Support the integrity, accuracy, and compliance of key reports and SAP GRC controls relied upon for SOX processes.
Serve as a key contributor to the SOX Key Reports program, supporting reports relied upon for SOX controls.
Perform detailed technical analysis of report logic, including code, queries, scripts, and data transformations, to understand how reports are generated.
Validate report completeness and accuracy by reconciling report outputs to source systems and underlying data.
Assess report logic and calculations to confirm alignment with control objectives and SOX requirements.
Partner with system owners and developers to review report design, logic, and dependencies.
Perform report tie-outs between the report provided by the process owner and the independently generated output derived from code or query review.
Analyze and interpret technical artifacts such as SQL queries, stored procedures, ETL logic, and application code as needed.
Support the design, implementation, and effectiveness of SAP GRC SOX ITGC controls.
Assist in establishing and maintaining control frameworks, standards, and procedures aligned with SOX and company policies.
Requirements
Doctorate degree OR Master’s degree and 2 years of Information Security experience OR Bachelor’s degree and 4 years of Information Security experience OR Associate’s degree and 8 years of Information Security experience OR High school diploma / GED and 10 years of Information Security experience
ServiceNow IRM experience
Prior policy exception, audit, and service management experience
Attention to detail: Ensure accuracy and thoroughness in policy exception and audit preparation
Adaptability: Adjust to changing regulatory requirements and security threats
Service orientation: Focus on stabilizing and enhancing the quality of security services
Collaboration: Work effectively with cross-functional teams, inform and educate stakeholders, and build strong relationships with stakeholders
Working experience in an Agile or DevOps environment.
Practical knowledge of information security standards and frameworks such as ISO 27001/27002, NIST, and others.
Must be team-oriented, placing priority on the successful completion of team goals.
Technical curiosity with strong logical, problem-solving, and decision-making skills.
Tech Stack
ETL
ServiceNow
SQL
Benefits
A comprehensive employee benefits package, including a Retirement and Savings Plan with generous company contributions
group medical, dental and vision coverage
life and disability insurance
flexible spending accounts
A discretionary annual bonus program, or for field sales representatives, a sales-based incentive plan