1

Cisa Certified Jobs in Bothell, WA (NOW HIRING)

Certificate of Information Systems Auditor (CISA) certification * Detail-oriented and the ability to handle multiple tasks within deadlines. * Advanced skills including use Microsoft Word, Access ...

Certificate of Information Systems Auditor (CISA) certification * Detail-oriented and the ability to handle multiple tasks within deadlines. * Advanced skills including use Microsoft Word, Access ...

Certificate of Information Systems Auditor (CISA) certification * Detail-oriented and the ability to handle multiple tasks within deadlines. * Advanced skills including use Microsoft Word, Access ...

Certificate of Information Systems Auditor (CISA) certification * Detail-oriented and the ability to handle multiple tasks within deadlines. * Advanced skills including use Microsoft Word, Access ...

Sr. Cyber Assurance Analyst, Finance

Redmond, WA ยท On-site

$112K - $144K/yr

Professional certifications such as CISA, CISM, CISSP, CRISC, GSNA, ISO 27001 auditor, or equivalent (CISA and SOC/ITGC-focused credentials strongly preferred). ADDITIONAL REQUIREMENTS: * Must be ...

Security or GRC certifications (CISA, CISM, CRISC, CISSP, or comparable) * Experience responding to government or regulatory oversight (TSA, FAA, etc.) The Offer Bonus OR Commission eligible You will ...

Bachelor's degree in Accounting, Finance, Business Administration or related field; CPA, CIA, or CISA strongly preferred. * 8+ years of SOX compliance experience, preferably in both Big 4 and an in ...

Bachelor's degree in Accounting, Finance, Business Administration or related field; CPA, CIA, or CISA strongly preferred. * 8+ years of SOX compliance experience, preferably in both Big 4 and an in ...

next page

Showing results 1-20

Cisa Certified information

See Bothell, WA salary details

$13

$27

$51

How much do cisa certified jobs pay per hour?

As of Sep 2, 2026, the average hourly pay for cisa certified in Bothell, WA is $27.47, according to ZipRecruiter salary data. Most workers in this role earn between $21.49 and $30.62 per hour, depending on experience, location, and employer.

What does it mean to be CISA certified?

Being CISA certified means that an individual has earned the Certified Information Systems Auditor (CISA) credential, which is awarded by ISACA. This global certification demonstrates expertise in information systems auditing, control, and security. CISA-certified professionals are recognized for their ability to assess vulnerabilities, report on compliance, and institute controls within an enterprise. The certification requires passing a rigorous exam and having relevant work experience. It is highly valued by employers in IT audit, risk management, and cybersecurity roles.

What are the key skills and qualifications needed to thrive as a CISA-certified IT auditor?

To thrive as a CISA-certified IT auditor, you need expertise in information systems auditing, risk assessment, and a solid understanding of IT governance, typically supported by the CISA certification and relevant experience in IT or auditing. Familiarity with audit management software, security frameworks (such as COBIT), and regulatory compliance tools is commonly required. Strong analytical thinking, attention to detail, and effective communication are vital soft skills for interpreting complex data and reporting findings to stakeholders. These capabilities ensure accurate risk evaluation, regulatory compliance, and the protection of organizational information assets.

What are some typical challenges faced by CISA-certified professionals when conducting IT audits in large organizations?

CISA-certified professionals often encounter challenges such as navigating complex IT environments, dealing with legacy systems, and balancing compliance with business objectives. In large organizations, coordinating across multiple departments and ensuring access to accurate documentation can be demanding. Additionally, staying updated on evolving regulations and emerging technologies requires continuous learning. Successful auditors leverage strong communication skills and a collaborative approach to overcome these obstacles and deliver effective audit results.

What is the difference between Cisa Certified vs Security Analyst?

CriteriaCisa CertifiedSecurity Analyst
Required CertificationsCISA certification from ISACANo specific certification required, but often holds CompTIA Security+ or CISSP
Work EnvironmentAuditing, compliance, and risk management in IT and information systemsMonitoring, analyzing, and responding to security threats in IT networks
Employer & Industry UsageUsed by audit firms, consulting companies, and organizations with compliance needsCommon in IT security teams across various industries

The Cisa Certified focuses on IT audit, control, and compliance, while Security Analysts primarily handle security monitoring and threat response. Both roles are vital in cybersecurity but differ in certification requirements and daily responsibilities.

Are CISA professionals in demand?

