IT Specialist, SOX Compliance, SAP GRC

Posted 1ds ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Specialist IT SOX and SAP GRC Compliance ensuring integrity and compliance of key reports. Support for financial and IT control environments while contributing to SOX processes in a biotech company.

Responsibilities:

  • Support the integrity, accuracy, and compliance of key reports and SAP GRC controls relied upon for SOX processes.
  • Serve as a key contributor to the SOX Key Reports program, supporting reports relied upon for SOX controls.
  • Perform detailed technical analysis of report logic, including code, queries, scripts, and data transformations, to understand how reports are generated.
  • Validate report completeness and accuracy by reconciling report outputs to source systems and underlying data.
  • Assess report logic and calculations to confirm alignment with control objectives and SOX requirements.
  • Partner with system owners and developers to review report design, logic, and dependencies.
  • Perform report tie-outs between the report provided by the process owner and the independently generated output derived from code or query review.
  • Analyze and interpret technical artifacts such as SQL queries, stored procedures, ETL logic, and application code as needed.
  • Support the design, implementation, and effectiveness of SAP GRC SOX ITGC controls.
  • Assist in establishing and maintaining control frameworks, standards, and procedures aligned with SOX and company policies.

Requirements:

  • Doctorate degree OR Master’s degree and 2 years of Information Security experience OR Bachelor’s degree and 4 years of Information Security experience OR Associate’s degree and 8 years of Information Security experience OR High school diploma / GED and 10 years of Information Security experience
  • ServiceNow IRM experience
  • Prior policy exception, audit, and service management experience
  • Attention to detail: Ensure accuracy and thoroughness in policy exception and audit preparation
  • Adaptability: Adjust to changing regulatory requirements and security threats
  • Service orientation: Focus on stabilizing and enhancing the quality of security services
  • Collaboration: Work effectively with cross-functional teams, inform and educate stakeholders, and build strong relationships with stakeholders
  • Working experience in an Agile or DevOps environment.
  • Practical knowledge of information security standards and frameworks such as ISO 27001/27002, NIST, and others.
  • Must be team-oriented, placing priority on the successful completion of team goals.
  • Technical curiosity with strong logical, problem-solving, and decision-making skills.

Benefits:

  • A comprehensive employee benefits package, including a Retirement and Savings Plan with generous company contributions
  • group medical, dental and vision coverage
  • life and disability insurance
  • flexible spending accounts
  • A discretionary annual bonus program, or for field sales representatives, a sales-based incentive plan
  • Stock-based long-term incentives
  • Award-winning time-off plans
  • Flexible work models where possible.