SOX Tech Risk and IAM Lead
Core
Lead identification, assessment, and mitigation of technology risks and enforce Identity and Access Management (IAM) policies to ensure SOX compliance.
Role type
Individual contributor SOX Tech Risk and IAM Lead
Builds
Risk frameworks, IAM policies, and control environments for multiple IAM platforms
Domain
Financial services compliance (SOX) and Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SOX IT General Controls, technology risk assessment, IAM principles, SailPoint, CyberArk, Delinea, cloud platform IAM (AWS/Azure/GCP), control testing, root cause analysis
Preferred skills
CISA, CRISC, CISSP, CPA, CIA, AWS Certified Cloud Practitioner, NIST 800-53, ISO 27001, CIS Controls, AI/ML in cybersecurity
Technologies
SailPoint, CyberArk, Delinea, Active Directory, Azure AD, AWS, Azure, GCP
Responsibilities
Lead identification, assessment, and mitigation of technology risks; Develop and maintain risk frameworks and policies; Enforce IAM policies for SOX compliance; Oversee control environment for IAM platforms; Drive coordination for SOX scope initiatives; Serve as end-to-end process and IT control expert; Participate in walkthroughs for high-risk areas; Evaluate process changes and provide recommendations; Oversee documentation of control narratives and perform control testing; Collaborate on deficiency evaluation and remediation; Oversee cybersecurity controls execution; Develop and review testing procedures; Stay current on cyber threats and regulatory frameworks
Seniority
Senior, hands-on IC