1

Soc 2 Consultant Jobs (NOW HIRING)

... obtain SOC 2 and ISO 27001 certification. • Collaborating with both tech and non-tech teams to ... Company : 1872 Consulting is a recruitment and IT consulting company. Founded in 1872, the company ...

IT Audit Intern, Summer 2027

Los Angeles, CA · On-site

$16.25 - $21.50/hr

Perform audits, reviews, compilations, and audit or consulting engagements including ISO, Cybersecurity, SOC I, SOC II, and related engagements * Interpret and analyze audit evidence, operational ...

The Delivery Lead will coordinate consultants, manage client relationships, and ensure the delivery of high-quality assessment and advisory services across regulatory frameworks such as NIST, SOC 2, ...

Familiarity with compliance frameworks including NIST CSF, ISO 27001, PCI‑DSS, HIPAA, or SOC 2 * Prior experience in a cybersecurity consulting or managed security services (MSSP) environment

The Delivery Lead will coordinate consultants, manage client relationships, and ensure the delivery of high-quality assessment and advisory services across regulatory frameworks such as NIST, SOC 2, ...

Execute multi-cloud certification projects - lead complex SOC 2 and ISO 27001 implementation ... Big 4 consulting tenure - background in risk advisory, technical assurance, or security consulting ...

IT Audit Senior Consultant

Brentwood, TN · On-site +1

$88K - $116K/yr

Primary work will be to supervise, project lead, and execute SOC 2 projects * Performs IT control testing in accordance with defined testing plans * Documents testing in an effective way that ...

IT Auditor - ISO

OR · On-site +1

About the Role The ISO Staff Consultant works to execute Information Security Consulting activities ... A-LIGN is the number one issuer of SOC 2 and HITRUST and a top three FedRAMP assessor. To learn ...

Showing results 21-40

Soc 2 Consultant information

See salary details

$10

$41

$87

How much do soc 2 consultant jobs pay per hour?

As of Sep 12, 2026, the average hourly pay for soc 2 consultant in the United States is $41.55, according to ZipRecruiter salary data. Most workers in this role earn between $29.33 and $49.52 per hour, depending on experience, location, and employer.

What is a SOC 2 consultant?

SOC 2 consultants are professionals who help organizations prepare for and achieve SOC 2 compliance. They guide companies through the process of understanding SOC 2 requirements, implementing necessary security controls, and documenting processes to ensure data protection and privacy. SOC 2 consultants also assist with gap assessments, readiness reviews, and can help coordinate with auditors to facilitate a smooth certification process. Their expertise is valuable for organizations handling sensitive customer data who need to demonstrate trustworthiness to clients and partners.

What are the key skills and qualifications needed to thrive as a SOC 2 consultant, and why are they important?

To thrive as a SOC 2 Consultant, you need expertise in IT risk management, cybersecurity frameworks, and audit processes, often supported by a relevant degree and certifications such as CISA or CISSP. Familiarity with GRC (Governance, Risk, and Compliance) tools, cloud security platforms, and audit software is typically required. Outstanding analytical abilities, communication skills, and attention to detail help consultants effectively assess controls and guide clients through compliance. These competencies ensure organizations achieve and maintain SOC 2 compliance, protecting data and fostering client trust.

What are some common challenges faced by SOC 2 consultants when working with clients new to compliance frameworks?

SOC 2 Consultants often encounter clients who are unfamiliar with compliance requirements, which can lead to challenges such as limited documentation, unclear internal processes, or resistance to change. Consultants must educate clients on the importance of security controls, help them interpret Trust Services Criteria, and guide them through the remediation of gaps. Building trust, communicating technical concepts in accessible terms, and managing project timelines are key skills for overcoming these challenges and ensuring a successful SOC 2 audit preparation.

What is the difference between Soc 2 Consultant vs Security Analyst?

AspectSoc 2 ConsultantSecurity Analyst
CertificationsSOC 2, CISSP, CISACISSP, Security+, CEH
Work EnvironmentConsulting firms, client sites, remoteIn-house security teams, IT departments
Industry UsageIT, finance, healthcare, SaaSIT, cybersecurity, finance, government

While both roles focus on security, a Soc 2 Consultant specializes in preparing organizations for SOC 2 audits, ensuring compliance with trust service criteria. A Security Analyst monitors and responds to security threats within an organization. The Soc 2 Consultant often works across multiple clients, whereas the Security Analyst is typically part of an internal team.

What are popular job titles related to Soc 2 Consultant jobs?

For Soc 2 Consultant jobs, the most frequently searched job titles are:

Infographic showing various Soc 2 Consultant job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 90% Full Time, 6% Part Time, and 3% Contract. Highlights an 76% Physical, 3% Hybrid, and 21% Remote job distribution, with an average salary of $86,430 per year, or $41.6 per hour.

Supervisor, Technology Risk Consulting - SOC and IT Audit (Financial Services Industry)

Chicago, IL

Full-time

Re-posted 2 days ago


Key responsibilities

  • Lead high-impact IT audit and SOC engagements for financial services clients.

  • Create internal control documentation, including narratives and process/data flows.

  • Manage SOC attestation and third-party opinion services for clients in the financial industry.


Job description

We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, culture and talent experience and our ability to be compelling to our clients. You'll find an environment that inspires and empowers you to thrive both personally and professionally. There's no one like you and that's why there's nowhere like RSM.

As an experienced professional in RSM's growing Technology Risk Consulting, you will have the opportunity to develop into a seasoned consultant through a high degree of client and industry exposure, career development and mentorshipopportunities, and a diverse and inclusive culture. The fast-paced and dynamic environment in which we operate willprovide you with daily challenges and exciting opportunities.

In the Technology Risk Consulting Practice, our consultants help our clients with the design and optimization of controls utilizing a general knowledge of business processes, accounting, and information technologies by identifying and prioritizing risk and transform their technology risk management and assurance capabilities to be aligned to the key risks and strategies of their organization.

Responsibilities:

  • Develop an understanding of the RSM Technology Risk Consulting approach, methodology and tools

  • Develop an understanding of the Industry leading frameworks and methodologies for Sarbanes-Oxley, COBIT, NIST and ITIL

  • Demonstrate understanding of business processes, internal control risk management, IT controls, and related regulatory and compliance standards

  • Perform technology risk assessments and reviewing, documenting, evaluating control's design and operating effectiveness, IT internal audit consulting activities (internal audits over ERP systems, IT security, and other IT systems)

  • Perform external audit assurance activities, and perform service organization control services activities related to SSAE18 SOC 1 and SOC 2 reporting services

  • Performing risk analysis by reviewing the information security policy documents against industry standards/ regulatoryrequirements and drafting risk reports, which summarize the information security assessment including any risks to the organization

  • Perform first level review of associates work for accuracy, completeness, and well-reasoned conclusions

  • Review and complete status documents for client delivery

  • Use problem solving and critical thinking skills to quickly identify internal control deficiencies, evaluate their risk implications, and draw the appropriate conclusions to best advise our clients

  • Exercise professional skepticism, judgment and adhere to the code of ethics while on engagements

  • Ensure that documentation is compliant with quality standards of the firm

  • Work collaboratively as a part of the team and communicate effectively with RSM consulting professionals, supervisors, and senior management on a daily basis

  • Manage multiple concurrent engagements and ensure service excellence through prompt responses to internal and external clients

  • Provide timely, high quality client service that meets or exceeds client expectations including coordinating the development and execution of the consulting work plan and client deliverables

  • Ensure professional development through ongoing education

Qualifications:

  • Bachelor's or Master's Degree in business, management information systems, computer and information science, accounting or related discipline with minimum of 3-5 Years of relevant experience in InformationTechnology/Security Controls, SSAE 18, SOC reports, IT Audits, IT General Controls, IT Application Controls and ERP Audits.

  • Candidate should have intermediate knowledge of financials, operations and technology and its related risks

  • Candidate should have good knowledge for SOC 1, SOC 2, ICFR, IT General Controls, IT Application Controls, Information security and risk management frameworks/ standards (ISO 27001, NIST, COBIT, ITIL, PCI.)

  • Qualified to pursue a job-relevant certification (CISA, CISM, CRISC, CISSP)

  • Strong Data Analytical skills including advanced Excel skills (VLOOKUP's, pivot tables, and basic formulas), Word and PowerPoint

  • MS Visio skills to develop process and data flow diagrams

  • Strong multi-tasking and project management skills

  • Excellent verbal and written communication

Preferred Qualifications:

  • Strong understanding of information technology controls and security experience in a widely used financial application (SAP, Oracle, JD Edwards, PeopleSoft, etc.)

  • Experience within the financial services industry highly preferred

  • Professional certification: Certified Public Accountant (CPA), Certified Information Systems Auditor (CISA), Certified Information Systems Security Professionals (CISSP), Certified Information Security Manager (CISM) and/or Certified Information Privacy Professional (CIPP)

At RSM, we offer a competitive benefits and compensation package for all our people.We offer flexibility in your schedule, empowering you to balance life's demands, while also maintaining your ability to serve clients.Learn more about our total rewards at https://rsmus.com/careers/working-at-rsm/benefits.

All applicants will receive consideration for employment as RSM does not tolerate discrimination and/or harassment based on race; color; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender; sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the US uniformed service; US Military/Veteran status; pre-disposing genetic characteristics or any other characteristic protected under applicable federal, state or local law.

Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership.RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please call us at 800-274-3978 or send us an email at careers@rsmus.com.

RSM does not intend to hire entry level candidates who will require sponsorship now OR in the future (i.e. F-1 visa holders). If you are a recent U.S. college / university graduate possessing 1-2 years of progressive and relevant work experience in a same or similar role to the one for which you are applying, excluding internships, you may be eligible for hire as an experienced associate.

RSM will consider for employment qualified applicants with arrest or conviction records. For those living in California or applying to a position in California, please click here for additional information.

At RSM, an employee's pay at any point in their career is intended to reflect their experiences, performance, and skills for their current role. The salary range (or starting rate for interns and associates) for this role represents numerous factors considered in the hiring decisions including, but not limited to, education, skills, work experience, certifications, location, etc. As such, pay for the successful candidate(s) could fall anywhere within the stated range.

Compensation Range: $88,900 - $168,300

Individualsselected for this role will be eligible for a discretionary bonus based on firm and individual performance.