Risk Cyber Internal Audit Senior Associate

Grant Thornton
New York, New Jersey
Workplace: HybridFull timeUSD 101,200 - 129,030 annuallyFunction: Finance & AccountingExperience: 3+ yearsEducation: bachelorsSkills: ["Communication","Presentations","Project management","Mentorship","Client engagement"]

Perform internal audits and cybersecurity risk assessments for clients, including control testing, walkthroughs, interviews, and maturity evaluations. Use frameworks such as NIST CSF and ISO/IEC 27001 to identify gaps, assess cybersecurity program capabilities, and deliver actionable, risk-based recommendations. Support regulatory compliance assessments (e.g., HIPAA, FedRAMP, GLBA) and deep dives into emerging risks like AI, cloud, quantum, and supply-chain threats, while mentoring junior team members.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Grant Thornton
Grant Thornton
2 days ago

Risk Cyber Internal Audit Senior Associate

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Perform internal audits and cybersecurity risk assessments for clients, including control testing, walkthroughs, interviews, and maturity evaluations. Use frameworks such as NIST CSF and ISO/IEC 27001 to identify gaps, assess cybersecurity program capabilities, and deliver actionable, risk-based recommendations. Support regulatory compliance assessments (e.g., HIPAA, FedRAMP, GLBA) and deep dives into emerging risks like AI, cloud, quantum, and supply-chain threats, while mentoring junior team members.
Location: New York, New Jersey
Workplace: Hybrid
Employment Type: Full time
Job Function: Finance & Accounting
Seniority: Mid level

Key Responsibilities

  • •Plan and execute cybersecurity internal audits, risk assessments, and control testing engagements.
  • •Lead walkthroughs, interviews, and workshops to understand security processes and technology environments.
  • •Perform cybersecurity control testing and cybersecurity program capability assessments, including maturity assessments.
  • •Assess regulatory compliance and develop documented process, risk, and control improvement recommendations.
  • •Identify emerging technology risks (e.g., AI, cloud, quantum, supply-chain) and support client engagement from planning through reporting.
Travel: Low travel

Pay and Benefits

Salary: USD 101,200 - 129,030 annually

Key Requirements

  • •Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • •3+ years of experience in Cybersecurity, internal audit, or IT risk.
  • •Familiarity with cybersecurity and risk/compliance frameworks including NIST CSF, NIST 800-53/800-171, CSA CCM, ISO/IEC 27001/27002, COBIT, and HITRUST.
  • •Experience supporting regulatory compliance assessments, including HIPAA, FedRAMP, GLBA, and state-led data breach notification laws.
  • •CISA or CISSP (or similar) preferred, along with strong communication and presentation skills with stakeholders.
Experience:3+ yearsCybersecurityInternal auditIT risk
Education:Bachelor's in Cybersecurity, Information Technology, Computer Science, or a related field
Skills:CommunicationPresentationsProject managementMentorshipClient engagement
Certifications:CISACISSP
Tech Stack:NIST CSFNIST 800-53NIST 800-171NIST AI RMFCSA CCMISO/IEC 27001ISO/IEC 27002COBITHITRUSTHIPAAFedRAMPGLBAGDPRPCI DSSCloud securityIncident responseVulnerability managementAI riskAI model risksQuantum-computing risks

Company Brief

Grant Thornton
Global accounting and advisory network providing audit, tax, and consulting services to businesses, public sector entities, and private clients across industries through independent member firms operating under the Grant Thornton brand.
Industry: Professional Services
Company Size: Enterprise (1,001+ employees)
Growth: Established Company
Headquarters: London, United Kingdom
WebsiteLinkedIn