Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

SOC 2 Cyber Program Lead

$113k - $190k

First Citizens Bank

Overview Remote eligible. This position provides cybersecurity risk management and expert support at the highest level of cybersecurity governance and oversight, with primary responsibility for leading and managing the company’s Systems and Organization Controls (SOC) 2 program. The role coordinates across business and technology stakeholders to ensure SOC 2 requirements are understood, implemented, and sustained. Serves as a SOC 2 leader, contributes to broader cyber risk oversight, recommending and monitoring enhancements to processes and procedures, performing analysis, and reporting in support of strategic objectives. Responsibilities SOC 2 Program Leadership - Leads and manages the bank’s SOC 2 readiness and compliance program. Coordinates program activities across business and technology teams, ensuring controls are properly implemented, documented, and maintained in alignment with SOC 2 Trust Services Criteria (TSC). Oversees evidence collection, audit preparedness, and continuous improvement of the SOC 2 program. Serves as the primary liaison with auditors during readiness and examination activities. SOC 2 Readiness - Executes assessments and readiness activities to evaluate compliance with SOC 2 requirements. Performs gap analyses, documents control coverage, and monitors remediation efforts. Collects and validates evidence, ensures accuracy and completeness, and prepares the organization for external audits by driving readiness efforts. Stakeholder Partnership - Partners with control owners, governance teams, and other stakeholders to align on responsibilities, close identified gaps, and monitor remediation progress. Provides guidance and education on SOC 2 requirements, roles, and expectations, ensuring stakeholders understand their role in sustaining compliance. Risk Identification and Monitoring - Identifies and monitors risks related to SOC 2 control requirements and broader cybersecurity domains. Escalates potential areas of concern, facilitates root cause analysis, and tracks corrective actions to resolution. Maintains awareness of changes in SOC 2 requirements, industry trends, and regulatory expectations, translating them into actionable insights for the bank. Reporting - Produces reports and dashboards on SOC 2 readiness, testing results, control maturity, and remediation progress. Conveys root cause analysis, patterns, and trends to leadership. Provides transparency into risk exposure, compliance status, and effectiveness of mitigation measures, with emphasis on SOC 2 Trust Services Criteria coverage. Qualifications Bachelor's Degree and 6 years of experience in Financial Services, Risk Management, Operational Risk Management, Compliance, Audit, Finance or Accounting OR High School Diploma or GED and 10 years of experience in Financial Services, Risk Management, Operational Risk Management, Compliance, Audit, Finance or Accounting Direct experience executing or leading SOC 2 audits and programs, including readiness assessments, gap analysis, evidence collection, and audit preparedness Strong knowledge of SOC 2 Trust Services Criteria (Security, Availability, Processing Integrity, Confidentiality, Privacy) and demonstrated ability to apply them in a large, complex organization Experience partnering with stakeholders across business and technology to monitor risks, close compliance gaps, and sustain ongoing SOC 2 readiness In-depth practical knowledge of internal controls, risk assessments, and operational and cybersecurity processes, with experience implementing regulatory and compliance frameworks Broad knowledge and understanding of cybersecurity risks and controls, including IT infrastructure, cloud computing, mobile technologies, and cybersecurity technologies Excellent written and oral communication skills, with ability to influence stakeholders and communicate effectively at multiple levels CISSP, CISA, CISM, CRISC, CIA, or equivalent certification Preferred Qualifications 7-10 years of experience in risk management or compliance, including leadership of SOC 2, ISO, PCI, or similar frameworks 3+ years of experience at a Large Financial Institution or similarly regulated environment Familiarity with NIST frameworks (e.g., CSF, SP 800-53) and their application in strengthening cybersecurity programs Extensive knowledge and subject matter expertise in managing cybersecurity compliance in financial services, including applicable regulations (SOC 2, NIST, CSA, FFIEC, OCC, FRB, state law, and other regulatory guidance) Strong project management and continuous improvement skills This job posting is expected to remain active for 45 days from the initial posting date listed above. If it is necessary to extend this deadline, the posting will remain active as appropriate. Job postings may come down early due to business need or a high volume of applicants. The base pay for this position is generally between $113,000 and $190,000. Actual starting base pay will be determined based on skills, experience, location, and other non-discriminatory factors permitted by law. For some roles, total compensation may also include variable incentives, bonuses, benefits, and/or other awards as outlined in the offer of employment. Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully designed and quality benefits program to meet the needs of our associates. More information can be found at jobs.firstcitizens.com/benefits. Job metadata Seniority level: Not Applicable Employment type: Full-time Job function: Consulting, Information Technology, and Sales Industries: Banking and Financial Services Referrals increase your chances of interviewing at First Citizens Bank by 2x Get notified about new Program Lead jobs in Raleigh, NC. #J-18808-Ljbffr

