Experience performing security risk assessments, audits, control reviews, and compliance ... Strong knowledge of information security policies, risk management, internal controls, and audit ...
Experience performing security risk assessments, audits, control reviews, and compliance ... Strong knowledge of information security policies, risk management, internal controls, and audit ...
Information Security Analyst
Peoria, AZ · On-site
Experience performing security risk assessments, audits, control reviews, and compliance ... Strong knowledge of information security policies, risk management, internal controls, and audit ...
Information Security Analyst
Peoria, AZ · On-site
Experience performing security risk assessments, audits, control reviews, and compliance ... Strong knowledge of information security policies, risk management, internal controls, and audit ...
CISSP or comparable certification preferred. * 5+ years of cybersecurity or IT security audit experience. * Experience with CMS, Azure/AWS platforms, and regulatory compliance.
Quick apply
CISSP or comparable certification preferred. * 5+ years of cybersecurity or IT security audit experience. * Experience with CMS, Azure/AWS platforms, and regulatory compliance.
Senior IT Security Enginner
$100K - $136K/yr
We are seeking an Information Security Engineer to support the IT Digital team (web/mobile). The ... Plan and participate in PCI audit preparation, 3rd party audit, run reports, participate in ...
Senior IT Security Enginner
$100K - $136K/yr
We are seeking an Information Security Engineer to support the IT Digital team (web/mobile). The ... Plan and participate in PCI audit preparation, 3rd party audit, run reports, participate in ...
Information Security Analyst 2 (703068) Atlanta, GA 30033 onsite Long-Term Candidate MUST BE LOCAL ... Advise and oversee audit huddle to disseminate audit information and procedures. Provide support ...
Information Security Analyst 2 (703068) Atlanta, GA 30033 onsite Long-Term Candidate MUST BE LOCAL ... Advise and oversee audit huddle to disseminate audit information and procedures. Provide support ...
Information Security Analyst
Indianapolis, IN · Hybrid
$42.70/hr
IRS, SSA, OCSE, FBI, SBOA) and remediating any findings; assist with creating and submitting reports relevant to security audits • Develop information security policies and standards for protection ...
Information Security Analyst
Indianapolis, IN · Hybrid
$42.70/hr
IRS, SSA, OCSE, FBI, SBOA) and remediating any findings; assist with creating and submitting reports relevant to security audits • Develop information security policies and standards for protection ...
Information Security Analyst
Indianapolis, IN · On-site
$42.70/hr
IRS, SSA, OCSE, FBI, SBOA) and remediating any findings; assist with creating and submitting reports relevant to security audits • Develop information security policies and standards for protection ...
Information Security Analyst
Indianapolis, IN · On-site
$42.70/hr
IRS, SSA, OCSE, FBI, SBOA) and remediating any findings; assist with creating and submitting reports relevant to security audits • Develop information security policies and standards for protection ...
$204K/yr
Requires 3 years of experience in a position working with Governance Risk and Compliance, Information Security Audit or Information Security Consulting. Experience must include the following ...
$204K/yr
Requires 3 years of experience in a position working with Governance Risk and Compliance, Information Security Audit or Information Security Consulting. Experience must include the following ...
Information Security Governance Specialist
Foster City, CA · On-site
$204K/yr
Requires 3 years of experience in a position working with Governance Risk and Compliance, Information Security Audit or Information Security Consulting. Experience must include the following ...
Information Security Governance Specialist
Foster City, CA · On-site
$204K/yr
Requires 3 years of experience in a position working with Governance Risk and Compliance, Information Security Audit or Information Security Consulting. Experience must include the following ...
Experience establishing continuous audit readiness, automating control monitoring, and automating audit evidence collection. * Experience operating security programs across multiple cloud providers ...
Experience establishing continuous audit readiness, automating control monitoring, and automating audit evidence collection. * Experience operating security programs across multiple cloud providers ...
Experience establishing continuous audit readiness, automating control monitoring, and automating audit evidence collection. * Experience operating security programs across multiple cloud providers ...
Experience establishing continuous audit readiness, automating control monitoring, and automating audit evidence collection. * Experience operating security programs across multiple cloud providers ...
Work with Legal, Information Security, IT, Data, Product, Marketing, Operations, and business teams to validate audit findings, assess risk levels, develop remediation plans, and track remediation to ...
Quick apply
Work with Legal, Information Security, IT, Data, Product, Marketing, Operations, and business teams to validate audit findings, assess risk levels, develop remediation plans, and track remediation to ...
Work with Legal, Information Security, IT, Data, Product, Marketing, Operations, and business teams to validate audit findings, assess risk levels, develop remediation plans, and track remediation to ...
Work with Legal, Information Security, IT, Data, Product, Marketing, Operations, and business teams to validate audit findings, assess risk levels, develop remediation plans, and track remediation to ...
Translate privacy, data protection, information security, and internal policy requirements into testable audit control points, audit procedures, evidence requirements, risk assessment criteria, and ...
Translate privacy, data protection, information security, and internal policy requirements into testable audit control points, audit procedures, evidence requirements, risk assessment criteria, and ...
Work with Legal, Information Security, IT, Data, Product, Marketing, Operations, and business teams to validate audit findings, assess risk levels, develop remediation plans, and track remediation to ...
Work with Legal, Information Security, IT, Data, Product, Marketing, Operations, and business teams to validate audit findings, assess risk levels, develop remediation plans, and track remediation to ...
Specific skills: audit background, developed Policy and Procedures, project management skills, information security background (optional), HITRUST knowledge (optional) Additional Information $23/hr 6 ...
Specific skills: audit background, developed Policy and Procedures, project management skills, information security background (optional), HITRUST knowledge (optional) Additional Information $23/hr 6 ...
Information Security Manager
Seattle, WA · On-site
Support external IT security audits and assessments that focus on operation. * Develop, update, implement, and conduct information security training programs to support the ISMS objectives. * Manage ...
Information Security Manager
Seattle, WA · On-site
Support external IT security audits and assessments that focus on operation. * Develop, update, implement, and conduct information security training programs to support the ISMS objectives. * Manage ...
Associate Information Security Auditor - Remote
$29.28 - $46.83/hr
Actively participate in the information security audit engagements by serving as a liaison between external audit entities and internal teams * Coordinate with CIS business units to evaluate and ...
Associate Information Security Auditor - Remote
$29.28 - $46.83/hr
Actively participate in the information security audit engagements by serving as a liaison between external audit entities and internal teams * Coordinate with CIS business units to evaluate and ...
Sr. Information Security Risk Analyst
Kansas City, MO · On-site
$100K - $120K/yr
At least 5 years of experience in information security, security audit, or information security risk management/compliance. * Working knowledge and practical application of the PCI-DSS compliance ...
Sr. Information Security Risk Analyst
Kansas City, MO · On-site
$100K - $120K/yr
At least 5 years of experience in information security, security audit, or information security risk management/compliance. * Working knowledge and practical application of the PCI-DSS compliance ...
Partner with cybersecurity, engineering, audit, risk, compliance, legal, and business stakeholders ... Direct effective operation of the enterprise information security domain, including capacity ...
Partner with cybersecurity, engineering, audit, risk, compliance, legal, and business stakeholders ... Direct effective operation of the enterprise information security domain, including capacity ...
Information Security Audit information
See salary details
$62.5K - $75K
3% of jobs
$75K - $87.5K
5% of jobs
$87.5K - $100K
10% of jobs
$109.8K is the 25th percentile. Wages below this are outliers.
$100K - $112.5K
9% of jobs
$112.5K - $125K
13% of jobs
The median wage is $133.5K / yr.
$125K - $137.5K
15% of jobs
$137.5K - $150K
13% of jobs
$156.5K is the 75th percentile. Wages above this are outliers.
$150K - $162.5K
14% of jobs
$162.5K - $175K
12% of jobs
$175K - $187.5K
6% of jobs
$187.5K - $200K
0% of jobs
$62.5K
$136.1K
$200K
How much do information security audit jobs pay per year?
What is the difference between Information Security Audit vs Penetration Tester?
| Aspect | Information Security Audit | Penetration Tester |
|---|---|---|
| Certifications | ISO 27001 Lead Auditor, CISA | OSCP, CEH |
| Work Environment | Audit reports, compliance assessments, office settings | Simulated attacks, testing networks and systems |
| Employer & Industry | Organizations seeking compliance, consulting firms | Security firms, IT departments, consulting |
While both roles focus on security, an Information Security Auditor assesses an organization's security policies and compliance, whereas a Penetration Tester actively tests systems for vulnerabilities. The audit provides a broad overview of security posture, while penetration testing identifies specific weaknesses. Both roles require relevant certifications and are vital for comprehensive cybersecurity strategies.
What does an information security audit do?
What cities are hiring for Information Security Audit jobs?
Cities with the most Information Security Audit job openings:
What states have the most Information Security Audit jobs?
States with the most job openings for Information Security Audit jobs include:
What are popular job titles related to Information Security Audit jobs?
For Information Security Audit jobs, the most frequently searched job titles are:

Information Security Analyst
On-site
Full-time
Posted 27 days ago
Job description
We are seeking an experienced Information Security Analyst with strong expertise in cybersecurity risk management, security audits, compliance, internal controls, and security governance.
Required Skills-
Experience performing security risk assessments, audits, control reviews, and compliance assessments.
-
Strong knowledge of NIST SP 800-53 Rev. 5, RMF, IRS Publication 1075, HIPAA/HITECH, HITRUST, CJIS, and MARS-E.
-
Experience with security and privacy control selection, implementation, assessment, and authorization.
-
Strong knowledge of information security policies, risk management, internal controls, and audit practices.
-
Experience identifying security gaps, developing findings, recommendations, POA&Ms, and remediation plans.
-
Ability to investigate suspicious activity and support security incident reporting.
-
Understanding of IT environments including Windows, Unix/Linux, databases, networking, and software development.
-
Strong technical documentation, analytical, written, and verbal communication skills.
-
Conduct security assessments, audits, and risk reviews and document findings and recommendations.
-
Prepare audit reports, risk assessments, security plans, incident reports, and POA&Ms.
-
Review and maintain security policies, audit plans, risk documentation, and compliance artifacts.
-
Evaluate security controls and identify areas of non-compliance and improvement.
-
Track remediation activities and report outcomes to management.
-
Research cybersecurity regulations, standards, and industry best practices to support compliance.
-
Identify cybersecurity and privacy risks across internal and external systems and recommend mitigation strategies.
-
Support project teams with security and compliance requirements.
-
Collaborate with IT, security, audit, compliance, and business teams.
-
Provide security guidance and develop training/user-support materials as required.
About Techvilla Solutions
Sourced by ZipRecruiter
Industry
It services
Company size
51 - 200 Employees
Headquarters location
CA, US
Year founded
2006