Jobs · Legal · Illinois

SOX Risk Architect and Compliance Lead

AbbVie · North Chicago, IL · 2 days ago
LegalFull-time

About the role

The Sarbanes Oxley (SOX) Risk Architect & Compliance Lead role is accountable for facilitation of IT risk management processes. Collaborates cross-functionally to help mature and execute the IT Risk Security and Compliance processes which include governance, risk assessment, risk analysis, risk metrics, risk reporting, supplier monitoring, internal / external audit support, and technology enablement. Provides leadership for the creation of a SOX Compliance Strategy, project execution and improvement initiatives for IT. Creates strategies and processes related to all areas of Governance, Risk Management and Compliance. May coordinates the efforts of several groups to ensure compliance with other federal and industry regulations and requirements.

Responsibilities

  • Establish and oversee formal risk analysis and risk-assessment programs for various Information Services systems and processes, focusing on SOX-related controls
  • Drive technology enablement to automate the delivery of SOX audit evidence
  • Ensure and monitor compliance with SOX as well as other federal and industry regulations and requirements
  • Liaise with Internal Audit, Internal Controls, external Auditors and BTS application teams/control owners to remediate new and outstanding issues; track compliance-related issues
  • Participate in the overall creation and maintenance of AbbVie's risk, security & compliance policies, standards, guidelines, and baselines
  • Maintain expertise on governance, risk, security & compliance trends through training, research, and development in order to mitigate potential security exposures
  • Responsible for compliance with applicable Corporate and Divisional Policies and procedures
  • Ensure that all applicable AbbVie IT policies and procedures are followed
  • Reviews and provide input to improve procedures as applicable

Qualifications

  • Bachelor's Degree in Information Technology, Computer Science or Computer Engineering with 7 years' experience; Or Master's Degree with 6 years' experience; Or PhD with 2 years of experience with IT compliance, IT risk, and/or IT audit
  • In-depth understanding with all aspects of regulatory and contractual compliance, especially Sarbanes Oxley (SOX)
  • Advanced knowledge of risk assessment design and delivery
  • Experience communicating and presenting both verbally and in writing to various audiences, including committees, large groups, senior management, and executive leadership
  • Experience with IT processes, risk, and control frameworks, such as COBIT, ISO 27001, ITIL, Risk IT
  • Requires knowledge of outsourcing methodologies and operating models and working with professional services firms
  • Requires experience overseeing geographically distributed and culturally diverse workgroups

Preferred qualifications

  • Experience with Software Development Lifecycle (SDLC) methodologies preferred
  • Professional security management certification: CISSP or CISA preferred

Similar jobs

IT SOX Compliance Lead

AcuityConyers, GA· 2 mo ago
Information Technology$83k–$164k/yrapply on careers.acuityinc.com