Source Job

US

  • Evaluate security controls and assess alignment with ISO 27001, SOC 2, NIST, and other frameworks.
  • Coordinate with internal teams and external auditors to support audit engagements and maintain control evidence.
  • Apply risk-based monitoring and contribute to compliance oversight, security operations, and secure-by-design initiatives.

Cybersecurity Compliance Risk Management

20 jobs similar to Associate Information Security Auditor

Jobs ranked by similarity.

$63,000–$83,000/yr
US

  • Coordinate cybersecurity awareness campaigns and training programs.
  • Maintain documentation for data classification, retention, and security controls.
  • Support compliance with frameworks like ISO and NIST.

Our partner is a mission-driven organization focused on strengthening information security and compliance. They foster a collaborative, remote-first culture with emphasis on professional growth and continuous learning.

$112,000–$140,000/yr
US

  • Ensure day-to-day compliance activities across PCI DSS, SOC 2, NIST, GDPR, and ISO frameworks.
  • Lead preparation and execution of internal and external audits, including evidence collection and remediation tracking.
  • Perform technical security and compliance reviews of third-party vendors and service providers.

iSeatz drives enduring brand loyalty through digital commerce and technology solutions for travel and lifestyle bookings. The company processes over $9B per year in transactions and has been honored as an Inc. Magazine Best Workplace for three consecutive years, emphasizing transparency, trust, and open communication.

$150,000–$180,000/yr
US

  • Serve as acting CISO for multiple client organizations and SGP, providing strategic security leadership and executive guidance.
  • Lead cybersecurity and compliance programs aligned with NIST SP 800-171, CMMC Levels 1-2, and ISO/IEC 27001.
  • Conduct security assessments, gap analyses, and risk reviews; develop SSPs, POA&Ms, and policies.

Strategic Growth Partners provides cybersecurity and compliance services to clients across multiple time zones. They foster a collaborative, innovative, and diverse work environment.

US

  • Develop and execute a comprehensive IT internal audit strategy covering technology, security, privacy, and compliance risks.
  • Lead end-to-end audit engagements, including planning, risk assessment, fieldwork, reporting, and remediation follow-up.
  • Manage and enhance IT ICFR/SOX compliance programs, ensuring effective control design and regulatory readiness.

The company is a fast-growing technology organization in the SaaS and fintech sectors. It fosters a culture of innovation, collaboration, and continuous improvement, with a focus on diversity and inclusion.

$114,000–$139,000/yr
US

  • Monitor and enforce compliance with security frameworks like NIST CSF, ISO 27001, SOC 2, and regulations such as GLBA, CCPA, and GDPR.
  • Conduct comprehensive risk assessments, develop security policies, and lead internal and external security audits with cross-functional teams.
  • Evaluate third-party vendor security posture, maintain compliance records, and define metrics to assess the success of the security program.

Clear Capital is a national real estate analytics, data solutions and valuation technology company with a simple purpose: to build confidence in real estate decisions to strengthen communities and improve lives. The company values integrity, kindness, and grit, and has been committed to excellence since 2001.

US

  • Lead the security authorization process for systems and applications in compliance with NIST and DoD regulations.
  • Conduct risk assessments and develop security documentation to ensure high standards of security and compliance.
  • Work with sponsors to automate manual processes and implement technical solutions for cyber defense.

Dark Wolf Solutions provides cybersecurity and risk management services to protect sensitive information and critical infrastructure. They are a mid-sized company that values motivated, detail-oriented professionals and are an EEO/AA employer committed to diversity.

$110,000–$145,000/yr
US

  • Partner with application development teams to integrate security requirements into design, development, and deployment workflows.
  • Support ATO efforts including development of System Security Plans (SSPs), POA&Ms, and control documentation.
  • Conduct risk assessments, vulnerability scans, and threat modeling aligned with NIST SP 800-53 and VA security standards.

Oddball builds quality software for the federal space, focusing on improving the daily lives of millions of people. They are a small company that values learning, growth, and making a big impact.

$150,000–$200,000/yr
US

  • Lead control implementation and audit readiness across multiple compliance frameworks including FedRAMP, SOC 2, ISO 27001, and TISAX.
  • Partner with engineering, product, and security teams to translate compliance requirements into practical controls.
  • Represent the compliance program in customer-facing discussions and security due diligence reviews.

Rescale is pioneering the future of engineering and scientific discovery through intelligent automation, applied AI, and data management. We are a diverse, collaborative, and mission-driven team that unlocks innovation across aerospace, energy, life sciences, and manufacturing industries.

US

  • Maintain traceability between federal Zero Trust guidance and organizational objectives.
  • Support governance forums and documentation for architecture decisions.
  • Coordinate with technical and program stakeholders to ensure alignment.

The company supports federal Zero Trust cybersecurity initiatives. It is a collaborative, people-focused environment emphasizing professional development and innovation.

$147,050–$220,800/yr
US

  • Lead IT governance and risk management, including executive reporting and risk register maintenance.
  • Develop KPI and KRI dashboards to translate complex data into actionable insights for senior leadership.
  • Oversee ITSM governance, ServiceNow optimization, and vendor risk management.

