Esri

Sr. Cybersecurity Audit Analyst

Esri$87K — $150K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in cybersecurity, regulatory compliance, or related field
  • Strong interpersonal skills for effective communication with IT and business units
  • Ability to bridge communications between technical teams and compliance stakeholders
  • Detail-oriented with organizational and presentation abilities
  • Self-motivated team player thriving in fast-paced environments
  • U.S. citizenship with a willingness to obtain a security clearance
  • Bachelor's degree in Cybersecurity or a related field

Responsibilities

  • Coordinate end-to-end external third-party cybersecurity audits
  • Serve as the primary contact between auditors and internal stakeholders
  • Manage evidence requests and follow-up inquiries effectively
  • Ensure timely delivery of complete and organized audit evidence
  • Coordinate audit close-out activities and remediation planning
  • Improve and consolidate audit activities for efficiency
  • Educate stakeholders on the importance of external audits

Benefits

  • Industry-leading health and welfare benefits including medical, dental, and vision
  • 401(k) and profit-sharing programs
  • Minimum accrual of 80 hours of vacation leave
  • Twelve paid holidays each calendar year
  • Opportunities for personal and professional growth
Full Job Description
Overview

The Senior Cybersecurity Audit Analyst is responsible for coordinating and supporting external cybersecurity audits and continuous compliance assessment programs across hybrid enterprise on-premises and cloud environments. This role includes providing assurance with SOC 2, ISO/IEC 27001, FedRAMP, and CMMC compliance, combining traditional audit coordination with ongoing control monitoring and compliance program execution. The role requires strong program management and organizational skills to manage multiple concurrent audits, remediation tracking, continuous monitoring and improvement activities, and internal and external stakeholder communications

Responsibilities

External Audit Coordination
  • Coordinate end-to-end external third-party cybersecurity audits, including scoping, readiness planning, timelines, and evidence coordination
  • Serve as the primary point of contact between external auditors, assessors, and internal stakeholders
  • Manage evidence requests, walkthroughs, interviews, and follow-up inquiries
  • Ensure audit evidence is complete, accurate, well-organized, and delivered on schedule
  • Coordinate audit close-out activities and remediation planning
  • Improve and consolidate audit activities to reduce duplication and improve efficiencies
  • Educate and communicate the importance of external third-party audits to key internal and external stakeholders, including executive management

Continuous Assessment & Ongoing Compliance
  • Establish and maintain continuous compliance and recurring assessment programs between formal audits
  • Track control effectiveness, evidence currency, and remediation activities
  • Support continuous monitoring and evidence automation initiatives

Program Management & Organizational Leadership
  • Manage multiple concurrent compliance initiatives with competing deadlines
  • Ensure documentation and evidence repositories are inspection-ready at all times
  • Work with internal key stakeholders to ensure they are meeting their compliance and continuous monitoring objectives
  • Work with business and technical stakeholders to assess the scope of compliance frameworks associated with systems in scope and adapt to changing cybersecurity framework baselines

Requirements
  • 5+ years of experience, or an equivalent combination of education and work experience, in business, program management, cybersecurity, regulatory compliance or related field
  • A keen interest in learning and developing skills and understanding in IT, cybersecurity and compliance is necessary to foster the communications and relationships central to this role
  • Strong interpersonal and communication skills to work effectively with IT and business units, including senior leadership; ability to bridge communications between technical IT team members, external stakeholders and compliance team members
  • Strong attention to detail, organization and structure, communication, and presentation skills including the ability to list and quickly translate business needs into solutions and build effective working relationships
  • Strong, self-motivated, and productive team player with ability to thrive in a dynamic, fast-paced environment
  • U.S. citizenship with ability and willingness to obtain a security clearance
  • Bachelor's degree in Cybersecurity, business administration, project management

Recommended Qualifications
  • Cybersecurity certifications such as Security+, CISSP, CRISC, and CISA
  • ISO Lead Auditor, Lead Implementor, Cybersecurity Maturity Model Certification (CMMC) Certified Professional or (Lead) Assessor
  • PMP certification
  • Master's degree in Cybersecurity, business administration, project management

#LI-TM1

#LI-onsite

Total Rewards

Esri's competitive total rewards strategy includes industry-leading health and welfare benefits: medical, dental, vision, basic and supplemental life insurance for employees (and their families), 401(k) and profit-sharing programs, minimum accrual of 80 hours of vacation leave, twelve paid holidays throughout the calendar year, and opportunities for personal and professional growth. Base salary is one component of our total rewards strategy. Compensation decisions and the base range for this role take into account many factors including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs.

A reasonable estimate of the base salary range is

$87,360-$150,800 USD

About Esri

Esri is a global leader in geographic information system (GIS) software, location intelligence, and mapping. The company was founded in 1969 and is headquartered in Redlands, California. Esri's software is used by governments, businesses, and non-profit organizations worldwide to analyze and visualize data in order to make better decisions. The company's flagship product, ArcGIS, is a powerful mapping and analytics platform that allows users to create, manage, and share geographic information. Esri has a strong commitment to sustainability and social responsibility, and works to promote environmental stewardship and social equity through its products and services.
Learn more about Esri
Size
11,000 employees
Industry
Founded
1969

Similar Jobs

More Jobs at Esri

More Information Technology Jobs

Find similar Sr. Cybersecurity Audit Analyst jobs: