-$80k/yrHybridFull Time
Wintrust Financial CorporationNASDAQ: WTFC: Provides community banking, commercial finance, and wealth management services.
1+ YOEBachelor's in Accounting/Information Systems/IT/Cybersecurity, 1+ years audit experience (1–4 yrs), knowledge of audit processes and work paper documentation, proficiency with Microsoft Office, TeamMate+; CFE/CPA/CISA preferred.
Reynolds and Reynolds: Provides software and services for automotive retailers.
Basic computer and enterprise IT tool knowledge, strong written/verbal communication, critical thinking, attention to detail, and familiarity with security frameworks and regulations (NIST, ISO, PCI-DSS, GLBA, GDPR, CCPA).
Tennessee Comptroller of the Treasury: Provides financial oversight and auditing for Tennessee state government.
0+ YOEBachelor's degree in accounting, CIS, CS, information security, or data analytics; strong attention to detail, critical thinking, communication; team collaboration.
Ventura County: Provides essential public services and regional governance to residents.
4+ YOEExperience auditing information systems, security, and controls; bachelor's or equivalent experience path; certifications such as CISA/CPA/CIA/CISSP desirable; strong report writing and project management skills.
State of Arizona: Provides public administration and social services for Arizona residents.
3+ YOE3+ years information security analysis experience, familiarity with vulnerability management tools, ability to clear background/fingerprint checks, CIS Auditor preferred, degree in IT or related field preferred.
Tenable, Nessus, Veracode, Rapid7, Qualys, Microsoft Outlook, Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Gmail, Google Sheets, Google Docs, Google Drive
J.D. Power: Provides consumer intelligence and data analytics through benchmarking studies.
10+ YOE5+ Mgmt10+ years in information security with 5+ years senior leadership; incident response/crisis management experience; enterprise security, cloud, IAM, DevSecOps, and risk/compliance expertise; relevant certs (CISSP, CISM, CISA, ISO 27001 Lead Auditor).
AWS, Azure, GCP, ISO 27001, SOC2, TISAX, NIST, PCI, OWASP, ISMS, CSIRT, CSOC, SecOps, DevSecOps, IAM
Summit Federal Services: Provides professional management and technical services to federal agencies.
2+ YOEBachelor's degree with 2+ years related technical experience (substitutable by training/certs), baseline cert on day one (CISA preferred or GSNA or CEH or CSA+), Microsoft OS and networking knowledge, and Top-Secret/SCI clearance within 6 months.
Chatham Financial: Independent finance firm focused on capital markets and risk management.
3+ YOE3-5+ years IT audit/risk experience; bachelor’s in Information Security/CS/Risk; SOC 2 experience; knowledge of NIST/ISO; CRISC, CDPSE, CISA, CISSP, ISO 27001 lead auditor/implementer preferred; strong analytical/written skills.
NIST SP 800-30, ISO 27005, NIST CSF, NIST 800-53, ISO 27001, CIS, SOC 2 Trust Services Criteria, Cloud Control Matrix (CCM), Risk Management tools
United Kingdom or Estonia or United States or London or Chichester
HybridFull Time
Linnworks: Provides cloud-based inventory and order management software for retailers.
3+ YOE3+ years in information security/compliance or IT audit within SaaS; hands-on ISO 27001 experience; strong project management, stakeholder communication, and ability to engage customers and auditors.
Stellar Science: Scientific software for advanced physics-based modeling and simulation.
3+ YOE3+ years in IT auditing or security engineering; Bachelor’s degree in Cybersecurity or IT or related field; experience with cybersecurity tools, compliance frameworks, and risk analysis; certifications CISA, CISSP, CISM, DoD 8140/8570 IAT/M Level III; U.S. citizen willing to undergo background investigation and work at government or customer sites.
Anthropic: Developing safe and reliable artificial intelligence systems.
Hands-on vulnerability auditing expertise in low-level systems security, secure/measured boot and attestation, cryptography, firmware/UEFI/BIOS, C/Assembly, threat modeling, and cross-functional collaboration.
Americas Regional Chief Information Security Officer (CISO)
New York City or San Jose
$250k-$376k/yrHybridFull Time
OKX: Global cryptocurrency exchange and Web3 digital wallet developer.
Security leader with strong GRC and risk experience, technical depth for architecture reviews, regulator engagement capability, and proven communication skills to work with executives and auditors.
USPS Office of Inspector General: Conducts independent audits and investigations of the Postal Service.
2+ YOE2-4 years audit or IT security experience, degree in auditing/related field or equivalent experience, technical auditing knowledge, and relevant certifications (CISA/CISSP/CISM) preferred.
Oneleet: Provides an all-in-one cybersecurity and compliance automation platform.
Deep understanding of SOC2, ISO27001, PCI, HIPAA, and GDPR; strong QA, documentation, and independent working; familiarity with compliance automation; certification preferred.
Cybersecurity Compliance Auditor / Security Control Assessor (SCA)
Laurel, Maryland, United States
$100k-$245k/yrOnsiteFull Time
Johns Hopkins University Applied Physics Laboratory: Conducts research and engineering for national security and space.
5+ YOEBachelor’s degree in Information Systems, Computer Science, Cybersecurity, or related field; 5+ years cybersecurity with RMF/C&A/A&A; experience in security control assessments; expertise in multiple security domains; relevant certifications; knowledge of RMF/JSIG/NIST/NISPOM/DAAG/DAAPM; strong communication; active Secret clearance with ability to...
Kerndell: Quality management and technical inspection services for the energy industry.
5+ YOEActive ISO 27001 Lead Auditor certification, bachelor's degree in a technical discipline (or equivalent experience), 5+ years in information security and 3+ years direct ISO 27001 audit/lead experience; strong report writing and stakeholder communication.
ISO 27001:2022, ISO 19011, NIST CSF, SOC 2, CIS Controls, NIS2, NERC CIP, IEC 62443
RegeneronNasdaq: REGN: Discovers and manufactures medicines for serious diseases.
3+ YOEBachelor's degree and 3-4+ years progressive IT audit, information security, or technology risk experience; knowledge of IT infrastructure, cloud (AWS/Azure), cybersecurity, SOX/NIST/GDPR/GxP; CISA/CISM/CISSP preferred; data analytics (Dataiku/Alteryx).
RealmOne: Provides advanced technology services for national security agencies.
7+ YOEExperience with vulnerability scanners, SIEM, IDS/IPS, Linux; 7 years total experience; active security clearance with polygraph; certifications Security+, CEH, GCIA, CISSP or equivalent.
Swarm Aero: Security-focused IT and defense technology.
Lead information security architecture, AWS security, and compliance across regulated deployments; implement controls, documentation, and remediation; coordinate with auditors and stakeholders.