Senior Associate, Security Governance, Risk and Compliance (IPCR / ISO)
Join to apply for the Senior Associate, Security Governance, Risk and Compliance (IPCR / ISO) role at KPMG US .
KPMG is known for being a great place to work and build a career, providing audit, tax, and advisory services for organizations in today's most important industries. Our growth is driven by delivering real results for our clients and by a culture that encourages individual development, embraces an inclusive environment, rewards innovative excellence, and supports our communities.
This is a remote work opportunity.
Responsibilities
- Responsible for the execution of high-level compliance audits following the ISO 27001 and 42001 framework
- Apply a thorough knowledge of risk, compliance, information security and privacy to develop and execute a multi-disciplined IT and Security Risk Management implementation plan, with the ability to enable leadership to make informed, risk-based decisions across disparate categories of risk, such as stability, operations, cyber, information handling, physical security, resiliency
- Build and maintain trust-based relationships with peers and leaders; evaluate risk reduction and mitigation activities to continually drive towards risk reduction methodologies and analyze the impacts of key risks, define criteria to make risk tradeoffs, and make recommendations to leadership to minimize overall risk posture; defend KPMG security design and effectiveness capabilities to external entities, as needed
- Evaluate the changing operating landscape and determine its impact on organizational risks, obligations, and external expectations. Recommend changes to risk approach to ensure consistency with current IT and security best practices.
- Oversee work products and lead small to medium size projects, managing deadlines, expectations, and supervising the work performed by more junior staff; provide coaching, mentoring and feedback to such individuals and will serve as an informal performance manager of a team of junior employees
- Thorough review audit workpapers for their quality, timeliness, completeness and accuracy; responsible for escalation requests for control evidence from identified control owners / operators; responsible for the timely collection, evaluation, acceptance or rejection and feedback of control evidence and artifacts thereof
- Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment
Qualifications
Minimum three years of recent experience in information technology (IT) audit within a large professional services environment (Big Four)Bachelor's degree from an accredited college or university is preferred. Minimum of a high school diploma or GED required; relevant industry certifications, such as CISA, CISM, CISSP, ISO 27001 / 42001 Lead Auditor is preferredExperience with ISO 27001 (Information Security and Privacy) an ISO42001 (Artificial Intelligence) evaluation of control, mitigating controls, identification of control deficiencies and facilitation of the remediation processes collaboration is preferredDetail oriented with strong verbal and written communication, problem solving, analytical and independent judgment skills to support an environment driven by customer service and teamwork, along with the ability to positively influence and be a credible source of knowledge to peers and other teamsFamiliarity with the Public Company Accounting Oversight Board (PCAOB), SOC 1 / 2 / 3, AICPA, ISO, COBIT, CSA, ITIL and other related IT and Information Security FrameworksMust be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)Benefits
We are proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well‑being benefits to support your mental health.
Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday.
California Salary Range : $82,200 - $168,200
KPMG offers a comprehensive compensation and benefits package. KPMG is an equal‑opportunity employer. KPMG complies with all applicable federal, state, and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state, or local laws.
No phone calls or agencies please.
Follow this link to obtain salary ranges by city outside of CA : https : / / kpmg.com / us / en / how-we-work / pay-transparency.html / ?id=7476_9_25
Seniority Level
Mid‑Senior levelEmployment Type
Full‑timeJob Function
General BusinessLocation
Remote work opportunity.
#J-18808-Ljbffr