Assurance Senior, Third Party Attestation
$85,000–$125,000 year
On-siteSan Francisco, California, United States
Job Summary
Prepare third-party attestation reports including SOC 1, SOC 2, SOC 3, Cybersecurity, WebTrust, HITRUST, SSPA, ISO, MRC, and CSA STAR by documenting, validating, and testing client control systems. Apply professional standards to design test plans, evaluate deficiencies, and communicate findings to clients and audit committees. Supervise Associates by providing performance feedback, reviewing work assignments, and coaching less experienced team members on new areas. Identify key risks, prioritize issues, and bring complex problems to superiors for resolution while ensuring all work aligns with BDO methodology and regulatory requirements.
Required Qualifications
- Bachelor's degree
- Two (2) or more years of experience in IT, internal or external audit
- Proficiency in Microsoft Office Suite, specifically Word, Excel, and PowerPoint
Desired Qualifications
- focus in Accounting, Computer Science, Management Information Systems, Business Administration, Managerial Marketing and Entrepreneurship, Finance or Economics
- Master's degree in Accounting and minor or dual major in Information Systems or other relevant advanced degree
- One (1) or more year of supervisory experience
- Experience performing internal control reviews
- Experience performing SOC, WebTrust, HITRUST, SOX, ISO 27001 and security/privacy advisory engagements
- One (1) or more of the following certifications: Certified Public Accountant (CPA), Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), ISO 27001 Lead Auditor certification, HITRUST Certified Common Security Framework Professional (CCSFP), Certified Internal Auditor (CIA), Certified Information Security Manager (CISM), Certified Ethical Hacker (C | EH), Certified in Risk and Information Systems Control (CRISC), Certified in the Governance...
- Experience with various applications (e.g., ERP systems), operating systems (e.g., UNIX, Windows); and databases (e.g., Oracle, SQL)
- Exposure to cloud platforms, SaaS applications, security and engineering tools, and other industry software
- Knowledge of data analytics and emerging technologies
- Basic understanding and experience planning and coordinating the stages to perform technology-focused audits and assessments
- Knowledge of internal controls and professional standards and regulations (SOC, ISO, WebTrust, HITRUST, Sarbanes-Oxley, etc)
- Strong verbal and written communication skills with the ability to adapt style and messaging to effectively communicate and interact with professionals at all levels both within the client organization and the firm
- Ability to successfully multi-task while working independently and within a group environment
- Solid analytical and diagnostic skills and ability to break down complex issues and implementing appropriate resolutions
- Solid project management skills
- Ability to travel as necessary
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.