66 information security auditor jobs at 55 companies in United States

1mo
Save
Mark Applied
Hide
Information Security Auditor
Rosemont, Illinois, United States
$65k-$80k/yr HybridFull Time
Wintrust Financial Corporation
Wintrust Financial CorporationNASDAQ: WTFC: Provides community banking, commercial finance, and wealth management services.
1+ YOEBachelor's in Accounting/Information Systems/IT/Cybersecurity, 1+ years audit experience (1–4 yrs), knowledge of audit processes and work paper documentation, proficiency with Microsoft Office, TeamMate+; CFE/CPA/CISA preferred.
Microsoft Office Suite, TeamMate+
1mo
Save
Mark Applied
Hide
Information Security Auditor
Dayton, Ohio, United States
HybridFull Time
Reynolds and Reynolds
Reynolds and Reynolds: Provides software and services for automotive retailers.
Basic computer and enterprise IT tool knowledge, strong written/verbal communication, critical thinking, attention to detail, and familiarity with security frameworks and regulations (NIST, ISO, PCI-DSS, GLBA, GDPR, CCPA).
NIST Cybersecurity Framework, ISO, PCI-DSS, GLBA, GDPR, CCPA
1mo
Save
Mark Applied
Hide
Information Systems Auditor
Nashville, Tennessee, United States
OnsiteFull Time
Tennessee Comptroller of the Treasury
Tennessee Comptroller of the Treasury: Provides financial oversight and auditing for Tennessee state government.
0+ YOEBachelor's degree in accounting, CIS, CS, information security, or data analytics; strong attention to detail, critical thinking, communication; team collaboration.
1w
Save
Mark Applied
Hide
Information Systems Auditor
Ventura County, California, United States
$109k-$153k/yr OnsiteFull Time
Ventura County
Ventura County: Provides essential public services and regional governance to residents.
4+ YOEExperience auditing information systems, security, and controls; bachelor's or equivalent experience path; certifications such as CISA/CPA/CIA/CISSP desirable; strong report writing and project management skills.
ITIL, COBIT, ISO
1mo
Save
Mark Applied
Hide
SENIOR INFORMATION SECURITY ANALYST
Phoenix, Arizona, United States
$75k/yr HybridFull Time
State of Arizona
State of Arizona: Provides public administration and social services for Arizona residents.
3+ YOE3+ years information security analysis experience, familiarity with vulnerability management tools, ability to clear background/fingerprint checks, CIS Auditor preferred, degree in IT or related field preferred.
Tenable, Nessus, Veracode, Rapid7, Qualys, Microsoft Outlook, Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Gmail, Google Sheets, Google Docs, Google Drive
4w
Save
Mark Applied
Hide
Chief Information Security Officer
United States or Michigan
$250k-$275k/yr RemoteFull Time
J.D. Power
J.D. Power: Provides consumer intelligence and data analytics through benchmarking studies.
10+ YOE5+ Mgmt10+ years in information security with 5+ years senior leadership; incident response/crisis management experience; enterprise security, cloud, IAM, DevSecOps, and risk/compliance expertise; relevant certs (CISSP, CISM, CISA, ISO 27001 Lead Auditor).
AWS, Azure, GCP, ISO 27001, SOC2, TISAX, NIST, PCI, OWASP, ISMS, CSIRT, CSOC, SecOps, DevSecOps, IAM
1mo
Save
Mark Applied
Hide
IT Security Auditor – Senior Consultant
Chantilly, Virginia, United States
OnsiteFull Time
Guidehouse
Guidehouse: Provides management and technology consulting services to diverse organizations.
3+ YOESenior IT Security Auditor with 3+ years IT consulting, federal government experience, and knowledge of FISMA/NIST guidance.
FISMA, NIST SP 800, FISCAM, OMB Circular A-123, DISA STIGs, security auditing tools
1mo
Save
Mark Applied
Hide
Security Auditor
Fort Gordon, Georgia, United States
OnsiteFull Time
Summit Federal Services
Summit Federal Services: Provides professional management and technical services to federal agencies.
2+ YOEBachelor's degree with 2+ years related technical experience (substitutable by training/certs), baseline cert on day one (CISA preferred or GSNA or CEH or CSA+), Microsoft OS and networking knowledge, and Top-Secret/SCI clearance within 6 months.
Microsoft operating systems
2mo
Save
Mark Applied
Hide
Contract Information Security GRC Analyst
Kennett Square or Denver or Charlotte
OnsiteFull Time
Chatham Financial
Chatham Financial: Independent finance firm focused on capital markets and risk management.
3+ YOE3-5+ years IT audit/risk experience; bachelor’s in Information Security/CS/Risk; SOC 2 experience; knowledge of NIST/ISO; CRISC, CDPSE, CISA, CISSP, ISO 27001 lead auditor/implementer preferred; strong analytical/written skills.
NIST SP 800-30, ISO 27005, NIST CSF, NIST 800-53, ISO 27001, CIS, SOC 2 Trust Services Criteria, Cloud Control Matrix (CCM), Risk Management tools
1w
Save
Mark Applied
Hide
Information Security Project Manager
United Kingdom or Estonia or United States or London or Chichester
HybridFull Time
Linnworks
Linnworks: Provides cloud-based inventory and order management software for retailers.
3+ YOE3+ years in information security/compliance or IT audit within SaaS; hands-on ISO 27001 experience; strong project management, stakeholder communication, and ability to engage customers and auditors.
