Project and focus areas within the Information Assurance Services practice include:
Service Organization Control (SOC) Reporting (e.g., SOC 1 and SOC 2)
Payment Card Industry Data Security Standard (PCI DSS)
• ISO Standards (e.g., ISO 27001 And 27002, 22301
GDPR
HITRUST
Risk Assessments
Risk Management
Cyber Threats and Cybersecurity
• Internal Audit Co-Sourcing
EI3PA
Project and focus areas within the Information Assurance Services practice include:
Service Organization Control (SOC) Reporting (e.g., SOC 1 and SOC 2)
Payment Card Industry Data Security Standard (PCI DSS)
• ISO Standards (e.g., ISO 27001 And 27002, 22301
GDPR
HITRUST
Risk Assessments
Risk Management
Cyber Threats and Cybersecurity
• Internal Audit Co-Sourcing
EI3PA
Planning and leading client meetings, walk-through reviews of clients control procedures and processes; delivery and presentation of client deliverables.
Developing and leading the performance of, testing of clients’ security, privacy and other information risk management related controls.
Directing the execution of testing of clients’ internal controls, testing of clients’ internal controls and review of internal control testing executed by other team members.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
Work with a Top 20 CPA and advisory firm that Accounts for Anything. Aprio has 40 U.S. office locations, as well as international office locations and more than 3,200 team members that speak 60+ languages across the glob
Work with a Top 20 CPA and advisory firm that Accounts for Anything. Aprio has 40 U.S. office locations, as well as international office locations and more than 3,200 team members that speak 60+ languages across the glob
Work with a Top 20 CPA and advisory firm that Accounts for Anything. Aprio has 40 U.S. office locations, as well as international office locations and more than 3,200 team members that speak 60+ languages across the glob
Work with a nationally ranked CPA and advisory firm that is passionate for what's next. Aprio has 22 U.S. office locations, one in the Philippines and more than 2,100 team members that speak 60+ languages across the glob
Work with a Top 20 CPA and advisory firm that Accounts for Anything. Aprio has 40 U.S. office locations, as well as international office locations and more than 3,200 team members that speak 60+ languages across the glob
Supporting clients in problem identification and resolution.
Performing assessments and testing against leading information security and privacy standards and frameworks, including ISO 27001, Trust Services Criteria, PCI DSS, NIST CSF, GDPR, HITRUST and others.
Leading and supporting preparation of client reporting deliverables; e.g., gap and risk assessments, SOC reporting, GDPR assessments, ISO 27001 certifications, etc.
Collaborating with other team members to streamline internal processes and procedures to improve client service and efficiencies.
Participate in meetings with new prospects and/or new service opportunities with existing clients.
Support preparation of sales proposals.
Interviewing potential candidates.
Being a mentor and/or coach to other team members.
Support in the development and delivery of training.
One or more industry relevant certifications or wiliness to obtain relevant certification(s) within two years of employment.
Certifications can include: CISA, CRISC, CIPP, CISSP, CISM, QSA, ISO/IEC 27001, or PCI ISA.
Undergraduate Degree (required): preferably in MIS/IS or related concentration – minimum 3.3 GPA.
Graduate Degree (preferred): preferably in MIS, IS or Accounting Information Systems.
Relevant work experience (2-4 years).
Strong communication skills; verbal and written, with the ability to produce excellent written reports and audit documentation.
Commitment to continual learning and development.
Commitment to exceptional client service and creative problem-solving ability with a consultancy mindset.
Flexible, self-starter with the ability to interact with various levels of client and firm management.
Understanding of information technology risks and internal controls.
Ability to write test procedures and execute tests of controls.
Understanding of Service Organization Control, PCI, ISO, HITRUST and/or similar information technology control frameworks.
Ability to travel up to 40%.
Ability to manage personal schedule and to lead multiple projects, tasks and deadlines.