Skip to main content
Schellman

Senior IT Auditor, FedRAMP Seasonal

RemoteUnited States onlyArchived
Published
Role
Security
Employment
Full-time
Company size
Enterprise
Salary not disclosed
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Senior IT auditor for FedRAMP engagements. Must have information-systems/audit background and at least ~1 year relevant professional services experience or internal Schellman experience, and maintain a certification (CISA/CISSP/CPA/QSA/AQSA/etc.). Remote within the U.S.; travel required for client work and occasional internal meet-ups.

Core skills

NIST 800-53cloud security (AWS/Azure/OCI)

Required skills

AWSAzureOCIcryptographyconfiguration managementCI/CDMicrosoft WordMicrosoft ExcelMicrosoft PowerPoint

Optional skills

CISACISSPCPAAQSAQSAOSCP

What you'll do

  • Interviewing cloud service providers (CSP) Subject Matter Experts across HR, SecDevOps, SOC/NOC, and Internal Compliance
  • Performing walkthroughs of cloud IaaS architectures (e.g., AWS, Azure, OCI)
  • Reviewing system security configurations against NIST 800-53 baselines
  • Analyzing vulnerability reports and validating encryption configurations
  • Executing assigned testing procedures, performing detailed analysis, documenting results and drafting project deliverables
  • Managing client expectations and serving as a contact for clients' basic questions regarding an engagement
  • Attending project kick-off and closing meetings
  • Booking travel reservations in accordance with company travel policies
  • Training project team members and acclimating newer team members
  • Participating in recruiting and candidate interview activities
  • Contributing to practice development and thought leadership (articles, webinars, public speaking)

What they require

  • Bachelor's degree in accounting, finance, business management, technology, or relevant field, or equivalent experience
  • At least one year of service at Schellman or relevant professional services experience in financial auditing, operational auditing, information systems auditing, internal auditing, information security management or consulting and/or risk consulting
  • Maintains at least one certification relevant to Schellman's services (i.e., CPA, CISA, CISSP, AQSA, QSA, OSCP, etc.)
  • Comply with Schellman’s code of ethics, methodologies, policies, and applicable professional/regulatory standards
  • High level of attention to detail and quality of work product
  • Excellent time management, organizational, verbal and written communication skills
  • Ability to work on-site or remotely and travel annually and as required by client needs

Benefits

  • Flexible and balanced environment with opportunity to work remotely
  • Opportunities for further education, additional training and pursuit of certifications (CISA, CISSP, etc.)
  • Travel for in-person training, team meet-ups, and strategy meetings
  • Equal opportunity employer supporting diversity
  • Great Places to Work certification and Best Firms to Work For recognitions

Schellman is a Top 50 CPA firm and a leading provider of attestation and compliance services. Our professional services focus on security and privacy audits, assessments, and certifications. Schellman has become one of the largest cybersecurity assessment firms in the United States without providing any traditional accounting services. We are an accredited multi-framework ISO Certification Body for security, privacy, business continuity, and quality; a globally licensed PCI Qualified Security Assessor and a top provider to clients serving the federal DoD space as a leading FedRAMP 3PAO and the first assessment firm authorized as a CMMC C3PAO.

CybersecurityEnterprise
Salary not disclosed