ISO 27001, SSO
1mo
Save
Mark Applied
Hide
Cyber Security Auditor
Albuquerque, New Mexico, United States
OnsiteFull Time
Stellar Science
Stellar Science: Scientific software for advanced physics-based modeling and simulation.
3+ YOE3+ years in IT auditing or security engineering; Bachelor’s degree in Cybersecurity or IT or related field; experience with cybersecurity tools, compliance frameworks, and risk analysis; certifications CISA, CISSP, CISM, DoD 8140/8570 IAT/M Level III; U.S. citizen willing to undergo background investigation and work at government or customer sites.
Wazuh, Elastic Stack, Splunk, Graylog, Linux, Windows, AWS, Azure
2w
Save
Mark Applied
Hide
Platform Security Engineering, Auditor
San Francisco or New York City or Seattle
$320k-$405k/yr HybridFull Time
Anthropic
Anthropic: Developing safe and reliable artificial intelligence systems.
Hands-on vulnerability auditing expertise in low-level systems security, secure/measured boot and attestation, cryptography, firmware/UEFI/BIOS, C/Assembly, threat modeling, and cross-functional collaboration.
TPM, Intel TXT, AMD SEV, ARM TrustZone, UEFI, BIOS, Rust, Go, LLMs
2d
Save
Mark Applied
Hide
Americas Regional Chief Information Security Officer (CISO)
New York City or San Jose
$250k-$376k/yr HybridFull Time
OKX
OKX: Global cryptocurrency exchange and Web3 digital wallet developer.
Security leader with strong GRC and risk experience, technical depth for architecture reviews, regulator engagement capability, and proven communication skills to work with executives and auditors.
1w
Save
Mark Applied
Hide
Auditor (Information Systems) - Technology Operations Directorate
Arlington, Virginia, United States
$102k-$158k/yr OnsiteFull Time
USPS Office of Inspector General
USPS Office of Inspector General: Conducts independent audits and investigations of the Postal Service.
2+ YOE2-4 years audit or IT security experience, degree in auditing/related field or equivalent experience, technical auditing knowledge, and relevant certifications (CISA/CISSP/CISM) preferred.
R, ACL
3mo
Save
Mark Applied
Hide
Internal Security Compliance Auditor
Beaverton, Oregon, United States
RemoteFull Time
Oneleet
Oneleet: Provides an all-in-one cybersecurity and compliance automation platform.
Deep understanding of SOC2, ISO27001, PCI, HIPAA, and GDPR; strong QA, documentation, and independent working; familiarity with compliance automation; certification preferred.
2mo
Save
Mark Applied
Hide
Cybersecurity Compliance Auditor / Security Control Assessor (SCA)
Laurel, Maryland, United States
$100k-$245k/yr OnsiteFull Time
Johns Hopkins University Applied Physics Laboratory
Johns Hopkins University Applied Physics Laboratory: Conducts research and engineering for national security and space.
5+ YOEBachelor’s degree in Information Systems, Computer Science, Cybersecurity, or related field; 5+ years cybersecurity with RMF/C&A/A&A; experience in security control assessments; expertise in multiple security domains; relevant certifications; knowledge of RMF/JSIG/NIST/NISPOM/DAAG/DAAPM; strong communication; active Secret clearance with ability to...
eMASS, ServiceNow, XACTA, RMF, JSIG, NIST SP 800-53, CNSSI 1253, DCSA, evidence/documentation tools
1mo
Save
Mark Applied
Hide
ISO 27001 Lead Auditor
Houston, Texas, United States
OnsiteFull Time
Kerndell
Kerndell: Quality management and technical inspection services for the energy industry.
5+ YOEActive ISO 27001 Lead Auditor certification, bachelor's degree in a technical discipline (or equivalent experience), 5+ years in information security and 3+ years direct ISO 27001 audit/lead experience; strong report writing and stakeholder communication.
ISO 27001:2022, ISO 19011, NIST CSF, SOC 2, CIS Controls, NIS2, NERC CIP, IEC 62443
4w
Save
Mark Applied
Hide
Senior IT Auditor
Sleepy Hollow, New York, United States
$94k-$153k/yr OnsiteFull Time
Regeneron
RegeneronNasdaq: REGN: Discovers and manufactures medicines for serious diseases.
3+ YOEBachelor's degree and 3-4+ years progressive IT audit, information security, or technology risk experience; knowledge of IT infrastructure, cloud (AWS/Azure), cybersecurity, SOX/NIST/GDPR/GxP; CISA/CISM/CISSP preferred; data analytics (Dataiku/Alteryx).
AWS, Azure, Dataiku, Alteryx, SOX, COSO, COBIT, NIST, GDPR, GxP
3mo
Save
Mark Applied
Hide
Cyber Auditor
Fairfax, Virginia, United States
OnsiteFull Time
RealmOne
RealmOne: Provides advanced technology services for national security agencies.
7+ YOEExperience with vulnerability scanners, SIEM, IDS/IPS, Linux; 7 years total experience; active security clearance with polygraph; certifications Security+, CEH, GCIA, CISSP or equivalent.
Vulnerability Scanners, SIEM, IDS/IPS, HIDS, Linux, Network Mapping
1mo
Save
Mark Applied
Hide
AWS Security Architect, GovCloud / IL5
Washington or Oxnard
$200k-$290k/yr OnsiteFull Time
Swarm Aero
Swarm Aero: Security-focused IT and defense technology.
Lead information security architecture, AWS security, and compliance across regulated deployments; implement controls, documentation, and remediation; coordinate with auditors and stakeholders.
AWS, IAM, VPC, NIST 800-171, CMMC, POA&M, Governance, SSP, ISO 27001