Hire the Best Certified Information Systems Auditors

More than 3,000 reviews on G2
Rating is 4.5 out of 5.
4.5/5
of Upwork by G2 peer reviewers
Aamir R.

Islamabad, Pakistan

$30/hr
4.9
43 jobs

Are you preparing for ISO 27001, SOC 2, HIPAA, PCI-DSS, GDPR, or Cyber Essentials compliance and need practical cybersecurity support? I help startups, SaaS companies, healthcare technology businesses, fintech teams, e-commerce companies, and growing organizations become audit-ready, reduce security risks, and build practical information security programs without unnecessary complexity. I am a CISSP-certified Cybersecurity GRC professional with 9+ years of experience in cybersecurity governance, risk management, compliance, security documentation, audit readiness, and vulnerability risk management. I have worked with organizations across banking, healthcare technology, retail commerce, consulting, and international business environments. My work is focused on clear deliverables. Whether you need a complete ISMS, SOC 2 control documentation, a compliance gap assessment, security policies, vendor risk review, risk register, or audit-ready evidence pack, I can help you create practical, professional, and business aligned outputs. I understand that most businesses do not need overly complicated cybersecurity paperwork. They need clear documentation, realistic controls, organized evidence, and actionable recommendations that auditors, clients, and leadership can understand. My goal is to make cybersecurity and compliance easier for your business by giving you structured guidance, reliable documentation, and clear next steps. Let’s work together to strengthen your security posture, meet client or audit requirements, and move your compliance project forward with confidence.

  • Digital Forensics
  • Information Security
  • Information Security Consultation
  • Cybersecurity Management
  • Malware Removal
  • Artificial Intelligence
  • Certified Information Systems Security Professional
  • Governance, Risk Management & Compliance
  • Information Security Awareness
  • Cloud Security
  • Cybersecurity Monitoring
  • Web Application Security
  • Certified Information Security Manager
  • Information Security Audit
Attila H.

Dublin, Ireland

$135/hr
4.9
445 jobs

𝗬𝗼𝘂 𝗳𝗼𝗰𝘂𝘀 𝗼𝗻 𝘆𝗼𝘂𝗿 𝗕𝗨𝗦𝗜𝗡𝗘𝗦𝗦, and leave the rest to me! Sell to Disney, Amazon, Pfizer, Uber, Siemens, Google, PWC, L'Oréal, Bank of America, etc, and unlock business opportunities and growth (💲millions) by being secure and compliant by working together. 150+ certifications and attestations for SOC 2, ISO 27001, CMMC, GDPR, and HIPAA projects on Upwork. I now focus on aligning AI innovation with frameworks like ISO 42001, the EU AI Act, and NIST AI RMF. CEO selling to Morgan Stanley: 🥂"The certification is enabling us to strike a deal with a Fortune 100 client." CEO selling to Philips: 🍾 "We have achieved the ISO 27001:2022 certification in record time." CEO selling to Pepsi:🎉 "Attila supported the growth of our business into Fortune 100 accounts." COO selling to Fannie Mae:👏 "We achieved a successful SOC 2 Type II attestation with no exceptions." One-stop shop for all your needs: security questionnaires, AI compliance, privacy assessments, risk assessments, policies, and technical implementation, including AV, EDR, endpoint device management, and secure configuration, DLP, cloud hardening (AWS, Azure, GCP), vulnerability scans, and penetration testing with continuous security operation! As the founder of 𝘀𝗲𝗰𝘂𝗿𝗶𝘁𝘆-𝗰𝗼𝗻𝘀𝘂𝗹𝘁𝗮𝗻𝘁.𝗰𝗼𝗺 I know that in the B2B space, you need Security, Privacy, and Compliance to sell to Enterprises! Sleep well overnight because you know you are in good hands with the 🥇 Upwork virtual CISO, Security, Privacy, and Compliance consultant (1 M+ earnings, 20+ years of enterprise experience)! 💭Securing your business, passing security assessments by clients or prospects, and achieving a security certification 𝙨𝙝𝙤𝙪𝙡𝙙 𝙣𝙤𝙩 𝙗𝙚 𝙖 𝙘𝙪𝙢𝙗𝙚𝙧𝙨𝙤𝙢𝙚 𝙖𝙣𝙙 𝙥𝙖𝙞𝙣𝙛𝙪𝙡 𝙚𝙭𝙚𝙧𝙘𝙞𝙨𝙚. 👌 All you need to do is ping me on Upwork, bring your problem, and after a 15-minute scoping call, I will provide you with a detailed Scope of Work, including pricing! Specializing in business-to-business clients, providing 💸money-back guaranteed💸 ISO 27001, ISO 42001, SOC 2, EU AI Act, GDPR, HIPAA, PCI-DSS, CMMC, and FedRAMP projects and affordable virtual CISO (vCISO) services. --> If you don’t get certified, all my fees will be refunded! <-- 𝙒𝙚 𝙖𝙧𝙚 𝙖 𝙜𝙤𝙤𝙙 𝙢𝙖𝙩𝙘𝙝 𝙞𝙛 𝙮𝙤𝙪 𝙖𝙧𝙚: 🤔 Want to understand the 𝙖𝙘𝙩𝙪𝙖𝙡 𝙘𝙤𝙨𝙩 for implementation and maintenance of the security controls? 😢Busy developing your product or business and not having time and resources to be consumed by compliance efforts and endless meetings, halting your production for months. 🤔Already purchased a DIY compliance tool (Drata, Vanta, Thoropass/HeyLaika, Sprinto, Tugboat Logic, SecureFrame, Strike Graph, Audit Board, Trust Cloud, and so on) but 𝙙𝙤𝙣’𝙩 𝙠𝙣𝙤𝙬 𝙩𝙝𝙚 𝙣𝙚𝙭𝙩 𝙨𝙩𝙚𝙥 𝙤𝙧 𝙙𝙤𝙣’𝙩 𝙝𝙖𝙫𝙚 𝙩𝙞𝙢𝙚. 😢You quickly need quick security or privacy awareness training, cloud security posture assessment (AWS, GCP, Azure), endpoint security (MS 365 - Intune, Jumpcloud, Google Workspace), or penetration testing? 💪Facing challenges with the security and privacy implications of AI products? 💪Want continuous access to a certified, credible security, compliance, and privacy professional to manage your security framework? -> Continuous virtual CISO (vCISO / fractional CISO) service with affordable weekly/monthly payments! 😟Need world-class, battle-proof security and privacy policies, and you need it quickly? These are the ones that have passed audits by KPMG, Deloitte, E&Y, Pepsi, Uber, Verizon, Philips, Facebook, and many others. Working with me, you will: ● Stop struggling with compliance requirements, security questionnaires, or useless document templates. ● Make the first steps on the journey to selling Enterprises ● Receive a turnkey, Enterprise-grade security operation framework ensuring long-term effectiveness ● Work with an experienced senior team (architects, pen testers, endpoint engineers, developers, auditors, consultants) that regularly helps clients score Enterprise accounts. My stats are: ✅Saved tens of thousands $$$$$ for clients, advising them on the right security tools, solutions, and approach ✅#1 in Information Security and IT compliance categories (1 M+ earned) ✅Supporting all time zones ✅Long-term engagements ✅Professional certifications (CISA, CISSP, ISO 27001 IA) QUALITY over QUANTITY is our ethos. Excellent quality, on time, always. Security questionnaire and vendor assessment tools: CyberGRX, Panorays, KY3P (S&P, PWC), RSM, CyberVadis, SIG, SIG Lite, CAIQ, VAS, HECVAT, OneTrust, Graphite Connect, Centrl, Whistic, Process Unity Security/Compliance frameworks: ISO 27001, SOC 2, FedRAMP, NIST 800-53, NIST 800-171, NIST CSF, TISAX, HIPAA, HITRUST CSF, GDPR, NERC, ISO 27017, ISO 27018, CMMC, CMMI, TX-RAMP, StateRAMP, AZ-RAMP, NY DFS 23 / NYCRR Part 500, PCI-DSS, FFIEC, C5, ENISA, Center of Information Security (CIS) CSAT, IRAP, PIPEDA, ISO 42001, NIST AI RMF, EU AI Act

  • SOC 2
  • Information Security Consultation
  • AI Security
  • Information Security
  • Certified Information Systems Security Professional
  • SOC 2 Report
  • GDPR
  • Governance, Risk & Compliance Software
  • IT Compliance Audit
  • Penetration Testing
  • Information Security Audit
  • AI Compliance
  • AI Governance
  • AI Policy
  • ISO 27001
Aqsa M.

Lahore, Pakistan

$15/hr
5.0
2 jobs

⚠️ If your financials are not audit-ready, you are exposed to risk. I’m a Certified Business Accountant and Senior Auditor with 6+ years of experience specializing in audit, assurance, and control-focused financial management. My core strength lies in audit and internal controls, while delivering full-spectrum accounting support with the same level of precision, structure, and compliance. 📊 Audit & Assurance Expertise: ✓ Risk-based External & Internal Audits ✓ Audit Readiness & Financial Statement Review (IFRS / IAS / GAAP) ✓ Internal Control (ICFR) Evaluation, Design & Implementation ✓ Substantive Testing, Analytical Procedures & Variance Analysis ✓ Audit Documentation & Working Papers Preparation ✓ Coordination with External Auditors & Regulatory Requirements 📒 Accounting & Financial Management: ✓ Full-cycle Accounting (AP / AR / GL) ✓ Bank, Cash & Intercompany Reconciliations ✓ Month-End & Year-End Close Processes ✓ Preparation of Financial Statements & Consolidated Reports ✓ Management Reporting ✓ Budgeting, Forecasting & Financial Planning ⚙️Compliance & Process Optimization: ✓ Tax Compliance & Return Support ✓ Payroll Processing & Controls ✓ Fixed Asset Register Management & Depreciation ✓ Process Improvement & SOP Development ✓ Accounting System Setup & Optimization (QuickBooks, Xero, Excel-based systems) ✓ Identification and resolution of financial discrepancies and control gaps I approach every engagement with a structured methodology, professional skepticism, and a strong focus on documentation and audit trails. What sets my work apart: ✓ Audit-level accuracy across all financial processes ✓ Strong internal control mindset, not just bookkeeping ✓ Well-documented, defensible financials ✓ Clear, actionable insights for management ✓ Ability to identify risks before they become problems I don’t just manage accounts; I ensure your financials can stand up to scrutiny. If you need audit support, want to strengthen internal controls, or require reliable, audit-ready financials, LET'S CONNECT 📩 #Accounting #Bookkeeping #FinancialAccounting #FinancialReporting #FinancialStatements #ManagementReporting #FinancialAnalysis #Accountant #VirtualAccountant #AccountingConsultant #FinanceSpecialist #OutsourcedAccounting #AccountsPayable #AccountsReceivable #BankReconciliation #AccountReconciliation #GeneralLedger #JournalEntries #MonthEndClose #YearEndClose #ClosingProcess #Audit #ExternalAudit #InternalAudit #AuditSupport #AssuranceServices #FinancialControls #InternalControls #Compliance #RiskAssessment #IFRS #GAAP #UKAccounting #UKVAT #VATReturns #StatutoryAccounts #ExtendedTrialBalance #USAccounting #TaxPreparationSupport #QuickBooks #QuickBooksOnline #Xero #ZohoBooks #SageAccounting #CloudAccounting #MicrosoftExcel #ExcelExpert #GoogleSheets #SmallBusinessAccounting #SMEAccounting #RemoteAccounting #VirtualBookkeeper #AccountingSoftware

  • Financial Audit
  • Internal Auditing
  • Accounting
  • Management Consulting
  • Bookkeeping
  • Financial Accounting
  • Financial Analysis & Valuation
  • Financial Analysis
  • Finance & Accounting
  • Financial Reporting
  • Financial Consulting
  • Financial Statements Preparation
  • Financial Management
  • Accounting Advisory
  • Cost Accounting
  • Accounting Report
  • Accounting Software
  • Accounting Principles & Practices
  • Management Accounting
  • Financial Report
Ali H.

Manama, Bahrain

$20/hr
4.9
178 jobs

Trusted Advisor 🥇 🚀 Get Audit-Ready in 6 Weeks — Guaranteed. Confused by compliance? I translate complex regulations into simple, actionable steps. Whether you need to win enterprise trust with ISO 27001 or unblock sales with a SOC 2 report, I provide the fastest, most cost-effective path to certification. Why hire a consultant when you can hire a Strategic Partner? As the Founder of Axipro, I’ve led over 100 successful certifications in the last year alone. We don't just "give advice"—we handle the heavy lifting. 🛠 THE GRC TOOL EXPERT Are you struggling with your automated GRC platform? I am an official partner and power user of: ✅ Drata (Gold Partner) ✅ Vanta (Expert Implementation) ✅ Secureframe, Thoropass, Sprinto, Scrut, & more. I can help you get your progress running in record time and even provide discounted subscription rates through our MSSP partnership. 🛡 ONE-STOP COMPLIANCE SHOP - Policies & Procedures: Custom-tailored, audit-ready documentation. - Risk Management: Deep-dive assessments that protect your business. - Security Questionnaires: Get them off your desk and submitted in hours, not weeks. - Vulnerability Assessment and Penetration Testings: Remediation recommendations and detailed reports to improve security posture - CPA Attestation: We have in-house CPAs to sign off on your SOC 2 Type 1 & 2 reports. 🌍 GLOBAL STANDARDS COVERED ISO 27001, 9001, 14001, 45001, 27701, 27017, 27018, 42001 (AI) | SOC 2 Type 1 & 2 | HIPAA | PCI DSS | GDPR | FedRAMP | NIST CSF | CMMC | TISAX | HITRUST | SAMA NCA ⭐ WHAT CLIENTS ARE SAYING "Ali is a lifesaver. He got us SOC 2 certified through Vanta and saved us months of work." — Founder, Druxia (USA) "Knowledgeable, professional, and incredibly responsive. Ali got us across the line with Drata for ISO 27001." — Founder, Tilt Legal (AUS) 💎 THE AXIPRO ADVANTAGE 10+ Years Experience: Lead Engineer & Auditor minds

