1

Soc 1 Jobs (NOW HIRING)

Build and manage an opportunity pipeline across SOC (1/2/3), readiness, ISO 27001 ISMS implementation/assessments, ISO 42001 (AI Management System) readiness/certification guidance, and security ...

Build and manage an opportunity pipeline across SOC (1/2/3), readiness, ISO 27001 ISMS implementation/assessments, ISO 42001 (AI Management System) readiness/certification guidance, and security ...

GRC Program Manager

$95K - $135K/yr

You'll own the full spectrum of Astra's audit execution: driving SOC 1, SOC 2, PCI DSS, and ISO 27001 programs end-to-end, translating regulatory requirements into practical technical controls ...

Build and manage an opportunity pipeline across SOC (1/2/3), readiness, ISO 27001 ISMS implementation/assessments, ISO 42001 (AI Management System) readiness/certification guidance, and security ...

SOC Consultant II

$66K - $89K/yr

Perform SOC 1 and SOC 2 examinations and compliance testing in accordance with firm and professional standards * Evaluate the design and operating effectiveness of technology controls; identify gaps ...

Ensure readiness for SOC 1, SOC 2, ISO 27001, and customer audits * Maintain integrity of security documentation and access logs * Identify gaps and implement improvements to strengthen security ...

The SME Audit Analyst plays a critical role in supporting SOC-1 audit readiness and sustainment activities, integrating service organization control processes, strengthening internal controls over ...

Ensure readiness for SOC 1, SOC 2, ISO 27001, and customer audits * Maintain integrity of security documentation and access logs * Identify gaps and implement improvements to strengthen security ...

Ensure readiness for SOC 1, SOC 2, ISO 27001, and customer audits * Maintain integrity of security documentation and access logs * Identify gaps and implement improvements to strengthen security ...

Lead end-to-end execution of internal and external audits (SOC 1, SOC 2, PCI DSS), from planning through to reporting. * Act as the primary point of contact for auditors, coordinating stakeholders ...

SOC 1 Audit Support: The Analyst will perform all essential functions and duties to comply with the requirements of the SOC 1 control objectives and activities. The SOC 1 is an audit conducted by an ...

next page

Showing results 1-20

Soc 1 information

See salary details

$10

$48

$84

How much do soc 1 jobs pay per hour?

As of Jun 12, 2026, the average hourly pay for soc 1 in the United States is $48.53, according to ZipRecruiter salary data. Most workers in this role earn between $27.40 and $75.24 per hour, depending on experience, location, and employer.

What is a Soc 1 job?

A SOC 1 job typically refers to a role in a Security Operations Center (SOC), where analysts monitor, detect, and respond to cybersecurity threats. SOC analysts analyze security alerts, investigate incidents, and help protect an organization's IT infrastructure from attacks. They use various security tools, review logs, and apply threat intelligence to mitigate risks. This job requires strong analytical skills, knowledge of security practices, and the ability to respond quickly to cyber threats.

What are the key skills and qualifications needed to thrive in the Soc 1 position, and why are they important?

To excel as a SOC 1 (Security Operations Center Level 1 Analyst), a solid understanding of cybersecurity fundamentals, incident detection, and response processes is essential, often supported by certifications like CompTIA Security+ or related technical training. Familiarity with security information and event management (SIEM) tools, ticketing systems, and network monitoring platforms is typically required. Strong attention to detail, analytical thinking, and clear communication skills help SOC 1 analysts quickly identify and escalate security incidents. These abilities are critical for maintaining organizational cybersecurity and ensuring swift, effective responses to potential threats.

Can you make $500,000 a year in cyber security?

Soc 1 professionals typically do not earn $500,000 annually; such high salaries are usually associated with senior roles like cybersecurity executives or consultants with extensive experience, certifications, and specialized skills. Most cybersecurity roles offer salaries ranging from $70,000 to $150,000, with higher earnings possible in management or consulting positions in large organizations.

Is SOC 1 entry level?

SOC 1 roles are typically not entry-level; they often require some experience in auditing, accounting, or internal controls. Entry-level positions related to SOC 1 may involve supporting roles or assisting with audits under supervision, but the core SOC 1 auditor or assessor roles usually require prior experience or relevant certifications such as CPA or CISA.

What jobs pay 2000 a day?

High-paying jobs that can reach $2,000 a day often include specialized roles such as senior consultants, surgeons, anesthesiologists, or experienced corporate lawyers. These positions typically require advanced education, certifications, and significant experience, and may involve freelance consulting or contract work in high-demand industries. Earnings vary based on location, expertise, and workload.

What can I expect from a typical shift as a SOC 1 Analyst?

As a SOC 1 Analyst, your typical shift will involve monitoring security alerts, analyzing suspicious events, and escalating incidents according to established protocols. You’ll work closely with other SOC team members, often in a collaborative environment that may operate around the clock with day, evening, or overnight shifts. The work is fast-paced and detail-oriented, requiring you to respond rapidly to evolving cybersecurity threats. Many organizations offer clear advancement paths, so excelling in this foundational role can lead to higher-level security analyst opportunities.

Can I make $200,000 a year in cyber security?

