Jobs Companies Picus Information Systems Auditor

Sobre este puesto de Information Systems Auditor en Picus

Picus · Remoto · Ankara, Turkey
Are you passionate about technology and enjoy explaining complex solutions in a way that everybody gets excited? If so, read on!
 
About Picus
Picus Security is an exposure validation company. One platform proves what attackers can exploit and what your defenses stop, turning every exposure into a defensible decision, autonomously and at the machine speed today's AI threats demand.

Picus validates attack surfaces, exposures, and security controls as one continuous loop: validate, decide, fix, re-validate. Instead of ranking findings by severity score, Picus proves which exposures are genuinely exploitable in your environment, including the business-critical, restricted, and air-gapped assets a live exploit can never safely touch, so teams act on what truly matters and resolve each exposure into a clear call to patch, mitigate, monitor, or accept with evidence.

The Picus Platform spans Autonomous Penetration Testing, Exposure Validation, and Breach and Attack Simulation, unified by Picus Swarm, a swarm of AI agents that runs the whole validation loop continuously. It reaches across on-prem, hybrid cloud, and endpoint environments, with 75+ integrations that ingest from scanners like Tenable and Wiz and operationalize through your EDR, SIEM, firewall, and ticketing tools.

The pioneer of Breach and Attack Simulation, Picus proves and improves the security controls you already own, doubling control effectiveness within three months. Picus holds a 95% recommendation rate, 4.9 on G2, and 4.8 on Gartner Peer Insights, and is the #1 Leader on Frost Radar for Automated Security Validation.


About The Role

We are seeking an Information Systems Auditor to join our fast-growing cybersecurity company and strengthen our governance, risk, and compliance capabilities at scale. This role plays a critical part in maintaining global certification readiness, enhancing control maturity, and embedding a proactive security and privacy mindset across the organization. Beyond audit execution, you will act as a strategic advisor to business and technology teams, shaping scalable and risk-aware processes in a cloud-native and AI-driven environment. You will contribute to the continuous evolution of our governance framework, ensuring alignment with international standards while enabling innovation and sustainable growth. This position directly supports regulatory confidence and reinforces the trust our global customers place in Picus.

What You'll Do

  • Plan and execute risk-based IT and internal audits, with a strong focus on secure SDLC, software engineering processes, cloud infrastructure, and AI security domains,
  • Evaluate and enhance the effectiveness of security and governance controls, driving continuous improvement across policies and processes,
  • Manage audit and security vulnerability findings end-to-end, ensuring sustainable remediation and measurable control improvements,
  • Lead and oversee global compliance programs (ISO/IEC 27001, 22301, 27701, 20000-1, SOC 2, NIST CSF, CSA STAR) to maintain continuous audit readiness,
  • Actively support the Third-Party Risk Management (TPRM) program by participating in SaaS security assessments and vendor due diligence,
  • Define and track key audit and compliance metrics, reporting insights to leadership and relevant stakeholders,
  • Assess the risk and privacy impact of emerging technologies (AI, ML, and automation), guiding engineering teams on secure adoption practices.
  • What You Have

  • 5+ years of hands-on experience in audit, compliance, risk management, or information security, preferably within a SaaS, cloud-native, or technology-driven environment,
  • Hands-on experience with ISO/IEC standards (27001, 27701, 22301, 20000-1) and SOC 2, including preparation, audit coordination, and evidence management,
  • Experience advising cross-functional stakeholders and influencing control improvements in dynamic technology environments,
  • Practical knowledge of international security and privacy regulations (e.g., GDPR, CCPA) and related compliance practices,
  • Experience supporting or managing Third-Party Risk Management (TPRM), vendor due diligence, and customer-facing compliance processes,
  • Proven ability to manage multiple audits and compliance initiatives simultaneously in a fast-paced environment,
  • Strong verbal and written communication skills in English, including documentation and policy writing.
  • Preferred Certifications:
  • ISO 27001, 22301, 27701, 20000-1 LA
  • ISACA certifications such as CISA, CISM, or CRISC
  • Experience with SOC 2, NIST, CSA STAR reporting frameworks
  • ITIL certification (nice-to-have)

  • Working at Picus
    Fascinating work - a chance to shape and lead an exciting, fast-growing cyber security segment. Security Validation is a concept that helps organizations evaluate their security posture in a continuous, automated, and repeatable way. This approach allows for the identification of imminent threats, provides recommended actions, and produces valuable metrics about cyber-risk levels.
     