CISA (Certified Information Systems Auditor) professionals are in high demand due to the increasing need for cybersecurity and IT audit expertise across industries. Organizations seek CISA-certified individuals to assess and improve their information systems, ensuring compliance and security, which often leads to strong job prospects and competitive salaries.

Is CISA still in demand?

The CISA (Certified Information Systems Auditor) certification remains highly in demand for cybersecurity and IT audit roles, as organizations seek professionals skilled in assessing and managing information system security. The certification's focus on risk management, control, and compliance ensures continued relevance in the evolving cybersecurity landscape.

What jobs can you get with a CISA certification?

A CISA (Certified Information Systems Auditor) certification qualifies professionals for roles such as IT auditor, information security manager, compliance analyst, and cybersecurity consultant. These jobs involve assessing and managing information systems, ensuring compliance with regulations, and conducting audits using tools like audit software and risk management frameworks.

What are popular job titles related to Cisa Certified jobs in Bothell, WA?

For Cisa Certified jobs in Bothell, WA, the most frequently searched job titles are:

What job categories do people searching Cisa Certified jobs in Bothell, WA look for?

The top searched job categories for Cisa Certified jobs in Bothell, WA are:

Infographic showing various Cisa Certified job openings in Bothell, WA as of August 2026, with employment types broken down into 2% As Needed, 75% Full Time, 16% Part Time, and 7% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $57,133 per year, or $27.5 per hour.

Third-Party Risk Management Program Officer

HERITAGE BANK

Seattle, WA โ€ข On-site

$100K - $126K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 12 days ago


Job description

Heritage Bank has an exciting opportunity to join our organization!


We are seeking Third-Party Risk Management Program Officer to join our Risk and Compliance team. The third-party risk management program officer is responsible for the design, execution, and continuous improvement of the bank's third-party risk management program across the full vendor lifecycle, from onboarding through offboarding. Operating within the Second Line of Defense (2LoD), this role provides governance and oversight to ensure operational alignment of the bank's TPRM processes across Information Security, Legal, Procurement, Business Units, and Internal Audit.

This position is accountable for ensuring third-party risks, including cybersecurity, operational, compliance, reputational, and concentration risks, are appropriately identified, assessed, and monitored in alignment with regulatory expectations. 

The geographical location for this position is Tacoma, WA, Seattle, WA, Spokane, WA, or Portland, OR.

Base Salary Range:

 $100,884.00 - $126,105.00 - $151,326.00 annual

The Role at a Glance:

  • Leads and manages the Third-Party Risk Management (TPRM) Program, including development and continuous refinement of TPRM policies and procedures, risk tiering and segmentation models, risk rating methodologies, and vendor lifecycle control checkpoints.
  • Ensures alignment of the TPRM program with enterprise risk management (ERM), information security, compliance, and legal frameworks.
  • Oversees execution of third party inherent risk assessments, due diligence reviews, and control assessments across all third-party risk domains (cybersecurity, privacy, operational resilience, etc.).
  • Ensures appropriate engagement of cross-functional subject matter experts (e.g., Information Security, Legal, Compliance) and that roles and responsibilities are clearly defined within the established third-party lifecycle processes.
  • Defines and maintains third party risk program tools, templates, escalation protocols, and residual risk acceptance processes.
  • Integrates and aligns TPRM program with related programs (e.g., Vendor Management, procurement, Business Continuity Planning, Information Security Risk Assessments, Cloud Governance, AI/Model Risk).
  • Establishes and tracks third-party key risk indicators (KRIs).
  • Provides executive-level reporting on third-party risk posture, program maturity, and systemic exposures (e.g., concentration risk, critical service dependency).
  • Monitors and escalates third-party open risk issues, overdue assessments, and policy exceptions.
  • Serves as the primary contact for third-party risk regulatory exams and internal/external audits.
  • Performs continuous monitoring of Critical and High risk third parties.
  • Maintains audit-ready documentation, evidence of program execution, and continuous improvement roadmap.
  • Monitors regulatory changes (e.g., OCC Bulletins, FFIEC updates, DORA, NYDFS, etc.) and updates program controls to align with evolving requirements.


