SOC 2 Cyber Program Lead
$113k - $190kFirst Citizens Bank
Overview Remote eligible. This position provides cybersecurity risk management and expert support at the highest level of cybersecurity governance and oversight, with primary responsibility for leading and managing the company’s Systems and Organization Controls (SOC) 2 program. The role coordinates across business and technology stakeholders to ensure SOC 2 requirements are understood, implemented, and sustained. Serves as a SOC 2 leader, contributes to broader cyber risk oversight, recommending and monitoring enhancements to processes and procedures, performing analysis, and reporting in support of strategic objectives. Responsibilities SOC 2 Program Leadership - Leads and manages the bank’s SOC 2 readiness and compliance program. Coordinates program activities across business and technology teams, ensuring controls are properly implemented, documented, and maintained in alignment with SOC 2 Trust Services Criteria (TSC). Oversees evidence collection, audit preparedness, and continuous improvement of the SOC 2 program. Serves as the primary liaison with auditors during readiness and examination activities. SOC 2 Readiness - Executes assessments and readiness activities to evaluate compliance with SOC 2 requirements. Performs gap analyses, documents control coverage, and monitors remediation efforts. Collects and validates evidence, ensures accuracy and completeness, and prepares the organization for external audits by driving readiness efforts. Stakeholder Partnership - Partners with control owners, governance teams, and other stakeholders to align on responsibilities, close identified gaps, and monitor remediation progress. Provides guidance and education on SOC 2 requirements, roles, and expectations, ensuring stakeholders understand their role in sustaining compliance. Risk Identification and Monitoring - Identifies and monitors risks related to SOC 2 control requirements and broader cybersecurity domains. Escalates potential areas of concern, facilitates root cause analysis, and tracks corrective actions to resolution. Maintains awareness of changes in SOC 2 requirements, industry trends, and regulatory expectations, translating them into actionable insights for the bank. Reporting - Produces reports and dashboards on SOC 2 readiness, testing results, control maturity, and remediation progress. Conveys root cause analysis, patterns, and trends to leadership. Provides transparency into risk exposure, compliance status, and effectiveness of mitigation measures, with emphasis on SOC 2 Trust Services Criteria coverage. Qualifications Bachelor's Degree and 6 years of experience in Financial Services, Risk Management, Operational Risk Management, Compliance, Audit, Finance or Accounting OR High School Diploma or GED and 10 years of experience in Financial Services, Risk Management, Operational Risk Management, Compliance, Audit, Finance or Accounting Direct experience executing or leading SOC 2 audits and programs, including readiness assessments, gap analysis, evidence collection, and audit preparedness Strong knowledge of SOC 2 Trust Services Criteria (Security, Availability, Processing Integrity, Confidentiality, Privacy) and demonstrated ability to apply them in a large, complex organization Experience partnering with stakeholders across business and technology to monitor risks, close compliance gaps, and sustain ongoing SOC 2 readiness In-depth practical knowledge of internal controls, risk assessments, and operational and cybersecurity processes, with experience implementing regulatory and compliance frameworks Broad knowledge and understanding of cybersecurity risks and controls, including IT infrastructure, cloud computing, mobile technologies, and cybersecurity technologies Excellent written and oral communication skills, with ability to influence stakeholders and communicate effectively at multiple levels CISSP, CISA, CISM, CRISC, CIA, or equivalent certification Preferred Qualifications 7-10 years of experience in risk management or compliance, including leadership of SOC 2, ISO, PCI, or similar frameworks 3+ years of experience at a Large Financial Institution or similarly regulated environment Familiarity with NIST frameworks (e.g., CSF, SP 800-53) and their application in strengthening cybersecurity programs Extensive knowledge and subject matter expertise in managing cybersecurity compliance in financial services, including applicable regulations (SOC 2, NIST, CSA, FFIEC, OCC, FRB, state law, and other regulatory guidance) Strong project management and continuous improvement skills This job posting is expected to remain active for 45 days from the initial posting date listed above. If it is necessary to extend this deadline, the posting will remain active as appropriate. Job postings may come down early due to business need or a high volume of applicants. The base pay for this position is generally between $113,000 and $190,000. Actual starting base pay will be determined based on skills, experience, location, and other non-discriminatory factors permitted by law. For some roles, total compensation may also include variable incentives, bonuses, benefits, and/or other awards as outlined in the offer of employment. Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully designed and quality benefits program to meet the needs of our associates. More information can be found at jobs.firstcitizens.com/benefits. Job metadata Seniority level: Not Applicable Employment type: Full-time Job function: Consulting, Information Technology, and Sales Industries: Banking and Financial Services Referrals increase your chances of interviewing at First Citizens Bank by 2x Get notified about new Program Lead jobs in Raleigh, NC. #J-18808-Ljbffr