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the SOC 2 Cyber Program Lead in Raleigh, NC vacancy
  • $106.61k - $284.28k

    CVS Health is seeking a Cyber Resiliency Manager in North Carolina. This full-time position requires 7+ years of experience in cyber resiliency activities, internal audit, and risk management. Responsibilities include managing resilience procedures, developing compliance... 
    Suggested
    Full time

    Hispanic Alliance for Career Enhancement

    Raleigh, NC
    2 days ago
  •  ...Cyber Defense & Data Security Lead (Americas) Location: Raleigh/hybrid The Cyber Defense & Data Security...  ...Lead Americas execution of 24x7 SOC operations, including monitoring, triage...  ...Experience building and running a DLP program across a global organization. ~ Hands... 
    Suggested
    Full time
    Local area
    Shift work

    Ralliant

    Raleigh, NC
    5 days ago
  •  ...community-focused credit union in North Carolina is seeking a Cyber Security Analyst II to enhance its cybersecurity posture....  ...will have a HS Diploma, relevant certifications, and 2-4 years of experience in a SOC/SIEM role. This position offers a hybrid work environment... 
    Suggested

    SECU

    Raleigh, NC
    17 hours ago
  •  ...Cybersecurity Third-Party Risk Management leads the enterprise program responsible for identifying,...  ...executive visibility into third-party cyber risk exposure, remediation status,...  ...requirements aligned to NIST CSF 2.0, NIST 800-161, SOC 2, PCI DSS, privacy obligations, and... 
    Suggested
    Contract work
    For contractors
    For subcontractor
    Work at office
    Local area
    Work from home

    Advance Auto Parts

    Raleigh, NC
    17 hours ago
  •  ...candidate has extensive experience in cybersecurity, strong leadership abilities, and proficiency with security tools. Benefits include a performance-based bonus program, retirement contributions, and generous paid leave options. #J-18808-Ljbffr ARCO the Design/Build Experts
    Suggested

    ARCO the Design/Build Experts

    Raleigh, NC
    1 day ago
  • $144.9k - $265.8k

     ...Implement access management standards (SAML 2.0, OpenID Connect, OAuth, SCIM) Support...  ...of duties (SOD) Assist with IAM program management and compliance activities Client...  ...confidence and technical expertise to become a leading expert in this field, we encourage you to... 
    Work experience placement
    Summer holiday
    Flexible hours

    EY

    Raleigh, NC
    2 days ago
  • $105.79k - $141.05k

     ...related to one or more specific compliance programs/standards and coordinates external audit...  ...'s degree with 4+ years of experience. ~2-3 years practical experience with controls...  ...testing of CMMC audits, SSAE 16, AT-101 (SOC 1 / SOC 2), PCI, ISO, HIPAA, Privacy, NACHA... 
    Temporary work
    Remote work

    Lumen Inc

    Raleigh, NC
    1 day ago
  • $76 - $76.9 per hour

     ...talk with your recruiter to learn more. Base pay range $76.00/hr - $76.90/hr Job Description Immediate need for a talented Cyber Security Analyst - Lead. This is a 04 months contract opportunity with long-term potential and is located in NC, GA, FL, VA, TX, SC (Remote).... 
    Contract work
    Local area
    Immediate start
    Remote work

    Pyramid Consulting

    Raleigh, NC
    3 days ago
  •  ...posture. This role involves duties in identity and access management, cyber-threat monitoring, and providing security awareness training. The...  ...'s degree in computer science or a related field and up to 2 years of experience. A competitive salary along with a comprehensive... 

