Summary
Agency Cybersecurity is seeking a Cybersecurity Account Associate to support their SOC 2 attestation and cybersecurity assurance engagements. This role involves client-facing support, light technical work, and project management to assist organizations in navigating SOC 2 audits.
Responsibilities
- Serve as a primary point of contact for day-to-day client questions during SOC 2 audit projects, ensuring timely and professional communication
- Coordinate and track audit evidence requests, including sending requests, collecting documentation, and following up with client stakeholders
- Help organize and maintain audit workpapers, client documentation, and project artifacts in our internal systems
- Support senior auditors in performing control walkthroughs, scheduling interviews, and documenting client processes related to SOC 2 trust services criteria
- Monitor project timelines, update project plans, and proactively flag risks or delays to engagement leads
- Assist with drafting client-facing communications such as status updates, meeting summaries, and evidence request lists
- Perform light analysis on client security and IT control documentation (e.g., access control lists, change management logs, policies) under the guidance of senior team members
- Contribute to internal knowledge bases, checklists, and templates to improve the consistency and quality of SOC 2 engagements
- Participate in training on SOC 2, security frameworks (e.g., ISO 27001, NIST), and IT audit methodologies to build toward professional certifications such as CISA or CISSP
Skills
- Bachelor's degree in information systems, computer science, business, accounting, or a related field
- 1–2 years of experience in customer service, IT support, IT operations, or technology/IT sales with a strong customer-facing component
- Demonstrated ability to manage multiple tasks, prioritize workload, and meet deadlines in a structured environment
- Strong written and verbal communication skills, including experience communicating with non-technical stakeholders
- Comfort working with common productivity tools (e.g., Office/Google Suite, ticketing or CRM systems, collaboration tools)
- Interest in cybersecurity, IT audit, and assurance, with a desire to build a long-term career in this space
- Current or in-progress CISA or CISSP (including Associate-level status), or an active study plan toward these certifications
- Experience supporting audits, IT control reviews, or GRC/compliance programs (e.g., SOC 2, ISO 27001, NIST CSF, HIPAA, PCI DSS)
- Exposure to SaaS environments, cloud platforms, or core IT security concepts such as access management, logging, and change management
- Prior experience in a client service or consulting environment coordinating multiple stakeholders
Qualifications
Must Haves
- Bachelor's degree in information systems, computer science, business, accounting, or a related field
- 1–2 years of experience in customer service, IT support, IT operations, or technology/IT sales with a strong customer-facing component
- Demonstrated ability to manage multiple tasks, prioritize workload, and meet deadlines in a structured environment
- Strong written and verbal communication skills, including experience communicating with non-technical stakeholders
- Comfort working with common productivity tools (e.g., Office/Google Suite, ticketing or CRM systems, collaboration tools)
- Interest in cybersecurity, IT audit, and assurance, with a desire to build a long-term career in this space
Nice to Haves
- Current or in-progress CISA or CISSP (including Associate-level status), or an active study plan toward these certifications
- Experience supporting audits, IT control reviews, or GRC/compliance programs (e.g., SOC 2, ISO 27001, NIST CSF, HIPAA, PCI DSS)
- Exposure to SaaS environments, cloud platforms, or core IT security concepts such as access management, logging, and change management
- Prior experience in a client service or consulting environment coordinating multiple stakeholders
Benefits
- Structured mentorship from senior auditors and security professionals, with opportunities to obtain the experience hours required for CISA/CISSP eligibility over time.
- Ongoing training on SOC 2 auditing, cybersecurity frameworks, and client service best practices to accelerate your professional growth.