Back to Jobs

SOC 2 and CMMC Internal Audit Liaison

Remote, USA Full-time Posted 2026-06-13

Job Description:

  • Work with our engineers, support representatives, and external auditors to develop and maintain audit programs.
  • Perform complex, senior-level auditing and advisory work to develop a new audit program and processes for SOC2 and Department of Defense (DOD) Cybersecurity Maturity Model Certification (CMMC) / FedRAMP.
  • Conduct research, benchmarking, examining and reviewing records & financial statements.
  • Perform data & risk analyses, identify appropriate controls, assess business processes, and evaluate management processes.
  • Manage the development of an appropriate audit scope, selection of an external auditor, and successful completion of audits annually.
  • Continuously collect operational documentation and data samples to close process gaps or document accepted risk before a gap becomes a finding.
  • Maintain relationships with external auditors to anticipate changes to audit focuses and prepare the organization.
  • Educate the organization about audit requirements, risk analysis and controls, and assist with integrating best practices into existing operational framework.
  • Identify and document corrective actions based on audit reports.
  • Respond to client requests for documentation of processes and audit reports.
  • Understand and follow changes to CUECs from partners and vendors.

Requirements:

  • Auditing in accordance with generally accepted auditing standards and risk-based internal auditing.
  • Basic information technology controls in a cloud environment.
  • Analyzing, interpreting, and summarizing data, policies, and procedures for effective performance of audit work.
  • Establishing and maintaining trust-based relationships with internal and external stakeholders.
  • Have advanced writing and communication skills.
  • Be willing to apply your skills across our small organization, from the low level (e.g. writing process documentation) to high level (e.g. developing organizational audit plans).
  • Help us maintain the culture and values of our organization.
  • Some experience with DOD cybersecurity requirements and contracts, e.g. NIST 800-171.
  • Some experience with FedRAMP requirements.

Benefits: Apply tot his job Apply To this Job

Similar Jobs

Principal Biostatistician

Remote, USA Full-time

Principal Biostatistician RWE -PhD Required (NA Only)

Remote, USA Full-time

Senior Biostatistician - FSP

Remote, USA Full-time

Principal Biostatistician Consultant- 3 days Hybrid at Malvern PA

Remote, USA Full-time

Principal Biostatistician (Biomarker Analyst -EMEA and US BASED)

Remote, USA Full-time

Referral Partner (JD003) – Internal Audit & GRC Support (U.S. Companies | DACH Interface | 100% Commission | Remote)

Remote, USA Full-time

Biostatistician MOA & Biomarker (Mechanism of Action Study) (Remote)

Remote, USA Full-time

Lead Biostatistician

Remote, USA Full-time

Senior Biostatistician for inhouse project (Permanent role)

Remote, USA Full-time

Biostatistician II, Pharmacovigilance Focus- Fully remote!

Remote, USA Full-time

Part-Time Customer Service Representative – Retail & Postal Services at arenaflex

Remote, USA Full-time

Remote Pre-Licensed Customer Service Representative – Insurance Support & Client Solutions

Remote, USA Full-time

Experienced Customer Service Representative – Remote Opportunity at arenaflex

Remote, USA Full-time

Experienced Live Chat Support Representative – Amazon Customer Service Team

Remote, USA Full-time

Experienced Full Stack Customer Service Travel Specialist – Work From Home Opportunity at arenaflex

Remote, USA Full-time

Enterprise Customer Success Manager, Grammarly for Education

Remote, USA Full-time

Experienced Customer Service Representative – Delivering Exceptional Experiences for arenaflex Clients

Remote, USA Full-time

Principal AI Engineer - Servicing Solutions - (Remote - USà

Remote, USA Full-time

Looking for Illustrator for YA Mystery Graphic Novel (Initial Assets & Pilot Page) - Contract to Hire

Remote, USA Full-time

Controller (Remote, Consultant) for Non-profit Org.

Remote, USA Full-time