Назад
Company hidden
10 дней назад

Auditor, Technology – Global Audit & Enterprise Risk Management (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Auditor, Technology – Global Audit & Enterprise Risk Management (Cybersecurity) (Cybersecurity and IT risk): Executing technology audits that evaluate cybersecurity, data privacy, IT governance, identity and access management, and cloud infrastructure risks with an accent on control testing and regulatory compliance. Focus on applying NIST, ISO, COBIT, ITIL, and CIS frameworks, using AuditBoard, PowerBI, and AI, and communicating high-impact findings across global teams.

Location: Hybrid role based near Portland, Oregon, United States; onsite four days per week.

Company

hirify.global is an outdoor apparel and equipment company focused on helping people experience and protect the outdoors.

What you will do

  • Evaluate technology-related risks and support annual IT audit planning.
  • Execute audits covering IT governance, cybersecurity, data privacy, identity and access management, change management, and systems development.
  • Assess cybersecurity and privacy controls against state, federal, and international regulatory requirements.
  • Apply technology-based audit tools, including AuditBoard, PowerBI, and AI.
  • Use IT best-practice frameworks such as ITIL, ISO, COBIT, NIST, and CIS.
  • Communicate findings, coordinate with stakeholders, and support technology risk management and process improvement.

Requirements

  • Bachelor’s degree in Information Systems, Computer Science, Cybersecurity, or a related field, or a business degree with significant IT risk experience.
  • At least 2 years of progressive experience in technology audit, risk management, cybersecurity, or compliance.
  • Strong knowledge of cybersecurity principles and IT control frameworks, including NIST, ISO, and COBIT.
  • Experience testing cybersecurity and privacy frameworks and evaluating privacy regulations.
  • Familiarity with operating systems, databases, cloud platforms, enterprise architecture, and digital commerce risks.
  • Strong project and time management skills, with the ability to manage multiple priorities and collaborate across global teams.

Nice to have

  • Certifications such as CISA, CISSP, CISM, CRISC, CEH, or CompTIA Security+.

Culture & Benefits

  • Full-time employment with a benefits package supporting physical, social, financial, career, and community well-being.
  • 401(k) plan with a company match, medical, dental, vision, life insurance, disability coverage, flexible spending accounts, and a health savings account.
  • Employee assistance and wellness programs, employee discounts, and paid time off.
  • Work with leaders and technology teams on high-impact risk management projects in a global organization.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →