1

Soc Auditor Jobs in Springfield, VA (NOW HIRING)

... SOC Manager and in partnership with Tier 3 SOC Analysts. Qualifications : Required : • Experience in vulnerability scanners, report generation, and effective communication with leadership is ...

Cyber Auditor

Fairfax, VA · On-site

$117K - $147K/yr

As a Cyber Auditor, you will play a critical role in maintaining the operational security posture ... SOC Manager and in partnership with Tier 3 SOC Analysts. Qualifications: * Experience in ...

The CSSP Auditor works across the Protect, Detect, Respond, and Sustain functions to ensure ... SOC), Cybersecurity Service Provider (CSSP), Cyber Defense Program, or related environment.

The CSSP Auditor works across the Protect, Detect, Respond, and Sustain functions to ensure ... SOC), Cybersecurity Service Provider (CSSP), Cyber Defense Program, or related environment.

The CSSP Auditor works across the Protect, Detect, Respond, and Sustain functions to ensure ... SOC), Cybersecurity Service Provider (CSSP), Cyber Defense Program, or related environment.

New

next page

Showing results 1-20

Soc Auditor information

See Springfield, VA salary details

$40.2K

$96.9K

$157.7K

How much do soc auditor jobs pay per year?

As of Aug 9, 2026, the average yearly pay for soc auditor in Springfield, VA is $96,929.00, according to ZipRecruiter salary data. Most workers in this role earn between $75,200.00 and $117,000.00 per year, depending on experience, location, and employer.

What does a Soc Auditor do?

A SOC Auditor evaluates and assesses an organization's controls related to security, availability, processing integrity, confidentiality, and privacy, often in accordance with standards like SOC 1, SOC 2, or SOC 3. They review policies, perform testing, and prepare reports to ensure compliance and effectiveness of controls, typically requiring knowledge of auditing procedures and relevant frameworks.

What is a SOC auditor?

SOC Auditors are professionals who evaluate an organization’s systems and controls, typically focusing on security, availability, processing integrity, confidentiality, and privacy. Their primary role is to conduct audits based on the System and Organization Controls (SOC) framework, such as SOC 1, SOC 2, or SOC 3 reports. SOC Auditors assess whether a company’s internal controls are effective and compliant with industry standards, providing assurance to clients and stakeholders about the organization’s risk management and data protection practices.

What are some common challenges SOC auditors face when working with clients during the audit process?

SOC Auditors often encounter challenges such as coordinating with clients to obtain timely and complete evidence, clarifying complex control environments, and ensuring that all relevant stakeholders understand the scope and requirements of the audit. Communication skills are crucial, as auditors must balance maintaining independence with providing clear guidance. Additionally, adapting to different client industries and varying levels of preparedness can make each engagement unique, requiring flexibility and strong organizational skills.

What is the difference between Soc Auditor vs Security Analyst?

AspectSoc AuditorSecurity Analyst
CertificationsISO 27001 Lead Auditor, CISACompTIA Security+, CISSP
Work EnvironmentAudit firms, consulting companies, in-house audit teamsIT departments, cybersecurity firms, corporate security teams
Industry UsageUsed mainly in compliance and audit contextsUsed in threat detection and security management

While both roles focus on security, a Soc Auditor primarily conducts audits to ensure compliance with security standards, whereas a Security Analyst monitors and responds to security threats. The Soc Auditor's role is more about assessment and compliance, while the Security Analyst actively manages security incidents.

What are the key skills and qualifications needed to thrive as a SOC auditor, and why are they important?

To thrive as a SOC Auditor, you need a solid understanding of auditing principles, risk assessment, and information security frameworks, often supported by a degree in accounting, information systems, or a related field and relevant certifications like CISA or CPA. Familiarity with audit management software, GRC tools, and systems such as SSAE 18 is typically required. Strong analytical thinking, attention to detail, and effective communication skills help SOC Auditors excel in assessing controls and reporting findings. These competencies are crucial for ensuring organizations meet compliance requirements, manage risks, and maintain stakeholder trust.

How to become a SOC auditor?

To become a SOC auditor, typically one needs a background in accounting, information security, or IT auditing, along with relevant certifications such as CPA, CISA, or CISSP. Gaining experience in cybersecurity, internal controls, and audit procedures is essential, and many employers prefer candidates with knowledge of SOC reporting standards and audit tools. Continuing education and staying current with industry regulations also support career advancement in this field.
What are popular job titles related to Soc Auditor jobs in Springfield, VA? For Soc Auditor jobs in Springfield, VA, the most frequently searched job titles are:
What job categories do people searching Soc Auditor jobs in Springfield, VA look for? The top searched job categories for Soc Auditor jobs in Springfield, VA are:
What cities near Springfield, VA are hiring for Soc Auditor jobs? Cities near Springfield, VA with the most Soc Auditor job openings:
Infographic showing various Soc Auditor job openings in Springfield, VA as of July 2026, with employment types broken down into 78% Full Time, 10% Part Time, and 12% Contract. Highlights an 89% In-person, and 11% Remote job distribution, with an average salary of $96,929 per year, or $46.6 per hour.

Certified Information Systems Auditor (CISA)

Accenture Federal Services

Arlington, VA • On-site

Full-time

Re-posted 6 days ago


Accenture Federal Services rating

8.7

Company rating: 8.7 out of 10

Based on 20 frontline employees who took The Breakroom Quiz

44th of 485 rated business services


Job description

Job Description:

The Certified Information Systems Auditor (CISA) will be responsible for planning and executing audits of the client's information systems and controls to ensure compliance, mitigate risk, and demonstrate operational effectiveness. Assist with the technical preparation for the annual SOC 1 audit by evaluating and testing IT General Controls (ITGCs), including change management, logical access, and IT operations. Assess the design and operating effectiveness of security controls in support of the Risk Management Framework (RMF) authorization. Develop audit plans, execute control testing procedures, and collect evidence to demonstrate compliance with DoD policies and industry best practices. Collaborate with engineering and operations teams to review system configurations, audit logs, and process documentation, identifying control deficiencies and providing actionable recommendations for remediation.

What you need:

  • Candidates must meet one of the following areas:
    1. Equivalent Training:
      Completion of one of the following accepted training programs: 
      • IT Program Auditor (Intermediate) Playlist
    2. Professional Certification:
      Holding one of these certifications:
      • SecurityX / CASP+
      • CGRC/CAP
      • GSEC
      • GSNA
      • Security+
      • SSCP
  • 4 years of experience with IT audit/compliance experience
  • Experience conducting audits (ideally SOC, NIST, or RMF)

Security Clearance:

  • Active Secret, Top Secret, TS/SCI, or TS/SCI with Polygraph clearance required, depending on position

What Accenture Federal Services employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom