Information Security Compliance Analyst

Kforce Technology
Boca Raton
05 Aug 2022
02 Sep 2022
Employer Sector
Technology, IT & Telecoms
Contract Type
Full Time


Kforce's client is seeking a Security Compliance Analyst to join their team in Boca Raton, FL. Summary: The Information Security Compliance Analyst will help stand up a new SOC Audit program for one of our business lines. This role will work alongside an external audit firm to help establish a controls framework for the SOC audit, complete a SOC readiness assessment, remediation management and manage the SOC examination in partnership between IT and the business. The Information Security Compliance Analyst will facilitate the activities of this program from beginning to end in support of obtaining a SOC opinion. Responsibilities:
  • Wrking closely with support teams to ensure the design, implementation, and administration of the SOC controls are performing as designed
  • Manage day to day activities and needs of external audit to ensure proper facilitation of the readiness assessment/audit
  • Plan, organize and conduct a SOC compliance readiness assessment and examination in partnership with an external audit firm
  • Educates business owners on SOC audit requirements and how to properly evidence performance of controls
  • Provide written reports on a weekly and ad hoc basis for Information Security leadership
  • Serve as a liaison between the business and IT to create and document control design and implementation
  • Assist and track open remediation items from SOC assessment/examination to ensure timely completion
  • Assist with daily operations and provide general administrative support to the assigned IT Compliance organization
  • Generates testing procedures for business owners to best understand control testing steps by the auditor
  • Create process change by integrating new control processes with existing processes and work with control owners to implement the necessary changes to the teams impacted

Job Requirements:


  • Bachelor's degree in Computer Science, Information Technology, Finance or business administration
  • CISA, CISSP,CISM or PMP certification(s) desired
  • 5+ years of IT experience in a highly complex environment
  • 5+ years of experience in internal/external audit or compliance field
  • 3+ years of Big4 public accounting, national firm/practice or equivalent experience
  • Participation in or management thereof of at least five SOC audits is preferred
  • Ability to make recommendations to improve the design and effectiveness of IT and Security Controls
  • Must understand and be familiar with common controls framework like COSO and a working knowledge of the SOC2 Security Trust Principles Communicates findings/exceptions to leadership and process owners in a timely manner
  • Requires a knowledge of IT general controls, network operating environments, network components, an understanding of information technology infrastructures, operating systems, servers, information security management, relational database management systems, program changes, web applications, eCommerce sites, BCP/DR, and systems development life cycles
  • Experience in performing IT engagements that includes, but is not limited to SOC1, SOC2, SOX, PCI and other Risk Assurance ITGC engagements
Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.