Trust Assurance Specialist
Who we are
DigiCert is a global leader in intelligent trust. We protect the digital world by ensuring the security, privacy, and authenticity of every interaction. Our AI-powered DigiCert ONE platform unifies PKI, DNS, and certificate lifecycle management, to secure infrastructure, software, devices, messages, AI content and agents. Learn why more than 100,000 organizations, including 90% of the Fortune 500, choose DigiCert to stop today’s threats and prepare for a quantum-safe future at
Job summary
We are seeking a Trust Assurance Specialist to join the Trust Office team at DigiCert. This role is responsible for owning defined compliance and assurance areas, including audit execution, control management, and regulatory alignment.
The successful candidate will have a minimum of 5 years of experience in compliance, risk management, or audit, with the ability to independently manage audit and control activities and engage stakeholders across the organization.
This role reports to the Head of Compliance and works closely with cross-functional teams across Security, IT, Legal, and Operations.
What you will do
Audit & Assurance Support
- Own and manage assigned external (e.g., SOC 2, WebTrust) and customer audits
- Plan audit activities, coordinate stakeholders, and ensure timely delivery of evidence
- Track, manage, and drive remediation of audit findings
Regulatory Compliance
- Ensure ongoing compliance within assigned frameworks (e.g., WebTrust for CAs, SOC 2, ISO 27001, NIST)
- Interpret regulatory requirements and ensure controls align with both regulatory expectations and internal policy frameworks
Control Management
- Design, document, and evaluate controls to ensure effectiveness and compliance
- Perform and oversee control testing within assigned areas
- Identify control gaps and drive remediation efforts
Risk & Governance Support
- Provide input into risk assessments and support broader risk management activities.
- Assist in maintaining compliance documentation and reporting.
Stakeholder Collaboration
- Partner with internal teams (Security, IT, Legal, HR, Operations) to support compliance initiatives.
- Act as a point of contact for audit-related queries within assigned areas.
Continuous Improvement
- Stay informed on relevant regulatory and industry developments.
- Identify opportunities to improve compliance processes, tools, and reporting.
General
- Support a culture of compliance and security awareness across the organization.
- Perform other related duties as assigned.
What you will have
- Bachelor’s degree in Law, Compliance, Information Security, Computer Science, or a related field
- Minimum 5 years of experience in compliance, risk management, audit, or related roles
- Experience managing audits and working with frameworks such as SOC 2, ISO 27001, WebTrust, or NIST
- Experience in control design, documentation, and testing
- Strong analytical and problem-solving skills
- Excellent communication and stakeholder management skills
- Ability to work independently and manage multiple priorities
Nice to have
- Exposure to PKI, cybersecurity, or cloud environments
- Progress toward or attainment of certifications such as CISA, CISM, CRISC, or CISSP
Benefits
- Competitive compensation and comprehensive benefits package
- Generous paid time off, including holidays and additional leave options
- Family-friendly leave policies, including maternity, paternity, and other supportive leave programs
- Health and wellness support, including medical cover (where applicable), gym reimbursements, and mental well-being resources
- Pension, life insurance, and income protection benefits (location dependent)
- Employee Assistance Program with 24/7 confidential support for employees and their families
- Education assistance and professional development opportunities
- Access to LinkedIn Learning and continuous learning resources
- Employee referral bonus program and additional company perks and discounts
- Internal rewards and recognition platform (Motivosity) to celebrate and acknowledge project wins, milestone achievements, and the outstanding contributions of our colleagues
- Business travel insurance and global employee support programs
To protect candidate information and maintain a secure hiring process, all applications must be submitted through our careers portal. Resumes or CVs sent directly via email will not be reviewed or considered.
#LI-FP1
__PRESENT
__PRESENT
__PRESENT
__PRESENT
__PRESENT
Skills
As published by greenhouse · 16 questions · 1 written answer
Basics
First Name, Last Name, Email, Phone, Resume/CV, Cover Letter, Location
Short answers (7)
- If the country you currently live in is NOT listed in the question above, please confirm in which country you live? optional
- What are your salary expectations for this role?
- If you were referred for this position, please provide the full name of the referrer optional
- How many audits have you completed in the past 12 months?
- Could you please confirm your current location?
- How soon would you be able to join us?
- Please provide a link to your LinkedIn profile.
Pick from a list (8)
- Have you completed secondary education or its equivalent? optional
- Are you legally authorized to work in the country in which this role is located?
- Will you now or in the future require sponsorship to work in the country where this role is based?
- Please confirm the Country in which you currently reside?
- Were you referred for this position?
- As part of the employment process, all candidates are subject to employment and education verification, as well as a comprehensive background check, in accordance with applicable laws and company policies. I understand that I will be provided with additional information and asked to provide authorization before any such checks are conducted.
- I understand that all information provided in my application must be accurate and truthful, and that any misrepresentation may result in disqualification from the hiring process or termination of employment if discovered after hire.
- I acknowledge that DigiCert and its service providers may collect and process my image and related identity verification information to verify my identity, prevent fraud, maintain security, and administer the hiring process. I understand that this information will be used only for these purposes and retained in accordance with DigiCert's applicable policies and legal obligations. If I choose not to provide the information required to complete identity verification, DigiCert may be unable to continue processing my application. Do you acknowledge and agree?
Written answers (1)
- Do you have experience conducting external audits with clients or customers? If so, please provide details about your role and responsibilities.