    Carpenter Technology

    Raleigh, NC
    1 day ago
  • $28k

     ...Services Manager, Cybersecurity Operations leads ARCO’s day-to-day security monitoring,...  ...Industry‑leading performance‑based bonus program 100% company funded retirement contributions...  ...triage, and incident response. Oversee daily SOC operations and ensure timely, effective... 

    ARCO the Design/Build Experts

    Raleigh, NC
    1 day ago
  • $86.4k - $138.6k

     ...A leading healthcare organization in North Carolina seeks a Senior Cyber Incident Responder to lead investigations and provide expert support for cyber defense incidents. The role includes analyzing log files, coordinating incident response, and making recommendations... 
    Remote work

    Highmark Health

    Raleigh, NC
    3 days ago
  •  ...Sr. Cybersecurity Lead New York, New York, United States ATLAS SP Partners is a...  ...organization's computer systems and networks from cyber threats. This is a hands-on role. Only...  ...) a +. • Experience operating security programs in regulated environments. • Prior... 
    Local area

    ATLAS SP Partners

    Raleigh, NC
    4 days ago
  • $76 - $76.9 per hour

    A leading consulting firm is seeking an experienced Cyber Security Analyst - Lead for a 4-month contract with potential for extension. This remote position involves managing API security requests, coordinating with development teams, and utilizing DAST/SAST tools for vulnerability... 
    Contract work
    Remote work

    Pyramid Consulting

    Raleigh, NC
    3 days ago
  •  ...and regulatory requirements. Support the development of privacy programs and product‑related initiatives. Collaborate with partners and senior...  ...Assist with data breach response matters as needed. Requirements 2 to 4 years of relevant legal experience. Interest or experience... 

    BCG Attorney Search

    Raleigh, NC
    1 day ago
  •  ...controls, prioritized remediation plans, and risk ownership models. Lead management oversight of security risks and findings, including...  ...risk posture. Drive continuous improvement of the cybersecurity program through automation, process optimization, and technical... 
    For contractors

    Scorpion Therapeutics

    Raleigh, NC
    1 day ago
  •  ...excellent collaboration skills, and a passion for cybersecurity. Joining Trellix means being part of a dynamic workforce with benefits including retirement plans and paid parental leave, all while contributing to industry-leading customer support. #J-18808-Ljbffr Trellix

    Trellix

    Raleigh, NC
    17 hours ago
  •  ...processes, product positioning, billing models, and go-to-market programs specific to each platform. Support onboarding, enablement, and...  ...MSP ecosystems. Requirements Education and Experience: ~2–5 years in account management, channel, or distribution sales... 
    Full time
    Work at office

    ESET

    Raleigh, NC
    10 days ago
  • $82.08k - $127.5k

     ...accounts Employee Assistance Programs and additional work/life resources...  ...maintaining compliance with SOC 2 and ISO 27001 frameworks,...  ...Business Impact Analysis facilitates cyber tabletop exercises....  ...Security Manager (CISM) ISO 27001 Lead Implementer or Lead Auditor SOC... 
    Remote job
    Contract work
    Work at office
    Local area
    Flexible hours

    WiTH Collective

    Cary, NC
    2 days ago
  •  ...Information Security team, the Senior Cyber Security Analyst works closely...  ...Normal Day-To-Day Work 1. Lead ongoing analysis of security...  ...security needs of the credit union. 2. Provide daily data displaying...  ...of initiatives and programs designed to enhance the security... 
    Work at office