Our partner is a global organization operating in a sophisticated Governance, Risk & Compliance environment, connecting technology, cybersecurity, privacy, and operational risk. It fosters a collaborative culture with a focus on work-life balance and professional development.

US 4w maternity 4w paternity

  • You will lead the development and management of client Governance, Risk, and Compliance programs.
  • You will assess cybersecurity compliance against frameworks like CMMC, NIST SP 800-171, and DFARS.
  • You will provide advisory services and manage client expectations to ensure successful engagements.

This company provides cybersecurity compliance consulting services to organizations in the U.S. Defense Industrial Base. They foster a collaborative, security-first culture with a focus on advocacy and resilience.

$129,813–$172,500/yr
US 3w PTO 3w maternity 3w paternity

  • Lead and maintain ATO documentation and coordinate with security, engineering, and project teams to ensure compliance.
  • Monitor security events, investigate threats, and assess vulnerabilities across cloud and enterprise environments.
  • Develop and implement security policies, conduct risk analysis, and provide cybersecurity guidance to stakeholders.

The company is a partner organization focused on cybersecurity and federal technology modernization. It offers a fully remote, mission-driven culture with opportunities for growth in a technology-focused environment.

US

  • Plan, execute, document, and report on information systems controls assessments across complex financial systems.
  • Apply Federal Financial Improvement Act (FFMIA) requirements and evaluate IT controls including cybersecurity, access, and change management.
  • Assess enterprise-wide SAP and non-SAP applications and prepare detailed working papers and actionable recommendations.

This company partners with federal programs to assess information systems and internal controls. It is an employee-owned organization focused on professional development and high-quality results.

India

  • Conduct internal audits and compliance reviews against ISO 27001, ISO 42001, HIPAA, and GDPR frameworks.
  • Analyze control evidence and documentation within GRC platforms like Vanta to identify gaps and deficiencies.
  • Develop remediation plans and coordinate multiple audit initiatives in a fast-paced global environment.

Jobgether uses AI-powered matching to connect candidates with hiring companies. They are a growing platform focused on fair and objective candidate review.

US

  • Lead client engagements focused on cybersecurity strategy, privacy compliance, and security maturity improvements.
  • Provide virtual CISO advisory services, including cybersecurity roadmaps, risk mitigation, and incident response planning.
  • Develop and support privacy compliance programs aligned with frameworks such as CCPA/CPRA, GDPR, and ISO 27701.

Our partner is a cybersecurity and privacy advisory firm that helps organizations navigate complex regulatory and security challenges. They offer a flexible remote environment with diverse client engagements and a focus on continuous improvement.

$230,000–$270,000/yr
US Unlimited PTO 16w maternity 16w paternity

  • Own and manage federal compliance frameworks including FedRAMP, NIST, CMMC, DFARS, and StateRAMP.
  • Translate regulatory controls into automated tests and machine-readable specifications for continuous authorization.
  • Collaborate with Engineering, Product, and Design to shape product capabilities and influence strategy.

Our partner company is a technology organization focused on federal compliance automation, serving organizations from emerging companies to large enterprises. They operate with a remote-first culture and value autonomy, accuracy, and scalability.

US

  • Support day-to-day information security operations and maintain strong operational security posture across the platform.
  • Develop and maintain the System Security Plan and other cybersecurity documentation for security authorization and compliance.
  • Support FedRAMP High and DoD IL5 compliance activities including continuous monitoring, audits, assessments, and remediation.

The partner company operates a secure, mission-focused technology platform supporting government and commercial teams. It is an equal opportunity workplace committed to considering qualified candidates from all backgrounds.

Canada Unlimited PTO

  • Own the security compliance program end-to-end, including audits, customer trust, vendor risk, and vulnerability management.
  • Automate evidence collection and control monitoring to be audit-ready year-round, not just during the August–November season.
  • Act as the external security face for enterprise prospects and translate AI regulatory changes into requirements.

Ada is an AI customer service company that helps enterprises automate customer conversations with AI agents. Founded in 2016, we've powered over 5.5 billion interactions and raised over $250M from top investors.

Philippines

  • Drive compliance, risk management, and security assurance as a GRC Specialist.
  • Own third-party risk management and maintain security documentation.
  • Support audits, self-assessments, and customer security inquiries.

Avid provides technology and collaboration tools for creators to entertain, inform, educate, and enlighten the world. The company fosters a culture of passion, customer focus, and innovation, with employees who believe in their mission.

US 3w PTO

  • Lead quality assurance for RMF authorization packages to ensure completeness and readiness for government review.
  • Coordinate with RMF analysts, ISSOs, system owners, and technical stakeholders to validate security documentation and evidence.
  • Mentor team members on documentation standards and best practices while tracking assessment readiness metrics to reduce rework.

True Zero Technologies is a veteran-owned small business that enables people and technology to drive quality outcomes. The company has been named a Best Place to Work multiple times and made the Inc. 5000 list of fastest-growing companies, reflecting its people-first culture and commitment to excellence.