This job is closed

We regret to inform you that the job you were interested in has been closed. Although this specific position is no longer available, we encourage you to continue exploring other opportunities on our job board.

R3 LLCposted 3 months ago
Full-time • Senior
Frederick, MD
Resume Match Score

About the position

At R3, we are committed to providing our clients with best-in-class solutions for all of their IT needs. We are relentless in our pursuit of excellence and dedicated to providing our clients with unsurpassed quality, service, and value day in and day out. As we continue to grow and innovate, we are seeking passionate and dedicated individuals to join our team. If you’re ready to join our mission of setting the standard for IT excellence, we are seeking an energetic, self-motivated Information Security Auditor III (Senior), IT Risk and Compliance with experience leveraging industry standards to perform internal audits for R3 and their clients. As a member of the Quality & Compliance (Q&C) team, you will focus on audits of critical technology functions including cloud-based technology implementations, security controls, and cybersecurity risks. This position requires an individual who can liaise with key stakeholders at all levels, as well as critical functional teams such as IT, Cybersecurity, HR, Finance, Sales, Legal, Contracts, supply chain, and others to identify and manage information security standards and best practices that govern cybersecurity for any given client.

Responsibilities

  • Execute major components of audits and security control assessments, including critical technology functions, cloud-based infrastructure, emerging technology, cybersecurity, risk management, application, and third-party management, as well as lead small to medium size audits.
  • Perform assessments of IT controls using industry-standard guidance and leading best practices such as NIST 800-171, CMMC, FedRAMP, ISO/IEC 27001, FISMA, etc.
  • Schedule and conduct interviews and discussions with a variety of stakeholders, including IT and Cybersecurity technical engineers and administrators, and other key functional team members.
  • Identify, gather, review, and analyze documents and artifacts to assist in IT controls testing such as system security plans, SOPs, audit logs, configuration scans, and vulnerability scans.
  • Evaluate the implementation and effectiveness of IT controls using provided artifacts against federal requirements, industry guidance, and leading best practices.
  • Document the results of IT controls testing in a consistent and high-quality manner that would allow others to review and understand the results.
  • Establish and maintain good auditee relations during engagements. Communicate or assist in communicating the results of some audit projects to management via written reports and oral presentations.
  • Summarize and communicate IT controls assessment results to a variety of client stakeholders, including senior leadership.
  • Understand and analyze known IT control weaknesses, identify root causes, and develop detailed remediation plans.
  • Develop and maintain SSP and POAM documentation for in-scope environments, and applicable policies, processes, and procedures.
  • Provide subject matter expertise to internal and client personnel on a wide range of matters relating to IT security and assurance.
  • Work with technical teams and clients to remediate findings related to information systems, networks, and data, determining technical solutions and recommendations for implementation.
  • Perform risk assessments of business units and technology operations, design and execute audit procedures to verify the effectiveness of existing controls, identify and define issues, review and analyze evidence, and document auditee processes and procedures.
  • Review and provide feedback on audit workpapers to achieve clear, organized, and complete documentation to support work performed.
  • Coordinate with others and proactively take on additional work.
  • Deliver appropriate, succinct, and organized information, tailoring communication style to audience.
  • Manage assessments independently on time, within budget.
  • Effectively communicate information, issues, and audit progress to teammates and clients.
  • Perform various aspects of engagement administration, including hours and budget tracking.
  • Provide periodic on-the-job coaching and direct supervision over less experienced associates.

Requirements

  • U.S. Citizen (Federal client requirement)
  • Bachelor’s degree in Information Technology/Security, Computer Science, Information Systems Management, or related field, or the equivalent combination of training, certification, education, and experience.
  • Demonstrated ability and working knowledge of frameworks and standards such as NIST 800-171, NIST 800-53, FISMA, FedRAMP, and/or CMMC.
  • 8+ years of demonstrated knowledge and experience in IT risk and controls through IT audits, IT controls assessments, IT security reviews, and information security audits including areas such as application security, network security, cyber security, vulnerability management, third-party risk assessments, data protection, access management, etc., or cloud computing controls (design, operation, risk management, auditing) or a combination.
  • 5+ years of demonstrated experience with tools and technologies in support of performing assessments and audits.
  • 3+ years of experience in managing audit engagements, project management, or a combination.
  • Experience auditing cloud computing (Microsoft preferred) and controls.
  • Demonstrated knowledge of traditional and emerging technology domains, including cybersecurity, cloud, infrastructure, networking, data management, integration strategies, IT operations, IT risk management, and IT governance.