  • SOC 2
  • ISO 27001
  • IT Compliance Audit
  • HIPAA
  • SOC 2 Report
  • PCI DSS
  • AI Compliance
  • Data Privacy
  • GDPR
  • Governance, Risk Management & Compliance
  • Penetration Testing
  • Information Security Consultation
  • AI Governance
  • AI Security
  • CMMC
  • ISO 14001
Aryan G.

Jaipur, India

$10/hr
4.4
12 jobs

Accounting & Audit Professional | US, UK, Canada & Australia | QuickBooks, Xero, Zoho, Bill.Com, CCH, CaseWare, Advance Flow With over 5 years of progressive experience in accounting, bookkeeping, and auditing, I have successfully managed end-to-end financial operations for 30+ clients across the US, Canada, and Australia. My expertise spans a broad range of services, including bookkepping, accounts payable/receivable, bank reconciliations, payroll management, general ledger maintenance, invoicing, financial reporting, Quickbooks Cleanup and internal control testings. In the audit domain, I’ve led financial statement audits, Single audits, employee benefit plan (EBP) audits, and state compliance audits. I manage complete audit lifecycles from planning and risk assessment to substantive testing, controls evaluation, and final report issuance. I’m well-versed in audit analytics using tools like IDEA and Datasnipper, and in secure documentation workflows through Suralink. Academically, I hold an MBA in Finance from Amity University and am actively pursuing the US CPA. I bring strong technical acumen, attention to detail, confidentiality, and the ability to meet tight deadlines—all while delivering high-quality outcomes that support strategic decision-making and business growth. ✅ Core Services • Bank & Credit Card Reconciliations • A/P & A/R Management • Payroll & Tax Filings (Superannuation, HMRC, GST) • Monthly Reporting – P&L, Balance Sheet, Cash Flow • Budgeting, Forecasting & Variance Analysis • Financial Statement Preparation • Cleanup / Catch-up Projects • QuickBooks & Xero Setup and Maintenance • Journal Entries & Ledger Management • Internal Audit Support & Financial Controls 💡 Software Expertise • QuickBooks Online & Desktop • Xero • SAP, NetSuite, Wave, Zoho Books, SAGE • Bill.com, Stripe • Excel, Google Sheets, Trello, Slack, Zoom • Caseware, CCH Engagement and Advance Flow

  • Financial Audit
  • Intuit QuickBooks
  • Accounts Receivable
  • Accounts Payable
  • Financial Statement
  • Microsoft Office
  • Cash Flow Statement
  • Accounts Receivable Management
  • Accounts Payable Management
  • Xero
  • Balance Sheet
  • Zoho Projects
  • Accounting
  • Bookkeeping
  • QuickBooks Online
Hammad A.

