Related skills
fedramp cmmc soc2 risk assessment nist csfπ Description
- Executes audits and risk assessments; communicates findings and recommendations.
- Ensures management understands risks of noncompliance to security standards.
- Writes and revises policies, standards, procedures, and guidelines.
- Participates in security and IT projects driving process improvements.
- Reviews security questionnaires and due-diligence requests with stakeholders.
- Prepares risk reports and presents findings to management.
π― Requirements
- Bachelor's Degree in Computer Science, Engineering or equivalent experience
- 3-5 years in information technology / information security auditing, preferably in a software engineering environment
- Familiarity with FedRAMP, StateRAMP, CMMC, ISO 27001:2013, SOC2, NIST CSF
- Experience writing audit findings, reports, policies, standards, procedures and guidelines
- Comfortable performing technical interviews and business process reviews with non-technical personnel
- Working knowledge of risk assessment methodologies, contingency planning and data analysis
π Benefits
- Base salary: $120,000β$135,000 USD
- Equity awards and comprehensive benefits
- Health Savings Account and Flexible Spending Account
- 401(k) with company match; life and disability coverage
- Travel accident insurance and employee assistance programs
- 5 days of volunteer time off (VTO)
Meet JobCopilot: Your Personal AI Job Hunter
Automatically Apply to Engineering Jobs. Just set your
preferences and Job Copilot will do the rest β finding, filtering, and applying while you focus on what matters.
Help us maintain the quality of jobs posted on Empllo!
Is this position not a remote job?
Let us know!