Overview
Hybrid
Depends on Experience
Contract - Independent
Contract - W2
Contract - 6 Month(s)
Skills
cybersecurity frameworks
NIST
ISO 27001
CISA
CISSP
CRISC
ISO 27001 Lead Auditor
PCI-DSS
IAM
endpoint security
SOC 2
Job Details
Title: IT Auditor 2 212260061
Location: Austin, TX
Duration: 6+ Months
Job Type: Contract
Description
The IT Auditor will be responsible for evaluating vendor IT and cybersecurity controls to ensure compliance with contractual, regulatory, and industry standards. This role involves reviewing vendor contracts, assessing security controls, performing audits, and providing recommendations to mitigate risks.
Responsibilities:
- Review vendor contracts, SLAs, and cybersecurity obligations for compliance.
- Assess the design and effectiveness of vendor security controls against industry standards.
- Collect and analyze audit evidence including policies, system configurations, logs, and access records.
- Conduct vendor interviews to evaluate security governance and practices.
- Perform control testing and sampling to validate safeguards.
- Identify non-compliance, gaps, and deficiencies, and assess associated risks.
- Prepare detailed audit reports with findings, risks, and recommended corrective actions.
- Track remediation progress and validate closure of audit findings.
- Communicate risks and findings with internal stakeholders and leadership.
Candidate Skills and Qualifications
Minimum Requirements:
- 5+ years Experience auditing cybersecurity frameworks (NIST, ISO 27001, PCI-DSS, SOC 2) with knowledge of regulatory compliance and third-party risk management.
- 5+ years IT auditing experience including network protection, IAM, endpoint security, and incident response.
- 5+ years Strong communication and reporting skills; ability to present to executive and legal stakeholders.
- 5+ years Analytical and investigative skills to identify gaps and provide risk-based recommendations.
- 4+ years Vendor/third-party risk auditing, including contract compliance and risk assessments.
- 3+ years Policy and documentation review (security documentation, procedures, controls).
Preferred Requirements:
- 3+ years Cloud cybersecurity auditing (AWS, Azure, Google Cloud).
- 3+ years Incident response and breach assessment.
- 3+ years Contract interpretation and SLA compliance.
- 2+ years Experience auditing technology vendors in government or regulated industries.
- 2+ years Experience presenting findings to C-suite executives or legal counsel.
- 1+ year Relevant certifications (CISA, CISSP, CRISC, ISO 27001 Lead Auditor).
Thanks & Regards,
Sam Marshal
RedSalsa Technologies Inc.
1701 Bagdad Rd, Cedar Park, TX 78613
Phone:
Email:
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.