Senior Associate, Information Assurance Services (SOC Focus) at Appirio | Torre

Senior Associate, Information Assurance Services (SOC Focus)

Emma highlights
This highlight was written by Emma’s AI. Ask Emma to edit it.
Full-time

Legal agreement: Employment

Compensation
USD81.5k - 132k/year
location_on
Remote (for United States residents)
Shared by
Emma of Torre.ai
17 days ago

Responsibilities


Join Aprio's Risk Advisory and Assurance Services (RAAS) team and you will help clients maximize their opportunities.  Aprio is a progressive, fast-growing firm looking for a Senior Associate, Information Assurance Services to join their dynamic team!Aprio’s Information Assurance Services (IAS) practice supports the delivery of attestation and consulting services for multiple clients in data and tech-based industries such as credit reporting and analytics, payment card services, healthcare IT, and cloud services. The business model and methodologies are focused on risk management and adding value to clients in all services provided.  Aprio’s IAS group utilizes sound business practices and technical expertise (rather than working off checklists) to enable clients to identify, mitigate, and monitor the most technical risks associated with their technology use.Project and focus areas within the Information Assurance Services practice include: Service Organization Control (SOC) Reporting (e.g., SOC 1 and SOC 2)Payment Card Industry Data Security Standard (PCI DSS)ISO Standards (e.g., ISO 27001/27002, 22301GDPR  HITRUST  Risk AssessmentsRisk ManagementCyber Threats and CybersecurityAgreed Upon ProceduresInternal Audit Co-SourcingEI3PA Requirements: Planning and leading client meetings, walk-through reviews of clients control procedures and processes; delivery and presentation of client deliverables.  Developing and leading the performance of, testing of clients’ security, privacy and other information risk management related controls.  Directing the execution of testing of clients’ internal controls, testing of clients’ internal controls and review of internal control testing executed by other team members. Supporting clients in problem identification and resolution. Performing assessments and testing against leading information security and privacy standards and frameworks, including ISO 27001, Trust Services Criteria, PCI DSS, NIST CSF, GDPR, HITRUST and others. Leading and supporting preparation of client reporting deliverables; e.g., gap and risk assessments, SOC reporting, GDPR assessments, ISO 27001 certifications, etc.  Practice Development/Sales and Marketing/Team Building: Collaborating with other team members to streamline internal processes and procedures to improve client service and efficiencies. Participate in meetings with new prospects and/or new service opportunities with existing clients. Support preparation of sales proposals.   Interviewing potential candidates. Being a mentor and/or coach to other team members.Support in the development and delivery of training. Qualifications:One or more industry relevant certifications or wiliness to obtain relevant certification(s) within two years of employment.Certifications can include: CISA, CRISC, CIPP, CISSP, CISM, QSA, ISO/IEC 27001, or PCI ISA. Undergraduate Degree (required): preferably in MIS/IS or related concentration – minimum 3.3 GPA. Graduate Degree (preferred): preferably in MIS, IS or Accounting Information Systems.Relevant work experience (2-4 years). Strong communication skills; verbal and written, with the ability to produce excellent written reports and audit documentation. Commitment to continual learning and development. Commitment to exceptional client service and creative problem-solving ability with a consultancy mindset. Flexible, self-starter with the ability to interact with various levels of client and firm management. Understanding of information technology risks and internal controls. Ability to write test procedures and execute tests of controls. Understanding of Service Organization Control, PCI, ISO, HITRUST and/or similar information technology control frameworks. Ability to travel up to 40%.Ability to manage personal schedule and to lead multiple projects, tasks and deadlines. Perks/Benefits we offer for full-time team members:Medical, Dental, and Vision Insurance on the first day of employmentFlexible Spending Account and Dependent Care Account401k with Profit Sharing9+ holidays and discretionary time off structureParental Leave – coverage for both primary and secondary caregiversTuition Assistance Program and CPA support program with cash incentive upon completionDiscretionary incentive compensation based on firm, group and individual performanceIncentive compensation related to origination of new client salesTop rated wellness programFlexible working environment including remote and hybrid optionsWhat’s in it for you:Working with an industry leader: Be part of a high-growth firm that is passionate for what’s next.An awesome culture: Thirty-one fundamental behaviors guide our culture every day ensuring we always deliver an exceptional team-member and client experience. We call it the Aprio Way. This shared mindset creates lasting relationships between team members and with clients.A great team: Work with a high-energy, passionate, caring and ambitious team of professionals in a collaborative culture.Entrepreneurship: Have the freedom to innovate and bring your ideas to help us grow to become the CPA firm of choice nationally.Growth opportunities: Grow professionally in an environment that fosters continuous learning and advancement.Competitive compensation: You will be rewarded with competitive compensation, industry-leading benefits and a flexible work environment to enjoy work/life balance.Why work for Aprio:Whether you are just starting out, looking to advance into management or searching for your next leadership role, Aprio offers an opportunity to grow with a future-focused, innovative firm.The application window is anticipated to close on August 10, 2026, and may be extended as needed.