$106.61k - $284.28k
CVS Health is seeking a Cyber Resiliency Manager in North Carolina. This full-time position requires 7+ years of experience in cyber resiliency activities, internal audit, and risk management. Responsibilities include managing resilience procedures, developing compliance...SuggestedFull time- ...Cyber Defense & Data Security Lead (Americas) Location: Raleigh/hybrid The Cyber Defense & Data Security... ...Lead Americas execution of 24x7 SOC operations, including monitoring, triage... ...Experience building and running a DLP program across a global organization. ~ Hands...SuggestedFull timeLocal areaShift work
- ...community-focused credit union in North Carolina is seeking a Cyber Security Analyst II to enhance its cybersecurity posture.... ...will have a HS Diploma, relevant certifications, and 2-4 years of experience in a SOC/SIEM role. This position offers a hybrid work environment...Suggested
- ...Cybersecurity Third-Party Risk Management leads the enterprise program responsible for identifying,... ...executive visibility into third-party cyber risk exposure, remediation status,... ...requirements aligned to NIST CSF 2.0, NIST 800-161, SOC 2, PCI DSS, privacy obligations, and...SuggestedContract workFor contractorsFor subcontractorWork at officeLocal areaWork from home
- ...candidate has extensive experience in cybersecurity, strong leadership abilities, and proficiency with security tools. Benefits include a performance-based bonus program, retirement contributions, and generous paid leave options. #J-18808-Ljbffr ARCO the Design/Build ExpertsSuggested
$144.9k - $265.8k
...Implement access management standards (SAML 2.0, OpenID Connect, OAuth, SCIM) Support... ...of duties (SOD) Assist with IAM program management and compliance activities Client... ...confidence and technical expertise to become a leading expert in this field, we encourage you to...Work experience placementSummer holidayFlexible hours$105.79k - $141.05k
...related to one or more specific compliance programs/standards and coordinates external audit... ...'s degree with 4+ years of experience. ~2-3 years practical experience with controls... ...testing of CMMC audits, SSAE 16, AT-101 (SOC 1 / SOC 2), PCI, ISO, HIPAA, Privacy, NACHA...Temporary workRemote work$76 - $76.9 per hour
...talk with your recruiter to learn more. Base pay range $76.00/hr - $76.90/hr Job Description Immediate need for a talented Cyber Security Analyst - Lead. This is a 04 months contract opportunity with long-term potential and is located in NC, GA, FL, VA, TX, SC (Remote)....Contract workLocal areaImmediate startRemote work- ...posture. This role involves duties in identity and access management, cyber-threat monitoring, and providing security awareness training. The... ...'s degree in computer science or a related field and up to 2 years of experience. A competitive salary along with a comprehensive...
$28k
...Services Manager, Cybersecurity Operations leads ARCO’s day-to-day security monitoring,... ...Industry‑leading performance‑based bonus program 100% company funded retirement contributions... ...triage, and incident response. Oversee daily SOC operations and ensure timely, effective...$86.4k - $138.6k
...A leading healthcare organization in North Carolina seeks a Senior Cyber Incident Responder to lead investigations and provide expert support for cyber defense incidents. The role includes analyzing log files, coordinating incident response, and making recommendations...Remote work- ...Sr. Cybersecurity Lead New York, New York, United States ATLAS SP Partners is a... ...organization's computer systems and networks from cyber threats. This is a hands-on role. Only... ...) a +. • Experience operating security programs in regulated environments. • Prior...Local area
$76 - $76.9 per hour
A leading consulting firm is seeking an experienced Cyber Security Analyst - Lead for a 4-month contract with potential for extension. This remote position involves managing API security requests, coordinating with development teams, and utilizing DAST/SAST tools for vulnerability...Contract workRemote work- ...and regulatory requirements. Support the development of privacy programs and product‑related initiatives. Collaborate with partners and senior... ...Assist with data breach response matters as needed. Requirements 2 to 4 years of relevant legal experience. Interest or experience...
