Information Security Auditor

January 31

Apply Now
Logo of MeridianLink

MeridianLink

MeridianLink is a leading provider of SaaS solutions for financial institutions, specializing in loan origination systems and digital transformation technologies. Their end-to-end platform enhances digital experiences through integration with mortgage LOS, deposit account opening solutions, and more. MeridianLink's cloud-based systems improve efficiency in loan processing and collections, data-driven decision-making, and account management. The company collaborates with partners to expand market reach and drive growth in the fintech industry. With over 25 years of experience, MeridianLink is dedicated to supporting banks, credit unions, and other financial service providers through technology and business intelligence.

technology • financial services • banking • loan origination system • Loan Origination

501 - 1000 employees

Founded 1998

💳 Fintech

🏦 Banking

☁️ SaaS

💰 $485M Post-IPO Debt on 2021-11

📋 Description

• Position Summary: As an Information Security Auditor within the IS and Compliance team, you'll be responsible for safeguarding internal company data and client data through robust information security, compliance, and risk management programs. • Expected Duties: Facilitate audit testing for SOC 2, PCI DSS, and SOX compliance, develop and monitor controls, and assist with remediation guidance. • Cloud & Systems Audits: Lead audits of cloud environments, information systems, and security tools to ensure adherence to frameworks, laws, and regulations. • Security Assessments: Support comprehensive assessments of security controls to determine their effectiveness and ensure they meet security requirements. • Stakeholder Guidance: Guide stakeholders on securing systems and liaise with auditors and compliance teams to implement compensating controls. • Research & Best Practices: Research best practices and trends in information security, ensure execution of required testing, and lead remediation activities for successful security audits/certifications. • Identify Weaknesses: Identify weaknesses in internal controls, provide guidance on improving security compliance processes, and partner with stakeholders to implement solutions. • Policy Alignment: Ensure alignment with internal policies and external regulatory requirements, continuously identify process enhancements, and stay current on changing regulatory requirements and industry frameworks. • This role offers an exciting opportunity to ensure the security and compliance of our technology infrastructure and data assets.

🎯 Requirements

• Education & Experience: Bachelor's degree with 4-6 years of related experience or equivalent work experience. • Audit Expertise: 3+ years of experience in external/internal audit roles managing and leading AICPA SOC 2, PCI DSS, and SOX audits. • Framework Knowledge: Knowledge of industry frameworks and standards such as ISO/IEC 27001:2013, PCI DSS, NIST CSF, and NIST 800-53. • Security Controls: Experience implementing and/or assessing IT security controls to meet security, compliance, and audit requirements. • Certifications: Possess or be working towards professional security certifications such as CISA, CISSP, CRISC, CCSP, CISM, GIAC, QSA, or similar. • Consensus Building: Expertise in building consensus across business partners and technology leaders, and influencing successful outcomes. • Project Management: Strong project management and communication skills, including the ability to gather relevant data, work in a team environment, and manage conflict. • Cloud Assessments: Experience assessing controls within multi-cloud environments and effectively communicating results to stakeholders. • Control Documentation: Assist with documenting control objectives and procedures in areas such as cybersecurity, cloud security, governance and compliance, DevSecOps, data security and protection, incident response, enterprise security architecture, and technology risk management. • Problem-Solving Skills: Strong business and technical aptitude and problem-solving skills. • Continuous Learning: Enthusiasm to learn through structured, on-the-job, and self-directed training. • Communication Skills: Ability to communicate security-related concepts to a broad range of technical and non-technical staff.

🏖️ Benefits

• Potential For Equity-Based Awards • Insurance coverage (medical, dental, vision, life, and disability) • Robust paid time off • Paid holidays • 401(k) plan with company match • Remote work

Apply Now

January 30

Join Advocate-In-Residence to enhance Social Security Disability representation using technology. Be part of a mission-driven organization serving claimants.

January 29

Security Engineer role focusing on security posture for ML infrastructure. Join our team and shape security strategy and best practices.

January 29

Bonterra seeks an Information Security Risk Analyst to enhance compliance and risk measures for social good technology.

Discover 90,000+ Remote Jobs!

Join now to unlock all job opportunities.

Find your dream remote job

Discover hidden jobs

We scan the internet everyday and find jobs not posted on LinkedIn or other job boards.

Head start against the competition

We find jobs within 24 hours of being posted, so you can apply before everyone else.

Be the first to know

Daily emails with new job openings straight to your inbox.

Choose your membership

Cancel anytime

Loved by 10,000+ remote workers

Wall of Love

Frequently asked questions

We use powerful scraping tech to scan the internet for thousands of remote jobs daily. It operates 24/7 and costs us to operate, so we charge for access to keep the site running.

Of course! You can cancel your subscription at any time with no hidden fees or penalties. Once canceled, you’ll still have access until the end of your current billing period.

Other job boards only have jobs from companies that pay to post. This means that you miss out on jobs from companies that don't want to pay. On the other hand, Remote Rocketship scrapes the internet for jobs and doesn't accept payments from companies. This means we have thousands more jobs!

New jobs are constantly being posted. We check each company website every day to ensure we have the most up-to-date job listings.

Yes! We’re always looking to expand our listings and appreciate any suggestions from our community. Just send an email to Lior@remoterocketship.com. I read every request.

Remote Rocketship is a solo project by me, Lior Neu-ner. I built this website for my wife when she was looking for a job! She was having a hard time finding remote jobs, so I decided to build her a tool that would search the internet for her.

Why I created Remote Rocketship

Choose your membership

Cancel anytime

Loved by 10,000+ remote workers
Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or lior@remoterocketship.com