    Unlimited opportunity! We are growing. At Picus, you'll be provided with as much responsibility as you can handle - new career development opportunities constantly arise given our rate of growth.
     
    Global exposure - Get a lot of experience working not only in a fast-growing startup but also interact with customers all around the world.
     
    Be part of a global remote team who is taking on Exposure Validation and a growing market segment.
     
    We are an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to age, sex, race, color, national origin, religious belief, gender or gender reassignment, sexual orientation, marriage or civil partnership, pregnancy and maternity, disability, protected veteran status, or any other characteristic protected by International law.  Upon conditional offer of employment, candidates are required to complete reference and identity checks in line with local labor laws and as per the Company’s employment policy. 
     
    Picus Security processes candidates' personal data in accordance with applicable data protection laws. For detailed information on how your personal data is processed during the recruitment process, please review our Candidate Privacy Notice
    ¿Listo para postularte en Picus?
    Postúlate en Picus

    Empleos similares

    Aprio
    Senior Audit Manager, Non-Profit
    Aprio
    ⚡ Postúlate pronto Portland, OR Híbrido
    ● Nuevo 👁 Visto ✓ Postulado hace 23m
    Coinbase
    Senior Manager, Security Audit
    Coinbase
    ⚡ Postúlate pronto Remote - USA · restringido por ubicación $201,365–$236,900
    ● Nuevo 👁 Visto ✓ Postulado hace 5h
    Ardent
    Cyber Lead Auditor / Test Lead
    Ardent
    ⚡ Postúlate pronto Atlanta, GA; Hybrid/Remote; Ta... Híbrido
    ● Nuevo 👁 Visto ✓ Postulado hace 6h
    TP
    Senior Internal Auditor - SOX Compliance
    Tonix Pharmaceuticals
    ⚡ Postúlate pronto Berkeley Heights, NJ Presencial $80,000–$110,000
    ● Nuevo 👁 Visto ✓ Postulado hace 7h
    Datadog
    Engineering Manager I, Commercial Audit
    Datadog
    ⚡ Postúlate pronto New York, New York, USA Presencial $192,000–$240,000
    ● Nuevo 👁 Visto ✓ Postulado hace 7h
    Aprio
    Senior Audit Manager, Construction
    Aprio
    ⚡ Postúlate pronto Portland, OR Híbrido
    ● Nuevo 👁 Visto ✓ Postulado hace 8h
    CA
    Enfermeiro Auditor/Nutricionista Fiscal - Remoto - Rio de Janeiro/Macaé
    Capco
    ⚡ Postúlate pronto Brazil - Rio de Janeiro Presencial
    ● Nuevo 👁 Visto ✓ Postulado hace 8h
    Ethos Life
    Underwriting Auditor
    Ethos Life
    ⚡ Postúlate pronto Bangalore, India Presencial
    ● Nuevo 👁 Visto ✓ Postulado hace 9h
    Ethos Life
    Underwriting Auditor
    Ethos Life
    ⚡ Postúlate pronto Bangalore, India Presencial
    ● Nuevo 👁 Visto ✓ Postulado hace 9h

    Regístrate para recibir sugerencias adaptadas a los empleos que abres y las búsquedas que guardas.

    Más empleos en Picus

    Ver todos los empleos en Picus →

    Postúlate ahora
    🤖

    Un momento — para

    JobsRadar se creó para personas reales que están pasando un mal momento en su búsqueda de empleo — no para solicitudes automatizadas. Estás haciendo clic demasiado rápido y ahora estás bloqueado temporalmente.

    Vuelve más tarde. Si de verdad estás buscando empleo, cuentas con nosotros — solo compórtate como una persona.

    Catch your next role the second it’s posted.

    Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

    Create free account

    Free forever · takes 30 seconds · already have one?

    Toma ventaja en tu búsqueda de empleo.

    Únete a nuestro canal de Telegram para lo que te ayuda a conseguir el puesto — referencias salariales, el pulso semanal del mercado y avisos de nuevas funciones. Sin spam, solo señal.

    Únete al canal — es gratis