Information Security and Compliance Specialist

Remote, USA Full-time
Work collaboratively with internal Idera technology stakeholders regarding technology controls reviews and assessments. The scope of these activities will include participating with any related teams on a consultativebasis. ● Design, test, and document controls related to compliance with AICPA Trust Principles (SOC2) and ISO 27001 and 27701 requirements;● Gather audit evidence from company stakeholders to provide to assessors, coordinate scheduling of meetings between assessors and company stakeholders for audits;● Plan and execute internal and external audits to assess and evaluate potential technology risks and controls issues;● Curate audit findings into management reports and provide recommendations to stakeholders regarding remediation or mitigation of identified risks;● Work collaboratively to drive Idera’s risk management program which includes the identification, assessment, tracking and reporting of technology risks and status;● Execute continuous audit testing program and refine controls to support Testing automation;● Coordinate pentest scheduling with DevOps team and third-party or internal penetration testing team, vulnerability scans with Product Management and DevOps, and remediation of any findings with applicableteams;● Assist with risk assessments of third-party vendors;● Any other infosec-related compliance tasks identified.Experience Required:Experience with SOC 2 Type 2 and ISO 27001 and 27701 audits (mustHave or obtain at the time of hire - ISO 27001 internal auditor certification), performing internal audits (user access reviews, risk assessments; evaluating findings of penetration tests and vulnerability scans). Apply tot his job
Apply Now

Similar Jobs

Senior Business Risk & Controls Advisor-Tech/Cyber (Remote)

Remote, USA Full-time

GRC / Cyber Security Specialist

Remote, USA Full-time

Cybersecurity Assessment / Authorization Specialist NIST RMF / Federal Compliance

Remote, USA Full-time

Experienced GRC Professional for Cyber Protection – Third Party Risk Management & Compliance Specialist at blithequark

Remote, USA Full-time

Technology Compliance Specialist

Remote, USA Full-time

Experienced Cybersecurity Governance, Risk, and Compliance Specialist - Remote Data Entry and Risk Management Professional for blithequark

Remote, USA Full-time

Information Assurance Compliance Specialist II (RMF Specialist)

Remote, USA Full-time

Urgently Hiring: Secretary - ICT (Security & Audit Control)

Remote, USA Full-time

Senior Federal Cybersecurity & Compliance Consultant

Remote, USA Full-time

IT Auditor

Remote, USA Full-time

CrowdStrike, Inc. Incident Response Analyst III (Remote) in Minneapolis, Minnesota

Remote, USA Full-time

Corporate Account Manager

Remote, USA Full-time

bolthires Remote Job Description $25/Hour

Remote, USA Full-time

Security Engineer - Penetration Testing, Mobile (India based, 100% Remote)

Remote, USA Full-time

Sr. Accountant (Cost Accounting Manager)

Remote, USA Full-time

[Remote] 2026 MiLB Data Operations (Seasonal)

Remote, USA Full-time

AI Consultant, AI Services

Remote, USA Full-time

Private Wealth Consultant, Outsourced Advisory Solutions

Remote, USA Full-time

Virtual Teacher/ Math Full Time /TX/

Remote, USA Full-time

Estate Manager

Remote, USA Full-time
Back to Home