Bridewell logo
BridewellPosted 1 week ago

Data Centre Compliance Auditor

HybridTexas City, Texas, United States or Florida City, Florida, United States

Full TimeMedium

Job Summary

Plan and coordinate external audits for SOC 2, ISO 27001, SOX, and PCI across owned and leased data center portfolios. Own end-to-end evidence gathering from facilities, engineering, and security teams, then respond to auditor inquiries with documented proof. Conduct virtual and on-site walkthroughs, prepare site teams via briefings, and document findings for follow-up actions. Evaluate control design and operating effectiveness within a Three Lines of Defense framework, lead mock audits, and deliver compliance training to data center staff. Support impact assessments for new processes and maintain control documentation. Requires 5+ years in IT audit and SOC 2/ISO 27001 experience; US work authorization mandatory. 25% travel to data center sites required.

Required Qualifications

  • 5+ years of experience in IT audit, compliance or information security
  • demonstrable experience across SOC 2, ISO 27001, SOX and/or PCI
  • Proven experience managing compliance programmes within a Three Lines of Defense (3LOD) governance framework
  • Experience with the AICPA Trust Services Criteria and SOC 2 reporting framework, including Type I and Type II
  • Strong understanding of control design through to control testing, including evaluating both design and operating effectiveness
  • Demonstrable ability to interpret evidence and assess whether it satisfies control objectives and auditor expectations
  • Experience planning and executing compliance audits in data center or critical infrastructure environments
  • Familiarity with physical and environmental security controls, logical access controls and change management processes
  • Strong stakeholder management skills, with the ability to build relationships and influence cross-functional teams at all levels
  • Eligibility: applicants must be authorized to work in the United States
  • Travel for this role is estimated at 25%

Desired Qualifications

  • Professional certification such as CISA, ISO 27001 Lead Auditor, CISSP or CRISC

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce