career

SOC 2 Type 2 Audit Support / Mini CISO

XS MATRIX SECURITY SOLUTIONS Ltd. is the manufacturer of the cloud-based TheFence, which is a modularly built, next generation identity governance and administration (IGA) platform tailored for organizations of all sizes (SMEs & large enterprises).

Our global team of engineers, product specialists, presales consultants and account executives have a good mixture of work experience, innovative thinking and thirst for new knowledge to create innovation and value in the IT security industry.

In joining this team, you will have the opportunity to shape the future of the business not just in your region of expertise and experience but in how the product is positioned globally. This role is a career defining moment for an experienced ambitious and passionate person looking for a new challenge.

Main tasks

  • Managing the SOC 2 Type 2 renewal audit, including tracking audit scope and audit period.
  • Maintaining the control–evidence tracker (controls, owners, frequency, status, gaps) and monitoring deadlines.
  • Collecting and generating audit evidence from our systems (AWS, Azure DevOps, GitHub, O365, Terraform, Ansible).
  • Preparing change management / SDLC evidence packages: reviews, approvals, pipeline runs, releases, ticket trails (Azure DevOps/GitHub).
  • Managing access control evidence: IAM/MFA confirmations, access requests/approvals, periodic access reviews (AWS/O365).
  • Organizing logging/monitoring, incident, and vulnerability evidence: logs/reports, alerts, incident tickets, vulnerability reports and remediation tracking.
  • Structuring and quality-checking evidence: readability, completeness, audit-period alignment, traceability.
  • Masking/anonymizing sensitive data where required; managing access to shared materials in line with the least privilege principle.
  • Liaising with the auditor: handling questions, requesting/preparing additional evidence, finalizing responses.
  • Coordinating document and process updates based on audit feedback (version control, approvals) and ensuring proper post-audit archiving.

Requirements

  • High level of precision and structured working style (tracking status, gaps, deadlines).
  • Strong documentation skills (clear trackers, meeting minutes, structured evidence packages).
  • Basic information security knowledge (access management, logging, change management, incident management concepts).
  • User-level proficiency with O365 (SharePoint/Teams/Excel) and ability to navigate ticketing/development environments.
  • Written communication skills in Hungarian and English (auditor Q&A and concise evidence explanations

Nice to Have

  • Experience in a SOC 2 / ISO 27001 environment (internship/junior level is also valuable).
  • AWS fundamentals (IAM, CloudTrail, security/logging concepts) and/or familiarity with cloud audit evidence.
  • Basic knowledge of Azure DevOps / GitHub (PRs, branch policies, pipelines, releases).
  • Terraform/Ansible fundamentals (IaC change tracking, validation of standard configurations).
  • Experience with compliance tools / evidence management solutions (trackers, audit portals, control catalogs).

We offer

  • Flexible part-time opportunity (quarter- or half-time), remote-friendly, with real end-to-end audit support responsibilities.
  • Mentoring in controls, evidence handling, and auditor communication, with fast-track development toward compliance/security roles. You can grow into a typical Information Security Officer (ISO) function.

Location: Flexible, Remote

XS Matrix Security Solutions is an equality driven organisation and welcomes applications from a range of diverse candidates.

Send your application to hello@thefence.net and let’s talk.

Do you have questions?

Get in touch with us and we reply within the next 24 hours
Scroll to Top