Core Skills and Qualifications:    

  • Bachelor’s degree in Business, Risk Management, Information Security or related field preferred.
  • 5+ years of recent experience in a vendor risk management, third-party oversight, or like program role within a financial services environment required.
  • Proven experience leading the development, implementation, and ongoing management of an enterprise-scale third-party risk management program required.
  • Professional certifications  as Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), or equivalent preferred.
  • Equivalent combination of education, training, certifications, and/or relevant work experience may be considered.
  • Provide an exceptional level of service for internal and external customers, with the ability to build and maintain positive, professional relationships, to successfully interact with and influence all levels of management and functional and cross-functional areas across the organization.
  • Highly effective listening, verbal, written, and telephone etiquette business communication skills, including effective questioning strategies, negotiation and presentation skills to communicate security-related concepts in a variety of settings, to a broad range of technical and non-technical staff. Ability to read, write, speak, and understand English well.
  • Strategic in approach to program design, problem solving, and decision-making, with demonstrated ability to quickly focus on key issues and make decisions under pressure of time constraints.
  • Risk based mindset and strong analytical and critical thinking skills, with the ability to independently assess risk decisions and constructively challenge assumptions and conclusions.
  • Thorough knowledge and understanding of regulatory frameworks (e.g. FFIEC, GLBA, PCI-DSS, SOX, FFIEC, HIPAA etc.) and  of NIST CSF, ISO 27001, COBIT, COSO and vendor risk management frameworks.
  • Strong knowledge of information security assessment and auditing practices, including the ability to evaluate technical and business controls using established frameworks and methodologies, and to effectively interpret results from security tools and subject matter expert assessments.
  • Thorough knowledge and understanding of related statutory banking compliance regulations issued by the FDIC, FinCEN, and Federal Reserve Board, with strong knowledge of privacy laws, such as GLBA and SOX.
  • Strong project management, planning, organizational, time management, and follow-up skills, demonstrating a strong sense of urgency and ability to execute quickly, timely and efficiently; independently ensuring that priorities are set and commitments and deadlines are met with minimal direction and oversight.
  • Unquestionable integrity in handling sensitive and confidential information required.
  • Proficient and advanced use and understanding of MS Office products (Word, Excel, Outlook), with the ability to adapt to and learn new technologies quickly.
  • Proficient use and understanding of third-party risk management software (ex. UpGuard, Tandem, Gartner, etc.).

Work Environment/Conditions:

  • Climate controlled office environment.
  • Work involves being able to concentrate on the matter at hand, under sometimes distracting work conditions, and frequent employee and customer contacts and interruptions during the day.

Physical Demands/Effort:

  • Work may involve the constant use of computer screens, reading of reports, and sitting throughout the day.
  • Ability to operate a computer keyboard, multi-line telephone, photocopier, scanner and facsimile which often requires dexterity of hands and fingers with repetitive wrist and hand motion.
  • Typically sitting at a desk or table; intermittently standing, stooping, bending at the waist, walking, climbing, kneeling or crouching to file materials.
  • Occasional lifting up to 20 lbs. (files, boxes, etc.).

 

At Heritage Bank, we work hard, but we also know how important it is to take time off to stay healthy, relax, and spend time doing what makes your heart happy!

As part of our team, you’ll enjoy a total rewards package, which includes base salary based on the role, experience, and skill set, along with an exceptional benefits package (medical, dental, vision, life insurance, 401(k), community volunteer time), and generous time off policy. Full-time team members receive a minimum of 10 paid vacation days annually* and eight hours of paid sick leave per month*, while also enjoying 11 paid holidays each calendar year, and an annual float day. *pro-rated from start date and/or hours worked. To view Benefits Summary: Apply > Current Openings > position > attachment.

The above statements are intended to describe the general nature and level of work being performed and are not an exclusive list of all qualifications for this position.

Heritage Bank is an Equal Opportunity Employer 

 All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran status, disability, or any other basis protected by applicable law. 

Job applicants have certain legal rights. Please click here for information regarding these rights. 

If you need assistance completing the online application, please email: HBRecruiting@HeritageBankNW.com 

Salary Range Disclaimer

The base salary range represents Heritage Bank’s current salary range for the position. Actual salaries will vary depending on factors including, but not limited to, qualifications, experience, and job performance. The range listed is just one component of Heritage Bank’s total compensation package for full time and part time employees. Depending on position, other total compensation rewards may include, monthly, quarterly or annual incentive, and/or bonuses. 



##JobCategory:Risk / Compliance##

##Street:3615 Pacific Avenue##

##City:Tacoma##

##State:WA##

##ZipCode:98418##

##Internal:false##

*mon