    Civic Federal Credit Union

    Raleigh, NC
    4 days ago
  • $87.7k - $164k

     ...we blend risk strategy, digital identity, cyber defense, application security and...  ...Cloud-based environments, such as Azure  Programming skills in PowerShell, Python and/or C/C++...  ...please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select... 
    Summer holiday
    Local area
    Flexible hours

    EY

    Raleigh, NC
    2 days ago
  •  ...compliance reporting, and security posture programs with data-driven analysis Collaborate...  ...security # Previous experience in leading complex IT projects Preferred Qualifications...  ...supporting compliance frameworks: SOC 2, PCI-DSS, HIPAA , or FedRAMP Excellent... 
    Full time
    Part time
    Work experience placement
    Work at office
    Shift work
    Day shift

    Truist Inc

    Raleigh, NC
    2 days ago
  • $95.3k - $158.8k

     ...you like to help develop a robust security program to minimize company risk? Would you...  ...legal use case. The company employs over 2,000 technologists, data scientists, and...  ...Technology, Compliance, and Go-To-Market teams to lead early security discussions and ensure... 
    Temporary work
    Local area
    Immediate start
    Worldwide
    Flexible hours

    LexisNexis

    Raleigh, NC
    1 day ago
  • Join to apply for the Cyber Security Analyst II role at SECU Join to apply for the Cyber Security...  ...and infrastructure that support the SOC, including SIEM (Security Information and Event...  ...Ethical Hacker (CEH), are highly valued. 2 - 4 Years previous experience as a SOC/SIEM... 
    16 hours
    Full time
    Internship
    Work from home

    SECU

    Raleigh, NC
    4 days ago
  • $120k - $140k

    A prominent technology organization in the Raleigh, NC area is seeking a SOC Engineer II. This role requires experience in security operations and incident response, focusing on SIEM platforms and cloud security. You will monitor security incidents, investigate vulnerabilities... 

    Piper Companies

    Raleigh, NC
    3 days ago
  •  ...support USSOCOM's Special Operations Command Information Technology Enterprise Contract at Fort Bragg, NC. The role involves enhancing cyber defense capabilities, mentoring junior analysts, and ensuring the security of critical systems. Candidates must have a relevant... 
    Contract work
    Night shift
    Rotating shift

    Peraton

    Raleigh, NC
    2 days ago
  • BS + 2 years of experience OR HS with + 6 years of experience OR...  ...: CEH OR CFR OR CCNA Cyber Ops OR CCNA-Security OR CySA+...  ...Ability to work independently and lead initiatives in a fast-paced, team...  ...play a pivotal role in enhancing SOC capabilities, mentoring junior... 
    Contract work
    Shift work
    Night shift
    Rotating shift

    Peraton

    Raleigh, NC
    2 days ago
  •  ...partnerships with major platforms like Microsoft Azure and AWS, and providing cybersecurity insights to partners. Ideal candidates should have 2–5 years of experience in account management with a strong understanding of cloud business models and cybersecurity solutions.... 

    ESET

    Raleigh, NC
    1 hour ago
  •  ...complex, and higher risk projects that may be enterprise-wide in scope. Lead planning, scoping, and development of the audit test plan,...  ...assignments within budget while maintaining quality standards. 2. Set clear quality expectations based on Truist Audit Services standards... 
    Full time
    Part time
    Work at office
    Relocation

    SunTrust Investment Services, Inc.

    Raleigh, NC
    1 day ago
  •  ...regulations. Assist in preparing for and responding to data incidents. Lead breach assessments and coordinate forensic and legal response...  ...professional environment with robust training and mentoring programs. Opportunities for career growth tailored to individual goals. Engagement... 

    BCG Attorney Search

    Raleigh, NC
    1 day ago
  •  ...Carolina. This role focuses on advising clients on privacy, cybersecurity, AI, and data governance matters. The ideal candidate will have 2 to 4 years of legal experience and a Juris Doctor degree. Responsibilities include drafting agreements, advising on privacy... 

    BCG Attorney Search

    Raleigh, NC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to SOC 2 Cyber Program Lead. Be the first to apply!