Review vendor contracts, SLAs, and other IT and cybersecurity contractual requirements to confirm compliance with contractual obligations. Evaluate the design and implementation of vendor cybersecurity controls against contractual and industry standards. Collect and analyze evidence such as security policies, system configurations, logs, and access records. Conduct interviews with vendor personnel to assess security practices and governance. Perform control testing and sampling to verify the effectiveness of technical and administrative safeguards. Identify gaps, deficiencies, or non-compliance in vendor controls and assess associated risks. Prepare audit reports summarizing findings, risks, and recommended corrective actions. Track remediation efforts and validate closure of audit findings. Coordinate with internal stakeholders to ensure vendor risks are communicated and addressed.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed