At Armanino, you determine your career path. This means it's possible to pursue challenges you are passionate about, in industries you care about.
Armanino is proud to be Among the top 20 Largest Accounting and Consulting Firms in the Nation and one of the Best Places to Work. We have a community of resources that are ready and willing to support your ideas, build your skills and expand your professional network. We want you to integrate all aspects of your life with your career. At Armanino, we know you don’t check-out of life when you check-in at work. That’s why we’ve created a unique work environment where your passions, work, and family & friends can overlap. We want to help you achieve growth by giving you access to a network of smart and supportive people, willing to listen to your ideas.
Job Responsibilities
Own and drive ISO 27001 certification efforts, including risk registers, nonconformities, and corrective actions
Support SOC 1 Type 2 audit readiness and remediation initiatives
Lead Quality Management System (QMS) audits
Support Data Loss Prevention (DLP) initiatives and assessments
Assist with Vendor Security Management Program activities
Evaluate and monitor security technologies (e.g., firewalls, endpoint protection, IDS, VPN, MFA)
Validate system configurations for compliance with security standards
Monitor server logs, network traffic, and security alerts
Analyze findings and recommend remediation actions
Assess and implement security patches, upgrades, or reconfigurations
Support Windows infrastructure environments (e.g., Active Directory, Group Policy)
Apply cloud security best practices across enterprise systems
Maintain awareness of privacy and security frameworks (e.g., ISO 27701)
Mentor junior cybersecurity staff and collaborate with senior team members
Independently manage compliance projects and initiatives
Report project status and compliance progress to leadership
Requirements
Bachelor’s degree in Computer Information Systems, Cybersecurity, or related field or equivalent work experience
Minimum of 5 years of experience in cybersecurity, information security, or IT systems
Certified ISO/IEC 27001:2022 Lead Auditor (BSO Lead Auditor) certification
CISSP or equivalent information security certification
Proven hands‑on experience driving ISO 27001 compliance initiatives
Preferred Qualifications
Experience architecting or implementing ISO 27001 programs
Familiarity with SOC 1 or other compliance audits
Experience with ISO 27701 or privacy frameworks
Knowledge of vendor security risk assessments
Experience with compliance documentation and audits
Familiarity with security technologies (e.g., MFA, VPN, DLP, IDS)
Windows infrastructure and networking expertise
Cloud security platform experience
AI Management Systems (e.g., ISO 42001)
Strong project management or audit coordination experience
"Armanino" is the brand name under which Armanino LLP and Armanino Advisory LLC, independently owned entities, provide professional services in an alternative practice structure in accordance with law, regulations, and professional standards. Armanino LLP is a licensed independent CPA firm that provides attest services, and Armanino Advisory LLC and its subsidiary entities provide tax, advisory, and business consulting services. Armanino Advisory LLC and its subsidiary entities are not licensed CPA firms.
Armanino provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Armanino complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Armanino expressly prohibits any form of workplace harassment based on race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. Improper interference with the ability of Armanino employees to perform their job duties may result in discipline up to and including discharge.
Armanino does not accept unsolicited candidates, referrals, or resumes from any staffing agency, recruiting service, sourcing entity, or third-party paid service at any time. Any referrals, resumes, or candidates submitted to Armanino or any employee or owner of Armanino without a pre-existing agreement signed by both parties covering the submission will be considered the property of Armanino and not subject to any fees or charges. For existing agreements, a role must be approved and open to external search; otherwise, unsolicited and unapproved submittals and referrals will be considered Armanino property and free of fees. In addition, Talent Acquisition is the sole point of contact, and contacting others in our organization without Talent Acquisition’s knowledge will result in termination of contract.
Certain states require us to disclose the pay range and benefits summary for job openings. For Colorado residents, the compensation range for this position: $130,900 - $154,000. For Washington residents, Illinois residents, New York residents, and Southern California residents, the compensation range for this position: $144,000 - $169,400. For Northern California residents, the compensation range for this position: $150,500 - $177,100. Compensation may vary based on skills, role, and location. Eligible employees at certain levels can participate in a discretionary long-term financial incentive plan, subject to plan participation rules.
Armanino has a robust offering of benefits, including:
Medical, dental, vision
Generous PTO plan and paid sick time
Flexible work arrangements
401K with Profit Sharing
Wellness program
Generous parental leave
11 paid holidays
For positions based in San Francisco, consistent with the SF Fair Chance Ordinance, an arrest and conviction record will not automatically disqualify a qualified applicant from consideration.
For Individuals who would be working within the City of Los Angeles, Armanino will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws, including the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance
To view our Consumer Notice at Collection for job applicants, please visit: https://www.armanino.com/terms/ccpa-employee-notice/
We have a community of resources that are ready and willing to support your ideas, build your skills and expand your professional network.
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
DYOPATH is hiring a SNOC Engineer II (Security) to lead incident detection and response while improving operational reliability across security, network, systems, and cloud in a remote capacity.
Saalex is hiring a Systems Engineer II to design, integrate, and test enterprise IT systems for Navy LVC environments in Tidewater, VA or San Diego, CA.
Crusoe is seeking a Senior Systems Engineer - IAM to lead Okta-based identity lifecycle, automation, and secure access integrations for its global technology infrastructure in San Francisco.
Adoreal is hiring a hands-on Senior Manager of IT & Engineering to build the IT/security function, lead HIPAA compliance, and provide .NET technical leadership in a hybrid US-remote role with preference for candidates near Chicago, IL.
Lead Elanco's SAP S/4HANA Settlement Management efforts by designing, implementing, and supporting Condition Contract and Settlement Management solutions that enable Pricing, Rebates, and Master Data capabilities across the business.
Onsite IT Support role in Cambridge, MA providing first- and second-level support, workstation setup, and ticket resolution for an international IT services firm.
Lead and inspire a web technologies team at Fortune Brands to deliver enterprise e-commerce and digital experiences using modern web stacks and best practices.
Provide Tier 1 technical support across corporate, distribution, and retail channels for Abercrombie & Fitch, resolving incidents, fulfilling requests, and helping associates use supported systems and devices.
Provide white-glove technical support to senior leadership at RRS Group, ensuring secure, reliable devices and flawless meeting/AV experiences across office, remote, and travel settings.
Crypto.com's Security Team seeks a Security IT Support Engineer to own endpoint lifecycle, patching, access management, and vulnerability remediation while helping teams adopt AI safely.
Experienced network engineers are needed to design, integrate, and maintain secure enterprise and tactical networks for Navy LVC environments under a contingent contract opportunity at Saalex Corporation.
Saalex seeks experienced Field Service Engineer II candidates to lead installation, sustainment, and troubleshooting of deployed IT and network systems in operational field environments.
Lead the design, automation, and operational ownership of Harvey’s Microsoft ecosystem (Intune, M365, Entra ID) to deliver secure, scalable device and tenant management across production, development, and demo environments.