About The Position

This position requires office presence of a minimum of 5 days per week and is only located in the location(s) posted. No relocation is offered. Join AT&T and reimagine the communications and technologies that connect the world. Our Chief Security Office ensures that our assets are safeguarded through truthful transparency, enforce accountability and master cybersecurity to stay ahead of threats. Bring your bold ideas and fearless risk-taking to redefine connectivity and transform how the world shares stories and experiences that matter. When you step into a career with AT&T, you won’t just imagine the future-you’ll create it. The Principal Cybersecurity Audit Management is an individual contributor role with no direct reports. This position is responsible for delivering monthly metrics and coordinating internal and external audits in partnership with AT&T’s Data and Control Owners and external auditing firms. Audits in scope include ISO 9001, ISO 27001, SOC 1, SOC 2, SOC 3, and Service Provider Payment Card Industry Data Security Standards (PCI DSS) What you’ll do:

Requirements

  • Bachelor’s degree in Computer Science, Information Systems, or Accounting is preferred.
  • Advanced proficiency (7+ years) in audit management, project management, and time management, with strong skills in Microsoft PowerPoint, Excel, Outlook, and Word.
  • Demonstrates exceptional verbal and written communication skills, with the ability to convey complex information clearly and persuasively to diverse audiences.
  • Skilled in crafting professional documentation, delivering impactful presentations, and facilitating effective dialogue that fosters collaboration and drives informed decision-making.
  • Demonstrated ability to analyze complex data sets, identify trends, and develop actionable strategies to drive informed decisions and process improvements.

Nice To Haves

  • 5–10 years of experience in IT operations, security operations, and auditing.
  • Extensive knowledge and hands-on experience in IT security, including access controls, network security, logging and monitoring, vulnerability assessments, system hardening, and secure software development preferred.
  • Comprehensive knowledge of auditing practices with hands-on experience in ISO 27001, PCI DSS, and AICPA SOC audits.
  • Professional certifications such as CISSP, CISM, CCSK, CCSP, Project Management, CISA, and CPA.

Responsibilities

  • Facilitate training sessions for internal employees on in-scope requirements, standards, and controls.
  • Conduct meetings to gather, review, and analyze data from complex systems—including applications, operating systems, databases, and network devices—to identify risks, exposures, and compensating controls.
  • Collaborate with internal teams and external auditors to address security control gaps identified during audits.
  • Prepare weekly and monthly status reports detailing outstanding audit items and overall audit progress.
  • Lead weekly meetings to review audit status and facilitate working sessions to resolve open issues.
  • Manage multiple audits with varying deliverable dates across numerous stakeholders, ensuring timely completion and visibility of potential roadblocks.
  • Perform research and analysis on audit topics to provide insights and recommendations for addressing in-scope issues.
  • Capture lessons learned and conduct postmortems to improve processes and tools for internal teams and the PCI audit management team.
  • Develop postmortem presentations highlighting issues encountered during audits and ensure compliance with applicable requirements, standards, and controls.
  • Provide Data and Control Owners visibility into postmortem issues and ensure remediation plans are implemented; follow up periodically on progress.
  • Create and provide monthly audit and compliance metrics.

Benefits

  • Medical/Dental/Vision coverage
  • 401(k) plan
  • Tuition reimbursement program
  • Paid Time Off and Holidays (based on date of hire, at least 23 days of vacation each year and 9 company-designated holidays)
  • Paid Parental Leave
  • Paid Caregiver Leave
  • Additional sick leave beyond what state and local law require may be available but is unprotected
  • Adoption Reimbursement
  • Disability Benefits (short term and long term)
  • Life and Accidental Death Insurance
  • Supplemental benefit programs: critical illness/accident hospital indemnity/group legal
  • Employee Assistance Programs (EAP)
  • Extensive employee wellness programs
  • Employee discounts up to 50% off on eligible AT&T mobility plans and accessories, AT&T internet (and fiber where available) and AT&T phone.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service