Aprio PH - Senior IT Audit (SOC)
Clark, Pampanga
Aprio
Future-focused business advisory and accounting services for entrepreneurs, businesses, investors and families.
Work with a nationally ranked CPA and advisory firm that is passionate for what's next. Aprio has 30 U.S. office locations, one in the Philippines and more than 2,100 team members that speak 60+ languages across the globe. By bringing together proven expertise, deep understanding, and strategic foresight for fast-growing industries, Aprio ensures clients are prepared for wherever life or business may take them. Discover a top-rated culture, vast growth opportunities and your next big career move with Aprio.
Join Aprio's Information Assurance Services team and you will help clients maximize their opportunities. Aprio is a progressive, fast-growing firm looking for an IAS Associate to join their dynamic team.
Join Aprio's Information Assurance Services team and you will help clients maximize their opportunities. Aprio is a progressive, fast-growing firm looking for an IAS Associate to join their dynamic team.
Position Responsibilities:
- Aprio’s Information Assurance Services (IAS) practice supports the delivery of attestation and consulting services for multiple clients in data and tech-based industries such as credit reporting and analytics, payment card services, healthcare IT, and cloud services. The business model and methodologies are focused on risk management and adding value to clients in all services provided. Aprio’s IAS group utilizes sound business practices and technical expertise (rather than working off checklists) to enable clients to identify, mitigate, and monitor the most technical risks associated with their technology use.
- Client Services:
- Planning and leading client meetings, walk-through reviews of clients control procedures and processes; delivery and presentation of client deliverables
- Developing and leading the performance of, testing of clients’ security, privacy and other information risk management related controls
- Directing the execution of testing of clients’ internal controls, testing of clients’ internal controls and review of internal control testing executed by other team members
- Supporting clients in problem identification and resolution
- Performing assessments and testing against leading information security and privacy standards and frameworks, including ISO 27001, Trust Services Criteria, PCI DSS, NIST CSF, GDPR, HITRUST and others
- Leading and supporting preparation of client reporting deliverables; e.g., gap and risk assessments, SOC reporting, GDPR assessments, ISO 27001 certifications, etc.
- Practice Development:
- Collaborating with other team members to streamline internal processes and procedures to improve client service and efficiencies
- Sales and Marketing:
- Participate in meetings with new prospects and/or new service opportunities with existing clients
- Support preparation of sales proposals
- Team Building:
- Interviewing potential candidates
- Being a mentor and/or coach to other team members
- Support in the development and delivery of training
Qualifications:
- One or more industry relevant certifications or wiliness to obtain relevant certification(s) within two years of employment. Certifications can include: CISA, CRISC, CIPP, CISSP, CISM, QSA, ISO/IEC 27001, or PCI ISA.
- Undergraduate Degree (required): preferably in MIS/IS or related concentration
- Graduate Degree (preferred): preferably in MIS, IS or Accounting Information Systems
- Relevant work experience (2-4 years)
- Strong communication skills; verbal and written, with the ability to produce excellent written reports and audit documentation
- Commitment to continual learning and development
- Commitment to exceptional client service and creative problem-solving ability with a consultancy mindset
- Flexible, self-starter with the ability to interact with various levels of client and firm management
- Understanding of information technology risks and internal controls
- Ability to write test procedures and execute tests of controls
- Understanding of Service Organization Control, PCI, ISO, HITRUST and/or similar information technology control frameworks
- Ability to travel up to 40%
- Ability to manage personal schedule and to lead multiple projects, tasks and deadlines
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
1
0
0
Category:
Incident Response Jobs
Tags: Analytics Audits CIPP CISA CISM CISSP Cloud CRISC GDPR HITRUST ISO 27001 NIST PCI DSS Privacy Risk assessment Risk management SOC Travel
Perks/benefits: Career development Competitive pay Flex hours Flex vacation Wellness
Region:
North America
Country:
United States
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Security Specialist jobsSecurity Operations Engineer jobsSenior Security Analyst jobsSystems Administrator jobsSenior Cybersecurity Engineer jobsCybersecurity Editor jobsSenior Information Security Analyst jobsCybersecurity Content Editor jobsInformation Security Manager jobsCyber Security Specialist jobsSenior Network Security Engineer jobsIT Security Analyst jobsSenior Information Security Engineer jobsChief Information Security Officer jobsInformation System Security Officer (ISSO) jobsSecurity Consultant jobsSenior Product Security Engineer jobsIT Security Engineer jobsSecurity Specialist jobsInformation Systems Security Engineer jobsCyber Threat Intelligence Analyst jobsSenior Cyber Security Engineer jobsSenior Software Engineer jobsSecurity Operations Analyst jobsSenior IT Auditor jobs
EDR jobsSaaS jobsCEH jobsEncryption jobsJava jobsSplunk jobsTop Secret jobsThreat detection jobsSDLC jobsTerraform jobsIDS jobsMalware jobsRMF jobsIPS jobsFinance jobsSQL jobsDocker jobsSOC 2 jobsForensics jobsCompTIA jobsIntrusion detection jobsActive Directory jobsOWASP jobsClearance Required jobsAnsible jobs
VPN jobsGIAC jobsHIPAA jobsITIL jobsTCP/IP jobsIT infrastructure jobsDoDD 8570 jobsCRISC jobsBanking jobsMITRE ATT&CK jobsOSCP jobsSOAR jobsJira jobsDNS jobsSOX jobsIndustrial jobsData Analytics jobsZero Trust jobsCCSP jobsUNIX jobsGCIH jobsJavaScript jobsCISO jobsArtificial Intelligence jobsNIST 800-53 jobs