sempra
sempra~3h ago
New

Cybersecurity Audit Associate II

Sempra Energy HeadquartersNormalmid
OtherAudit Associate
1 views0 saves0 applied

Quick Summary

Overview

Sempra: Where opportunity powers impact​ ​At Sempra, a better world begins with better energy—and with people who want to make a difference.

Technical Tools
OtherAudit Associate

The role conducts internal audits of IT systems with an emphasis on cybersecurity. The position executes testing primarily of cybersecurity controls in IT and operational technology audits, strengthening critical infrastructure cybersecurity. It applies experience in audit documentation and techniques and a passion for cybersecurity excellence to effectively obtain relevant evidence, perform testing, and communicate issues and improvement recommendations in reports. It recommends practical adjustments to test steps, communicate routine issues to stakeholders, and contribute to reporting, as well as executes a broad range of testing and analysis for information systems audits. 

Duties and Responsibilities

  • Performs control testing for application, technology, and operations processes and evaluates whether evidence meets defined criteria.
  • Analyzes privileged access, security configuration hardening, logging and other cybersecurity control artifacts to identify exceptions and potential impact.
  • Summarizes testing results and drafts preliminary observations that link criteria, condition, cause, and effect.
  • Coordinates with technology teams to obtain extracts or configuration exports required for sampling and analysis.
  • Participates in entrance and exit meetings, explaining straightforward procedures and conclusions.
  • Contributes to follow‑up reviews by confirming remediation activities and gathering validation evidence.
  • Performs other duties as assigned.
  • Typically requires a 4-year degree in a relevant field, or equivalent combination of relevant education and experience.
  • Typically requires 2 years of related experience.
  • Must reside in Southern California or be willing to relocate upon hire.

  • Clear and Professional Verbal and Written Communication - Proficiency in clearly requesting specific evidence relevant for cybersecurity control testing both written and verbally, interpreting that evidence, and documenting and sharing the outcome of testing.
  • Teamwork and Client Service – Clear communication and positive attitude towards teamwork approach to auditing.
    Understanding and commitment to client service standards of providing value and performing efficient, relevant, timely, courteous audits with practical and reasonable recommendations for improvement aligned with prioritized threat mitigation guidance.
  • Continuous Learning – Engagement with continuous cybersecurity learning as it relates to protecting enterprise IT environments and OT, including pursuing cybersecurity and technology certification(s). Interest in learning about internal auditing profession and IIA Global Internal Audit Standards.
  • Risk Assessment Techniques - Expertise in identifying and assessing risks associated with information systems, and developing strategies to mitigate these risks.
  • Information Security Standards - Understanding of industry standards and frameworks such as ISO 27001, NIST, and COBIT for evaluating and improving information security practices.
  • Network Security Assessment - Ability to evaluate and assess network security controls, identifying vulnerabilities and recommending improvements to protect information assets.
  • Cybersecurity Fundamentals - Knowledge of cybersecurity principles and practices to assess the effectiveness of security measures and protect against digital threats.
  • System and Application Controls - Expertise in evaluating system and application controls to ensure accuracy, reliability, and security of data processing and information flows.
  • Report Writing and Documentation - Skill in preparing detailed reports and documentation of fraud investigations and prevention activities for stakeholders.
  • Continuous Monitoring Tools - Proficiency in implementing and utilizing continuous monitoring tools to track system performance and detect potential security breaches in real time.

Location & Eligibility

Where is the job
Sempra Energy Headquarters
On-site at the office
Who can apply
Same as job location

Listing Details

First seen
September 25, 2026
Last seen
September 25, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
52%
Scored at
September 25, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

sempraCybersecurity Audit Associate II