VSP VisionVV

Principal Information Security Auditor (IT Auditor)

VSP Vision

Salary: 80k-135k USD

AR, CA + 1 more
Apply now
The Principal Information Security Auditor is responsible for leading, developing and completing integrated internal audits in compliance with departmental and professional standards. Acts as the principal technical leader for auditing complex information security technologies, assessing security frameworks, security and privacy architecture designs, regulatory and business risk management, security and privacy incident management, and application and system change control vulnerability management.

Develops IT, cybersecurity, and privacy audit programs and special consulting projects, leads audit testing and CAP reviews, and delivers audit reports to audit management

Lead and/or participate in complex information technology audits of IT areas to assess the adequacy of internal controls and compliance with Company and departmental goals, objectives, and standards

Perform and document audit activities utilizing a comprehensive audit approach (policies, procedures, processes, controls, and measures) to address financial, compliance, IT, and operational risks in accordance with professional standards

Researches and interprets governmental laws, regulations, and compliance requirements for review

Job Specifications

Typically has the following skills or abilities:

Bachelor's degree in management information system or computer science or engineering, or related field or equivalent experience

6 years of hands-on technical information security/privacy experience

One existing certification (or equivalent) from each of the following categories, which must be currently maintained and valid

General Audit Certification: Certified Information Systems Auditor (CISA), Certified Internal Auditor (CIA), Certified Fraud Examiner (CFE)

IT Audit Certification: Information Technology Infrastructure Library (ITIL), Certified Information Systems Auditor (CISA), Certified in Risk and Information System Control (CRISC), Certified in Risk Management Assurance (CRMA), Certified in Governance of Enterprise IT (CGEIT), Cisco Certified Network Associate/Professional (CCNA, CCNP)

IT Security/Privacy Certification: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Quality Security Assessor (QSA), Payment Card Industry Professional (PCIP), Certified Ethical Hacker (CEH), Microsoft Certified Professional/Security Engineer (MCP, MCSE)

Expert-level knowledge of security principles and technologies with 5+ years hands-on experience in information technology systems and security assessments or security by design testing

Big 4 or equivalent regulatory compliance consulting experience applying broad risk and threat assessment methodology experience across information technology, security, privacy, and business

Demonstrated leadership skills in identifying and analyzing regulatory, security, and privacy vulnerabilities in the following:

  • Finance regulatory compliance testing such as NAIC/MAR, SOX, EHNCA, ICFR, or equivalent
  • Information technology compliance testing such as ISO27001/2013, COSO, AICPA/SOC(I,II,III) or equivalent
  • Information security compliance testing such as CMS ARS, CIS, CSA, or equivalent
  • Information privacy compliance testing such as HIPAA (45 CFR), GDPR, CCPA, NYCRR, or equivalent
  • GRC frameworks such as NIST (800-36), ISO (27k series), COBIT, ITIL, GAAS or equivalent
  • Compliance crosswalk methodologies and models such as SCF, CCF, UCF, RMF, HITRUST, or equivalent

Proven leadership with multiple cross-functional teams in a deadline-driven environment

Excellent written reporting and presentation skills

Ability to travel approximately 25% of the time

Clean credit history as reported by credit report

Preferred Skills

IT Auditor experience within internal/external audit team

Compensation range for the role is listed below. Applicable salary ranges may differ across markets. Actual pay will be determined based on experience and other job-related factors permitted by law. As a part of the compensation package, this role may include eligible bonuses and commissions. For more information regarding VSP Vision benefits, please click here.

Salary Ranges: $80,000.00 - $135,000.00

VSP Vision is an equal opportunity employer and gives consideration for employment to qualified applicants without regard to age, gender, race, color, religion, sex, national origin, gender identity, sexual orientation, disability or protected veteran status. We maintain a drug-free workplace and perform pre-employment substance abuse testing.

Notice to Candidates: Fraud Alert - Fake Job Opportunity Solicitations Used to Collect Fees/Personal Information.

We have been made aware that fake job opportunities are being offered by individuals posing as VSP Vision and affiliate recruiters. Click here to learn about our application process and what to watch for regarding false job opportunities.

As a regular part of doing business, VSP Vision (“VSP”) collects many different types of personal information, including protected health information, about our audiences, including members, doctors, clients, brokers, business partners, and employees.  VSP Vision employees will have access to this sensitive personal information and are subject to follow Information Security and Privacy Policies.

Elevate your application

Let our AI craft your perfect cover letter and align your resume to this job's criteria.

By using our AI tools, you consent to sharing your profile with our AI partner for this purpose.

Apply now

Please let VSP Vision know you found this job on Himalayas. This helps us grow!

Apply now

About the job

Apply before

Jun 24, 2024

Posted on

Apr 25, 2024

Job type

Full Time

Experience level

Senior

Salary

Salary: 80k-135k USD

Location requirements

Hiring timezones

Canada +/- 0 hours, and 2 other timezones
Claim this profileVSP Vision logoVV

VSP Vision

Company size

View company profileVisit vspvision.com

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

24 remote jobs at VSP Vision

Explore the variety of open remote roles at VSP Vision, offering flexible work options across multiple disciplines and skill levels.

View all jobs at VSP Vision

Remote companies like VSP Vision

Find your next opportunity by exploring profiles of companies that are similar to VSP Vision. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join thousands of other remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan