What are the responsibilities and job description for the Compliance Auditor (CMMC, NIST, HITRUST) position at Insight Assurance?
COMPANY PROFILE
Insight Assurance is a security and compliance firm trusted by over 1200 organizations for their SOC 2, PCI DSS, ISO 27001, and HIPAA audit needs. Insight Assurance is a licensed CPA firm, PCI Qualified Security Assessor (QSA), and ISO 27001 Certification Body founded by former Big-4 professionals (Former EY) looking to simplify the world of IT compliance.
JOB PURPOSE
We are seeking a highly skilled Compliance Auditor with expertise in CMMC, NIST & HITRUST audits to join our secure team safeguarding government data. The ideal candidate will have demonstrated experience leading compliance initiatives in regulated environments, ensuring adherence to complex regulatory frameworks. Strong analytical, communication, and collaboration skills are essential to successfully work within our cross-functional teams and with external clients. This is a unique opportunity to make a meaningful impact on data security while working in a dynamic, fast paced, high-stakes environment.
DUTIES AND RESPONSIBILITIES
Perform the day-to-day activities of IT audit engagements (CMMC, NIST, HITRUST), and readiness assessments under the direction of a member of the management team.
Evaluate the design and effectiveness of technology controls
Identifies and communicates IT audit findings to management
Help identify performance improvement opportunities for assigned clients
Communicate effectively with the clients and team members
Lead client meetings and foster client relationships through proactive communication
Provide weekly status reports to management
Proactively communicate to management regarding any potential issues
SKILLS
Excellent oral and written communication skills.
Ability to work individually as well as collaboratively.
A high degree of motivation.
Fluent & technical English is required.
EDUCATION
Bachelor's degree in accounting, business, cyber security, or management information systems.
EXPERIENCE
At least 1-3 years of experience performing IT audit engagements at a Big 4 or other audit / consulting firm. Experience using GRC and compliance automation tools (Vanta, Drata, SecureFrame) is a plus.
TRAINING AND CERTIFICATIONS
Candidates must have an active or in progress CCA certification along with a prerequisite certification from the advanced category
BENEFITS
Flexible Paid Time Off and paid Holidays
Quarterly Performance Bonuses
100% Remote
Competitive salary and benefits package.
Opportunities for professional growth and development.
Collaborative and innovative work environment.
Insight Assurance is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
Privacy Notice CCPA :
- Insight Assurance shares your personal data / information with Greenhouse recruiting because this is the tool we use for the recruitment process.
- Insight Assurance does not sell personal data / information under any circumstances.
- You may exercise your rights under personal data protection legislation by reaching out to us via : HR@insightassurance.com or submit a request via mail at 400 N Tampa St. 15th Floor Suite 122, Tampa, FL 33602
Privacy Notice GDPR :
This notice informs you about the categories of Personal Data / Information and the Purpose and Scope of Processing Activities to be undertaken by Insight Assurance (we, us, our), under its job application and recruitment process.
We resort to Greenhouse.com as the platform that supports our recruitment process, and therefore your Personal Data / Information will be Processed on this tool (hosted, shared with, cross-referenced, accessed by our team); we have in place contractual terms and the commitment of Greenhouse.com that ensures the Security and Confidentiality plus Purpose limitation with regards to the Processing of your Personal Data.
When you reply to one of your job postings, you voluntarily and freely submit your Personal Data to us; this, allied with the fact that the Processing by us (and over Greenhouse.com) of that Personal Data has the sole Purpose of validating your application and proceeding with the inherent scrutiny and decision, allows us to argue having Legitimate Interest as the applicable Legal Basis to undertake the Processing of your Personal Data under this scope.
We are a U.S. based company, hence some or all Personal Data pertaining to you will be hosted in the U.S.
The categories of Personal Data under Processing consist of :
Identification
Contact
Education and Professional
Interview performance
Evaluation
You may exercise several Rights as determined under applicable Personal Data Protection legislation, in short :
Right of Access
Right of Erasure
Right of Opposition or Restriction of Processing
Rectification
you can rectify your Personal Data at anytime