Entry-Level Cyber Security / IT Audit Associate (SOC 2)

ConstellationGRC CPA PC
San Marcos, CA, United States
2 months ago

Role details

Contract type
Internship / Graduate position
Employment type
Full-time (> 32 hours)
Experience level
Starter
Compensation
$41,600.0
Working hours
Shift work
Job source

Tech stack

Microsoft Windows Spreadsheets CompTIA Security+ Cyber Security Information Systems Information Technology Audit IT General Controls (ITGC) Information Technology Gsuite CIS Benchmarks

Job description

The position will start off remote until Constellation establishes an office within 12 miles of San Marcos, CA. After that time, most work days will be on site.

The Opportunity This is an entry-level, client-facing role supporting SOC 2 audits. You’ll meet with client stakeholders, answer routine questions, collect evidence, maintain trackers, and assist lead auditors with testing and documentation. Training and clear checklists provided-no prior professional experience required.

What You’ll Do

  • Join client calls during SOC 2 engagements; answer common process questions and escalate complex items.
  • Collect, label, and organize evidence (screenshots, exports, policies) mapped to Trust Services Criteria.
  • Maintain trackers, due dates, organized folders; capture notes and action items after meetings.
  • Assist with control walkthroughs and basic testing under supervision; draft clear workpapers.
  • Prepare client communications (scheduling, reminders, status updates) and Q&A docs.
  • Support related administrative functions: calendar coordination, e-signature packets, intake forms, ticket triage.
  • (As time allows) Assist adjacent frameworks (GDPR, HIPAA) with senior guidance.

Requirements

Do you have experience in Zoom?, Do you have a Bachelor’s degree?, * Education: Degree or in-progress degree in Cybersecurity, Information Systems, IT/IS Audit, Computer Science, or related field (comparable education such as a cyber bootcamp + college coursework welcome).

  • Clear, confident communication-comfortable on Zoom/Teams and in writing.
  • Strong organization & attention to detail; you live by checklists and deadlines.
  • Foundational knowledge of IT general controls, security basics, and what SOC 2 is.
  • Proficiency with Google Workspace or Microsoft 365, spreadsheets, and videoconferencing tools.
  • Ability to work Pacific-time core hours.
  • Early-career certs (e.g., ISC2 CC, CompTIA Security+, CCSK, ISO 27001 Foundations).

Nice to Have

  • Coursework or projects in GRC, audit, or risk management.
  • Familiarity with SOC 2 / ISO 27001 / CIS Controls / NIST frameworks.
  • Internship, campus, or capstone experience (include links or brief descriptions).

Benefits & conditions

Pulled from the full job description

  • Dental insurance, * $20/hour; overtime paid in accordance with applicable law (non-exempt).
  • This role currently offers no employer-provided benefits (e.g., health, dental, vision, retirement).
  • Start date: [ASAP].

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:32 min

Recognizing the persistence and utility of spreadsheet applications

John Bettiol · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

6:10 min

Transitioning agile recruiting teams away from manual spreadsheet management

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

1:19 min

Securing roles upon finishing a computer science degree

Karol Rogowski · LIVE

Videos

See all

Related articles

See all