Riyadh, Saudi Arabia

$18/hr
5.0
40 jobs

✔️CISSP ✔️ Certified Information System Auditor (CISA) ✔️ SOC 2 ✔️ NIST , COBIT, ITIL, NCA ECC, SADAIA and SAMA so your organization meets both international best practices and local regulatory mandates. ✔️ ISO 27001 Lead Auditor & Implementer ✔️ ISO 42001 Lead Implementer ✔️ ISO 22301 ✔️Comptia Security + ✔️ Cyber Threat Management ✔️ ISO 27701 Lead Auditor and Implementer I help organizations build strong, practical cybersecurity and governance programs that protect digital assets, meet regulatory requirements, and support business growth — without unnecessary complexity or cost. With a strong foundation in cybersecurity governance, risk management, and compliance, I specialize in translating security requirements into real-world, implementable solutions that actually work for teams and auditors alike. Rather than just writing policies, I focus on execution — aligning security controls with business objectives so organizations can operate securely, pass audits confidently, and scale with trust. 🛡️ Core Areas of Expertise ✔️Security Frameworks & Compliance: • ISO 27001, SOC 2, GDPR, HIPAA, PCI-DSS • NIST & ISO-aligned security frameworks • Audit preparation, gap assessments, and remediation planning ✔️Governance, Risk & Compliance (GRC) • Cybersecurity risk assessments & treatment plans • Enterprise risk management support • Policy, standard, and procedure development • KPI & performance metrics for security programs ✔️Incident Response & Resilience • Incident Response Plans (IRP) • Business Continuity & Disaster Recovery (BCP/DRP) • Tabletop exercises & readiness testing ✔️Cloud & Technical Security • AWS, Azure, and hybrid cloud security assessments • Secure system and network architecture reviews • Defense-in-depth and security best practices ✔️Team Enablement • Building and mentoring cybersecurity teams • Improving operational maturity and accountability ✔️AI & Emerging Technology Risk • AI governance support and risk assessments • Secure adoption of AI systems within compliance boundaries 💡 How I Work What sets me apart is practical implementation. I don’t deliver theoretical frameworks — I deliver actionable security programs that organizations can actually run, maintain, and improve. My work has helped organizations: • Pass regulatory and certification audits • Strengthen cybersecurity posture • Establish governance from scratch • Deploy new technologies securely • Build trust with clients, partners, and regulators 📜 Credentials (Value-Driven, Not Credential-Driven) That said, my success is measured by your outcomes, not just certifications. 🚀 Let’s Work Together Whether you need: •Cybersecurity GRC implementation •Risk assessments & compliance readiness •Policy & procedure development •Incident response & resilience planning •Secure AI and cloud adoption support I deliver enterprise-quality results tailored to your business size, industry, and budget. ✔️ TOP RATED (Top 10%) on the Upwork marketplace. ✔️ Over 5+ years of experience. ✔️ Completed 26+ long term successful projects with 8k+ earned!! ✔️ Worked 100+ hours. 💬 Let’s build security that enables growth, not slows it down. ✅ 𝗖𝗹𝗶𝗰𝗸 “𝗛𝗜𝗥𝗘” 𝘁𝗼 𝘀𝘁𝗮𝗿𝘁 𝗺𝗼𝘃𝗶𝗻𝗴 𝘆𝗼𝘂𝗿 𝗽𝗿𝗼𝗷𝗲𝗰𝘁 𝗳𝗼𝗿𝘄𝗮𝗿𝗱!

  • Information Security Consultation
  • Security Policies & Procedures Documentation
  • Cybersecurity Management
  • Technical Project Management
  • Business Process Modeling
  • Risk Management
  • Technical Documentation
  • IT Consultation
  • Management Consulting
  • Information Security Governance
  • Information Security Audit
  • Governance, Risk Management & Compliance
  • Change Management
  • Business Process Automation
  • IT Compliance Audit

How it works

Post a job for freePost a job

Tell us what you need. Create your own job post or generate one with AI then filter talent matches.

Hire top talent fast

Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.

Collaborate easily

Use Upwork to chat or video call, share files, and track project progress right from the app.

Payment simplified

Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.

Don't just take our word for it

How do I hire a Certified Information Systems Auditor on Upwork?

You can hire a Certified Information Systems Auditor on Upwork in four simple steps:

  • Create a job post tailored to your Certified Information Systems Auditor project scope. We’ll walk you through the process step by step.
  • Browse top Certified Information Systems Auditor talent on Upwork and invite them to your project.
  • Once the proposals start flowing in, create a shortlist of top Certified Information Systems Auditor profiles and interview.
  • Hire the right Certified Information Systems Auditor for your project from Upwork, the world’s largest work marketplace.

At Upwork, we believe talent staffing should be easy.

How much does it cost to hire a Certified Information Systems Auditor?

Rates charged by Certified Information Systems Auditors on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.

Why hire a Certified Information Systems Auditor on Upwork?

As the world’s work marketplace, we connect highly-skilled freelance Certified Information Systems Auditors and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream Certified Information Systems Auditor team you need to succeed.

Can I hire a Certified Information Systems Auditor within 24 hours on Upwork?

Depending on availability and the quality of your job post, it’s entirely possible to sign up for Upwork and receive Certified Information Systems Auditor proposals within 24 hours of posting a job description.