- ...controls, prioritized remediation plans, and risk ownership models. Lead management oversight of security risks and findings, including... ...risk posture. Drive continuous improvement of the cybersecurity program through automation, process optimization, and technical...For contractors
- ...excellent collaboration skills, and a passion for cybersecurity. Joining Trellix means being part of a dynamic workforce with benefits including retirement plans and paid parental leave, all while contributing to industry-leading customer support. #J-18808-Ljbffr Trellix
- ...processes, product positioning, billing models, and go-to-market programs specific to each platform. Support onboarding, enablement, and... ...MSP ecosystems. Requirements Education and Experience: ~2–5 years in account management, channel, or distribution sales...Full timeWork at office
$82.08k - $127.5k
...accounts Employee Assistance Programs and additional work/life resources... ...maintaining compliance with SOC 2 and ISO 27001 frameworks,... ...Business Impact Analysis facilitates cyber tabletop exercises.... ...Security Manager (CISM) ISO 27001 Lead Implementer or Lead Auditor SOC...Remote jobContract workWork at officeLocal areaFlexible hours- ...Information Security team, the Senior Cyber Security Analyst works closely... ...Normal Day-To-Day Work 1. Lead ongoing analysis of security... ...security needs of the credit union. 2. Provide daily data displaying... ...of initiatives and programs designed to enhance the security...Work at office
$87.7k - $164k
...we blend risk strategy, digital identity, cyber defense, application security and... ...Cloud-based environments, such as Azure Programming skills in PowerShell, Python and/or C/C++... ...please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select...Summer holidayLocal areaFlexible hours- ...compliance reporting, and security posture programs with data-driven analysis Collaborate... ...security # Previous experience in leading complex IT projects Preferred Qualifications... ...supporting compliance frameworks: SOC 2, PCI-DSS, HIPAA , or FedRAMP Excellent...Full timePart timeWork experience placementWork at officeShift workDay shift
$95.3k - $158.8k
...you like to help develop a robust security program to minimize company risk? Would you... ...legal use case. The company employs over 2,000 technologists, data scientists, and... ...Technology, Compliance, and Go-To-Market teams to lead early security discussions and ensure...Temporary workLocal areaImmediate startWorldwideFlexible hours- Join to apply for the Cyber Security Analyst II role at SECU Join to apply for the Cyber Security... ...and infrastructure that support the SOC, including SIEM (Security Information and Event... ...Ethical Hacker (CEH), are highly valued. 2 - 4 Years previous experience as a SOC/SIEM...16 hoursFull timeInternshipWork from home
$120k - $140k
A prominent technology organization in the Raleigh, NC area is seeking a SOC Engineer II. This role requires experience in security operations and incident response, focusing on SIEM platforms and cloud security. You will monitor security incidents, investigate vulnerabilities...- ...support USSOCOM's Special Operations Command Information Technology Enterprise Contract at Fort Bragg, NC. The role involves enhancing cyber defense capabilities, mentoring junior analysts, and ensuring the security of critical systems. Candidates must have a relevant...Contract workNight shiftRotating shift
- BS + 2 years of experience OR HS with + 6 years of experience OR... ...: CEH OR CFR OR CCNA Cyber Ops OR CCNA-Security OR CySA+... ...Ability to work independently and lead initiatives in a fast-paced, team... ...play a pivotal role in enhancing SOC capabilities, mentoring junior...Contract workShift workNight shiftRotating shift
- ...partnerships with major platforms like Microsoft Azure and AWS, and providing cybersecurity insights to partners. Ideal candidates should have 2–5 years of experience in account management with a strong understanding of cloud business models and cybersecurity solutions....
- ...complex, and higher risk projects that may be enterprise-wide in scope. Lead planning, scoping, and development of the audit test plan,... ...assignments within budget while maintaining quality standards. 2. Set clear quality expectations based on Truist Audit Services standards...Full timePart timeWork at officeRelocation
- ...regulations. Assist in preparing for and responding to data incidents. Lead breach assessments and coordinate forensic and legal response... ...professional environment with robust training and mentoring programs. Opportunities for career growth tailored to individual goals. Engagement...
- ...Carolina. This role focuses on advising clients on privacy, cybersecurity, AI, and data governance matters. The ideal candidate will have 2 to 4 years of legal experience and a Juris Doctor degree. Responsibilities include drafting agreements, advising on privacy...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SOC 2 Cyber Program Lead. Be the first to apply!

