Jobs · Finance

Manager, IT Governance, Risk and Compliance

TKO · California, United States · 4 days ago
RemoteRemoteFinance$105k/yrFull-time

TKO Group Holdings, Inc. (NYSE: TKO) is a premium sports and entertainment company. TKO owns iconic properties including UFC, the world’s premier mixed martial arts organization; WWE, the global leader in sports entertainment; and PBR, the world’s premier bull riding organization. Together, these properties reach 1 billion households across 210 countries and territories and organize more than 500 live events year-round, attracting more than three million fans. TKO also services and partners with major sports rights holders through IMG, an industry-leading global sports marketing agency; and On Location, a global leader in premium experiential hospitality.

About the role

The IT Governance, Risk and Compliance Manager is responsible for executing the day-to-day responsibilities for TKO’s IT compliance program which include supporting SOX and IT General Controls, audit readiness, governance documentation, and technical data reconciliation activities. Reporting to TKO’s Senior Director of IT Governance, Risk and Compliance, this role will partner closely with Legal, IT, Security, Internal Audit, Finance, and business stakeholders to support TKO’s control environment, enterprise compliance obligations, and risk management initiatives. This role requires both subject matter expertise and hands-on execution of compliance projects and operational tasks. The successful candidate will bring deep experience in IT compliance and controls with the ability to operate autonomously while supporting multiple business units and stakeholders within a complex environment.

Responsibilities

  • IT Compliance Execution
    • Support the Senior Director of IT Governance, Risk and Compliance in building the overall compliance strategy and roadmap
    • Implementation and day-to-day support of an enterprise Governance, Risk and Compliance platform to include automation of risk and control matrices, evidence collection workflows, and executive reporting & dashboards
    • Assist in tracking and delivery of key compliance initiatives including executive status updates regarding the program’s status and health
    • Provide front line support and subject matter expertise to system leads and business partners on compliance processes such as proper control execution, industry standard documentation, and change management best practices
  • Governance, Risk, and Documentation Management
    • Assist in establishing, documenting, and maintaining IT compliance requirements
    • Lead process re-design efforts to identify and eliminate redundant risk management processes and/or controls
    • Understand and support the risk management objectives of other TKO risk management functions
    • Maintain current inventories of in-scope systems and applications that are required to support key regulatory requirements (e.g., ICFR), in-flight IT projects, and relevant stakeholders
    • Maintain IT compliance documentation and templates, including Risk and Control Matrices, process flows, system interface documentation, and remediation plans
    • Assist in the review and assessment of documentation prepared by system leads and control owners for quality, completeness, and alignment with compliance requirements
  • SOX, IT General Controls, and Audit Support
    • Provide support for internal and external audits, including SOX and IT General Controls testing
    • Support the IT Compliance leader with collecting and maintaining evidence required for audit requests and management reviews, ensuring timely and accurate delivery of required materials
    • Support identification, tracking, and remediation of control gaps, deficiencies, and related action plans
    • Support risk assessments, control reviews, and compliance evaluations processes
  • Technical Data Reconciliation and Compliance Operations
    • Monitor adherence with internal policies and key metrics regarding control environment activities (e.g. reconciliation activities, data analysis, data hygiene, etc.)
    • Track application system owner’s adherence to the access termination process including conducting a look back analysis for terminations that do not meet the termination policy
    • Execute established continuous monitoring processes
  • Monitoring, Reporting, and Training
    • Prepare reporting for management regarding compliance status, risks, remediation efforts, and control effectiveness
    • Document, maintain and socialize training materials related to IT compliance, data privacy, and security practices
    • Support awareness efforts for IT teams and business stakeholders to promote a culture of accountability and compliance

Requirements

  • 5+ years experience in IT compliance, IT audit, risk management, cybersecurity compliance, or a related governance function
  • Hands on experience developing and maintaining Risk and Control Matrices, process flows, remediation plans, system inventories, and related compliance documentation
  • Demonstrated experience supporting cross-functional stakeholders such as Legal, IT, Security, Internal Audit, Finance, and business leads

Qualifications

  • Bachelor’s degree in Computer Science, Information Systems, Information Security, Accounting, Finance, or a related field
  • Demonstrated experience supporting SOX and IT General Controls in a complex public company environment
  • Experience supporting compliance activities in connection with mergers and acquisitions
  • Experience managing third-party assurance processes, including SOC report review and evaluation
  • Familiarity with enterprise control frameworks such as NIST and ISO 27001
  • Knowledge of SAP (S/4) a plus as this is our Enterprise Finance and Accounting ERP

Skills

  • Strong knowledge of SOX, ITGC, and general compliance frameworks
  • Advanced proficiency in Excel with a strong working knowledge of PowerQuery, SQL, or similar tools preferred
  • Understanding of access management, vendor management, change management, and audit evidence requirements
  • Strong analytical and problem-solving skills with exceptional attention to detail
  • Excellent written and verbal communication skills, including the ability to communicate technical concepts to non-technical stakeholders

Certifications

  • Certified Information Systems Auditor (CISA)
  • Certified Information Systems Security Professional (CISSP)
  • Certified in Risk and Information Systems Control (CRISC)

Pay

Hiring rate range: $105,000 – $140,000 annually (minimum will not fall below the applicable State/local minimum salary thresholds).

Similar jobs