IT Audit Consultant (SOC 1 / SOC 2)
THE COMPANY – BARR ADVISORY
BARR Advisory is a security and compliance solutions provider specializing in cybersecurity and compliance for organizations with high-value data that serve regulated industries such as healthcare, financial services, and government. Serving some of the fastest growing cloud-based organizations around the globe, BARR simplifies compliance across multiple regulatory and customer requirements.
ABOUT THE ROLE
As an IT Audit Consultant on our SOC Services team, you'll lead SOC examinations for innovative organizations ranging from fast-growing startups to enterprise clients. You'll serve as a trusted advisor throughout the audit lifecycle, partnering closely with clients, mentoring junior consultants, and delivering high-quality compliance engagements that help organizations build trust with their customers. Success in this role means independently leading client engagements, building lasting client relationships, developing the next generation of consultants, and delivering exceptional client experiences while maintaining the highest standards of audit quality. If you enjoy combining technical expertise with leadership, thrive in a collaborative consulting environment, and take pride in helping clients solve complex compliance challenges, you'll feel right at home on our team.
WHAT YOU'LL DO
- Lead SOC 1 and SOC 2 engagements from planning through report issuance, ensuring high-quality client deliverables.
- Build trusted relationships with clients by managing engagement timelines, expectations, and communication throughout the audit process.
- Evaluate information security controls through walkthroughs and testing, while providing practical recommendations.
- Review workpapers and prepare reports to ensure quality, consistency, and compliance with professional standards.
- Mentor and coach Associates through technical development, engagement execution, and client interactions.
- Collaborate with cross-functional teams to enhance methodologies, documentation, and internal processes.
- Identify opportunities to improve engagement quality, audit methodology, and the overall client experience.
WHAT YOU BRING
- Bachelor's degree in Information Technology, Information Systems, Cybersecurity, Accounting, or a related field, or an equivalent combination of education and experience.
- 3+ years of experience in IT auditing, cybersecurity compliance, or IT advisory, preferably within a consulting or CPA firm.
- 2+ years leading SOC 1 and SOC 2 engagements (Type I and Type II).
- Experience performing walkthroughs, control testing, audit documentation, and report preparation for SOC examinations.
- Strong knowledge of the AICPA Trust Services Criteria (TSC) and internal control concepts.
- Experience evaluating information security risks, control design, and operating effectiveness.
- Working knowledge of cloud environments (AWS, Azure, or Google Cloud Platform) and/or on-premises infrastructure.
- Experience mentoring or supervising junior auditors or consultants.
- Excellent written and verbal communication skills, with the ability to independently manage client relationships.
- Ability to obtain an industry certification (CISA, CPA, CISSP, CISM, ISO Lead Auditor, etc.) within one year of hire.
- Ability to travel up to 20% as needed.
YOU'LL STAND OUT IF YOU…
- Have experience with additional compliance frameworks such as ISO 27001, HITRUST, HIPAA, or PCI DSS.
- Have worked with compliance automation or GRC platforms such as Vanta, Drata, Secureframe, or similar tools.
- Enjoy mentoring others and helping shape best practices within a growing consulting team.
- Bring a continuous improvement mindset and enjoy finding ways to enhance client and team experiences.
PERKS & BENEFITS
- Remote-first workplace, including a $200/month work-from-home stipend
- Competitive compensation, including employer-paid health and wellness benefits
- Monthly Uber Eats meal stipend
- Monthly WeWork office stipend for flexible workspace access
- 401(k) with employer matching
- Employee performance bonus program
- Client and employee referral program
- Media engagement opportunities and PR exposure
- In-house manager development and leadership training
- Professional certification support and continuing education opportunities
- Unlimited PTO and paid company holidays
- Employer matching gift program and volunteer paid time off
- Collaborative, team-oriented environment
WHY JOIN BARR ADVISORY
BARR Advisory specializes in meeting clients where they are, from small start-ups to global enterprises and everything in between. With the ability to customize our cybersecurity compliance and consulting services based on the individual needs of our clients, we bring a friendly and unique approach to how we serve them. As we get to know our clients, their teams, and their systems, we become true partners and trusted advisors. At BARR, we empower organizations to build trust by establishing, managing, and auditing cybersecurity and compliance programs.
At BARR Advisory, our core values guide everything we do. Our team finds fulfillment in serving others and supporting each other, which translates into trusted client relationships. While it is a fun place to work, we solve tough problems together and collaborate to bring the highest level of quality to our clients. BARR invests in the remote culture to ensure our teams have a high level of autonomy, mastery, and purpose, along with empowerment to be their true selves.
EQUAL OPPORTUNITY EMPLOYER
At BARR, we are proud to be an inclusive workplace, and we are committed to hiring and developing diverse talent.
BARR Advisory is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, gender identity, sexual orientation, national origin, disability status, protected veteran status, or any other characteristic protected by law.
We are committed to providing reasonable accommodation to individuals with disabilities throughout the application and interview process and in the performance of essential job functions. Please contact us to request an accommodation.
At this time, we are unable to consider candidates who require US work authorization sponsorship, now or in the future, or candidates who reside outside of the United States.