Nice-to-haves

  • CISSP, CISA, or CISM certification strongly preferred; other auditing and/or security certifications such as CCA, CCP, CIPP, CDPSE, CRISC, CGEIT, etc. desired.
  • Familiarity with other compliance frameworks such as SOC 2, PCI-DSS, ISO/IEC 20000-1, ISO/IEC 27001, HIPAA, HITRUST, OMB Circular A-123, or similar internal control assessments.

Benefits

  • Competitive wages to reflect your experience and skills.
  • Comprehensive medical, dental, and vision insurance plans to keep you and your family healthy.
  • 401(k) with company match to help you plan for the future.
  • Flexible time off policies to ensure you maintain a healthy work-life balance.
  • Opportunity to give back to our community with (paid) volunteer time off.
  • We offer many remote opportunities, allowing you to work wherever you want.
  • We are committed to creating a positive impact on society and contributing to a better world--we're involved in our community and encourage our employees to do the same.
  • We are reshaping the industry and the way it thinks about technology and service.
  • We strive to be better and encourage our employees to do the same by offering training incentives and bonuses to help you and your career grow.
  • The opportunity to be a part of an amazing team.

Job Keywords

Hard Skills
  • Information Organization
  • ISO/IEC 20000
  • ISO/IEC 27001
  • IT Security
  • NIST 800-82
  • 0gQiOwN D1MzZKxq
  • 26BVOb7 Y4f2 wyLGAakYZT4
  • 3CpXY8n Mqc0 d1gaqNXTyPe
  • 67c0oEMJDAxe ehVEKa7l
  • 69o5EQWYl wUQPxsDGa
  • 7jLqkC hLzS8IUKmQc
  • 83gfSqTl dVpetYyjKq0
  • Acg9XT DXKUSA oga8W rQlywiW0vdq
  • asG AvdFGgNVf
  • B03YQ m9YqJWXnhV3
  • CSx0jbKudo FNH5ukLBCMQcnJ
  • dsPUkmi1Zn
  • dtxRa8JHKo ZkLAlB9KECWa
  • fPy2FXGeW KevaygRdhr
  • GgNjOZ0cCHxw pVSdwf1x5
  • H0YT95QCy N24wszdXgFV
  • HXaENTOpk hjNxIPmWQzoGH
  • ILZos4 5x7lviInoY
  • jSWbu2 FV154AixLp
  • kjfrHxBK0 TNFlfIpz
  • kV2g38Hni4A5 1F0eo
  • L14JzSgXe8Us UgABJfq3G t5Eib6j
  • m3VqETcQ bnXJRzv4koTr25x
  • OFiyDXlU5 B3rlaoSVi
  • RfOq7 ziImKonCXde
  • tgxd06DM2G49 pyvX9wWK3
  • TWG5s 3uCJdpU
  • u6a0vZ89F Q2TN1S3Ci
  • v5nC07YT aOUJk6yR1 QztU osEB9aT25C
  • vHgJo9Aza06qCZ n7Iok58OX
  • wpF9Qm3InEiH m2tzrLbO7 xLIEBobym0W
  • WwnS2c0kI xCHSzOb2f
  • x92Pag8 foTbH9
  • ZD7rTUGnI b7FwZHjAc6
  • ZHlzM FY6aNeXtRDx
Soft Skills
  • GvlIHg4XmsRn2N1S
Build your resume with AI

A Smarter and Faster Way to Build Your Resume

Go to AI Resume Builder
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service