Soc 1 professionals typically do not reach $200,000 annually, as this salary level is more common in senior or specialized cybersecurity roles such as security architects or managers with extensive experience and certifications like CISSP. Entry-level or mid-tier positions usually offer lower salaries, but with experience, advanced skills, and certifications, higher earnings are achievable. Salary depends on factors like location, industry, and company size.
More about Soc 1 jobs
What cities are hiring for Soc 1 jobs? Cities with the most Soc 1 job openings:
What states have the most Soc 1 jobs? States with the most job openings for Soc 1 jobs include:
What job categories do people searching Soc 1 jobs look for? The top searched job categories for Soc 1 jobs are:
Infographic showing various Soc 1 job openings in the United States as of June 2026, with employment types broken down into 33% Locum Tenens, 34% As Needed, and 33% Full Time. Highlights an 81% Physical, 6% Hybrid, and 13% Remote job distribution, with an average salary of $100,951 per year, or $48.5 per hour.
Senior IT Audit & Assurance Analyst

Senior IT Audit & Assurance Analyst

Abrigo

Raleigh, NC • On-site, Remote

Full-time

Medical, Retirement, PTO

Posted 15 days ago


Job description

At Abrigo, we provide market-leading compliance, credit risk and lending software solutions that financial institutions use to manage risk and drive growth. Our solutions automate key processes and allow our customers to maintain compliance, fight financial crime, process loans quicker, and leverage data to strengthen their portfolio.

Abrigo is seeking a Senior IT Audit & Assurance Analyst to join our IT Risk & Assurance team, leading the execution of SOC audit engagements, IT internal audit coordination, IT internal control testing and monitoring, and risk assessment activities for a fast-paced fintech SaaS company serving community financial institutions nationwide.

This position is remote-primary based in Raleigh, NC, with quarterly on-site team engagements (three days each) and periodic on-site visits during external audit fieldwork (up to three weeks annually). This role reports to leadership within the IT Risk & Assurance Team, within an organization that operates under a security-first model under the Chief Information Security Officer.

What You’ll Do:

SOC & External Audit Engagement Management:

  • Serve as a primary point of contact for external audit firms conducting enterprise SOC 1 and SOC 2 audit engagements, managing the engagement lifecycle from annual renewal and kickoff through final report issuance
  • Manage ad-hoc SOC 1 and SOC 2 audit engagements for newly acquired products not yet in scope of the enterprise SOC reports
  • Coordinate document requests, evidence collection timelines, and walkthrough scheduling with internal control owners across the organization
  • Evaluate audit artifacts for completeness and accuracy before submission to external auditors
  • Communicate preliminary audit findings to management and assist in drafting management responses

IT Internal Audit Coordination:

  • Serve as the primary liaison with the external IT internal audit firm, managing document requests, walkthrough scheduling, and audit status reporting for audits aligned with FFIEC IT Handbook standards
  • Perform walkthroughs with product teams and internal control owners to assess the IT internal control environment and recommend IT internal controls based on SOC and IT internal audit requirements
  • Proactively identify control gaps and recommend remediation strategies to control owners

Risk Finding Management & Control Monitoring:

  • Own the full lifecycle of the IT risk finding register, from opening findings through remediation closure, including escalation of overdue findings to management
  • Document and process risk acceptance based on control owner feedback
  • Perform ongoing monitoring of specific IT internal controls to ensure SOC and IT internal audit readiness throughout the year
  • Perform periodic IT internal control testing to validate control design and operating effectiveness
  • Conduct periodic risk finding reviews to verify findings were closed appropriately with supporting remediation evidence

Risk Assessments & Policy Coordination:

  • Lead annual updates to IT risk assessments, including the FFIEC Cybersecurity Assessment Tool (CAT), NIST CSF control mappings, and CIS Controls risk assessments
  • Lead the annual business impact analysis update, evaluating likelihood and impact of potential disruptions to the technology environment
  • Coordinate the annual policy update cycle with policy owners, including documenting changes, presenting to the IT Steering Committee, and coordinating management and Board approval
  • Perform additional IT risk and assurance duties as assigned to support the team's evolving needs

What You’ll Need:

  • Bachelor's degree in Information Systems, Accounting, Computer Science, or related discipline; equivalent professional experience may be substituted in lieu of a degree
  • 3–6 years of experience in IT audit, IT risk, or IT compliance, such as advisory services at a CPA or consulting firm, IT internal audit at a financial institution, or GRC at a technology company
  • Hands-on experience managing or significantly contributing to SOC 1/SOC 2 audit engagements, including evidence collection and walkthrough coordination
  • Working knowledge of IT general controls and their application to SOC trust services criteria and/or FFIEC IT Handbook examination standards
  • Demonstrated experience performing IT internal control testing and evaluating control effectiveness
  • Experience maintaining risk finding registers and managing risk remediation lifecycles
  • Familiarity with IT risk assessment frameworks such as FFIEC CAT, NIST CSF, or CIS Controls
  • Strong written and verbal communication skills with the ability to interact effectively with external auditors, internal control owners, and management
  • Strong organizational skills and the ability to independently manage multiple audit and assurance workstreams in a remote-first environment
  • Must be available for quarterly on-site team engagements in Raleigh, NC and periodic on-site visits during external audit fieldwork

Preferred:

  • CISA (Certified Information Systems Auditor) or CRISC (Certified in Risk and Information Systems Control)
  • Experience in the financial services, banking, or fintech industry
  • Experience with FFIEC regulatory examinations or bank/credit union technology audit programs
  • Experience with SaaS/cloud environments (AWS, Azure) and understanding of shared responsibility models
  • Experience coordinating with outsourced or co-sourced internal audit functions

What You’ll Get:

  • Market competitive total rewards package
  • To be part of the Heart & SOUL of a winning company with an inspiring mission
  • The opportunity to Make Big Things Happen
  • Competitive salary along with full health benefits with an HSA option
  • Flexible PTO and bank holidays
  • 401(k) plan and company match

We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, age, genetic trait, sexual orientation, national origin, disability status, or any other characteristic protected by law.  Abrigo is committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at careers@abrigo.com with the subject line accommodation.