Skip to content

Internal Security Compliance Auditor

Reviews client evidence for compliance frameworks like SOC2, ISO27001, PCI, HIPAA, and GDPR. Conducts QA checks, identifies gaps, and ensures audit readiness through detailed documentation reviews and collaboration with security teams.

Beaverton, OROtherRemote

About the role

Key Responsibilities

  • Perform thorough internal reviews of client-uploaded evidence for compliance frameworks including SOC2, ISO27001, PCI, HIPAA, and GDPR
  • Conduct detailed quality assurance checks on individual controls to verify completeness, accuracy, and sufficiency prior to their audits with third-party auditing firms
  • Execute comprehensive final QA reviews prior to clients engaging with an external auditor
  • Identify gaps or weaknesses in evidence documentation and recommend improvements
  • Develop and maintain internal QA standards and review methodologies
  • Create guidance documents to help clients improve evidence quality
  • Collaborate with Security Program Engineers to address compliance gaps
  • Stay current on evolving compliance requirements across multiple frameworks to ensure our pre-audit preparation meets industry standards
  • Track audit readiness metrics and identify opportunities for process improvement
  • Provide expert feedback to our product team for compliance platform enhancements to better support pre-audit readiness

Requirements

  • Deep understanding of SOC2, ISO27001, PCI, HIPAA, and GDPR requirements
  • Strong technical knowledge of security controls and their implementation
  • Experience reviewing and evaluating evidence for compliance audits, particularly in preparing organizations for external audit processes
  • Excellent attention to detail and quality control mindset
  • Strong written communication skills for documenting findings
  • Ability to work independently while supporting multiple client engagements
  • Familiarity with compliance automation platforms and tools
  • Experience in pre-audit preparation and internal quality assurance, preferably with multiple frameworks
  • Certification in relevant frameworks (e.g., CISA, ISO 27001 Lead Auditor) preferred

Skills

Soc2Iso27001PCIHIPAAGDPRCisaIso 27001 Lead AuditorSecurity ControlsCompliance AutomationAudit Readiness Metrics

Similar roles

Video Editor, Paid Social

Hands-on contract video editor creating scroll-stopping short-form ads for Meta, TikTok, and other platforms. Requires senior-level Premiere Pro/After Effects skills and a portfolio of live paid social campaigns.

70 – 90New York, NY +1OtherRemoteCapcutMeta Ads

Tenant Improvement Project Manager

Lead tenant improvement and workplace buildout projects in Oakland from planning through completion, managing scope, schedule, budget, and vendor coordination. Requires independent project execution and strong cross-functional communication.

135k – 177kOakland, CAOtherOn-site5+ YOEPermittingBudget Management

Credentialing & Enrollment Specialist

Own payer enrollment and credentialing for radiologists and specialists, managing applications, CAQH profiles, and compliance across Medicare, Medicaid, and commercial plans. Requires 3+ years credentialing experience and strong organizational skills.

65k – 73kUnited StatesOtherRemote3+ YOECaqhMedicare

Government and Community Affairs Manager

Support OpenAI’s engagement with California state and local policymakers, community organizations, and stakeholders. Build relationships, monitor policy developments, and develop community partnerships and educational initiatives.

170k – 190kSan Francisco, CAOtherHybrid5+ YOEAdvocacyPublic Policy

Workplace Manager

Owns end-to-end workplace strategy, operations, and events across SF, Montreal, and Hub locations. Leads a team, manages budgets, vendors, and service standards to deliver exceptional in-office experiences.

164k – 246kSan Francisco, CAOtherHybrid5+ YOEEnvoyLiquidspace