Jobs · Sales · New York

Manager, IT Governance, Risk and Compliance

TKO · New York, NY · 2 wk ago
Sales$105k/yrFull-time

TKO Group Holdings, Inc. (NYSE: TKO) is a premium sports and entertainment company that owns iconic properties including UFC, WWE, and PBR, reaching 1 billion households across 210 countries and territories. TKO also partners with major sports rights holders through IMG and On Location.

About the role

The IT Governance, Risk and Compliance Manager is responsible for executing the day-to-day responsibilities for TKO’s IT compliance program, including supporting SOX and IT General Controls, audit readiness, governance documentation, and technical data reconciliation activities. This role reports to the Senior Director of IT Governance, Risk and Compliance and partners closely with Legal, IT, Security, Internal Audit, Finance, and business stakeholders to support TKO’s control environment, enterprise compliance obligations, and risk management initiatives.

Responsibilities

  • Support the Senior Director of IT Governance, Risk and Compliance in building the overall compliance strategy and roadmap.
  • Implement and support an enterprise Governance, Risk and Compliance platform, including automation of risk and control matrices, evidence collection workflows, and executive reporting & dashboards.
  • Assist in tracking and delivering key compliance initiatives, including executive status updates regarding the program’s status and health.
  • Provide front-line support and subject matter expertise to system leads and business partners on compliance processes such as proper control execution, industry-standard documentation, and change management best practices.
  • Assist in establishing, documenting, and maintaining IT compliance requirements.
  • Lead process re-design efforts to identify and eliminate redundant risk management processes and/or controls.
  • Support the risk management objectives of other TKO risk management functions.
  • Maintain current inventories of in-scope systems and applications that support key regulatory requirements (e.g., ICFR), in-flight IT projects, and relevant stakeholders.
  • Maintain IT compliance documentation and templates, including Risk and Control Matrices, process flows, system interface documentation, and remediation plans.
  • Assist in the review and assessment of documentation prepared by system leads and control owners for quality, completeness, and alignment with compliance requirements.
  • Provide support for internal and external audits, including SOX and IT General Controls testing.
  • Support the IT Compliance leader with collecting and maintaining evidence required for audit requests and management reviews, ensuring timely and accurate delivery of required materials.
  • Support identification, tracking, and remediation of control gaps, deficiencies, and related action plans.
  • Support risk assessments, control reviews, and compliance evaluation processes.
  • Monitor adherence with internal policies and key metrics regarding control environment activities (e.g., reconciliation activities, data analysis, data hygiene).
  • Track application system owner’s adherence to the access termination process, including conducting look-back analysis for terminations that do not meet the termination policy.
  • Execute established continuous monitoring processes.
  • Prepare reporting for management regarding compliance status, risks, remediation efforts, and control effectiveness.
  • Document, maintain, and socialize training materials related to IT compliance, data privacy, and security practices.
  • Support awareness efforts for IT teams and business stakeholders to promote a culture of accountability and compliance.

Requirements

  • 5+ years of experience in IT compliance, IT audit, risk management, cybersecurity compliance, or a related governance function.
  • Hands-on experience developing and maintaining Risk and Control Matrices, process flows, remediation plans, system inventories, and related compliance documentation.
  • Demonstrated experience supporting cross-functional stakeholders such as Legal, IT, Security, Internal Audit, Finance, and business leads.

Qualifications

  • Bachelor’s degree in Computer Science, Information Systems, Information Security, Accounting, Finance, or a related field (preferred).
  • Demonstrated experience supporting SOX and IT General Controls in a complex public company environment (preferred).
  • Experience supporting compliance activities in connection with mergers and acquisitions (preferred).
  • Experience managing third-party assurance processes, including SOC report review and evaluation (preferred).
  • Familiarity with enterprise control frameworks such as NIST and ISO 27001 (preferred).
  • Knowledge of SAP (S/4) (preferred).

Skills

  • Strong knowledge of SOX, ITGC, and general compliance frameworks.
  • Advanced proficiency in Excel with a strong working knowledge of PowerQuery, SQL, or similar tools (preferred).
  • Understanding of access management, vendor management, change management, and audit evidence requirements.
  • Strong analytical and problem-solving skills with exceptional attention to detail.
  • Excellent written and verbal communication skills, including the ability to communicate technical concepts to non-technical stakeholders.

Certifications

  • Certified Information Systems Auditor (CISA) (preferred).
  • Certified Information Systems Security Professional (CISSP) (preferred).
  • Certified in Risk and Information Systems Control (CRISC) (preferred).

Pay

Hiring rate range: $105,000 – $140,000 annually (minimum will not fall below the applicable State/local minimum salary thresholds).

Similar jobs