Job description
This position is responsible for supporting the development, maintenance, and implementation of the Group-level SOX IT control framework, ensuring that SOX IT requirements are correctly understood and appropriately applied in day-to-day operations across Business Units (BUs).
The role is positioned as an individual contributor / specialist, focusing on SOX IT expertise and acting as a support, advisory, and coordination function with relevant stakeholders (BUs, Information Security, Internal Audit) throughout control implementation and improvement.
Key responsibilities:
- Participate in the development, update, and maintenance of the company's SOX IT control framework.
- Support the incorporation of SOX IT requirements into the existing Information Security policies and standards, ensuring compliance with SOX requirements.
- Coordinate with Business Units and relevant departments to clarify how existing controls should be applied to meet SOX objectives.
- Support and guide BUs (GRC, System Owners, Product Owners) through training, working sessions, and SOX IT walkthroughs.
- Apply IT audit / SOX experience to review the appropriateness of control design and identify areas requiring adjustment during implementation.
- Participate in discussions and engagements with external auditors on SOX ITrelated matters.
- Monitor the overall implementation status of SOX IT at Group level and support the identification of necessary improvements.
Requirement
Experience
- Background in IT Audit / SOX / IT Controls; candidates with Big 4 experience are strongly preferred.
- Hands-on experience in assessing control design and working with external auditors.
- Coordination experience and the ability to work with multiple stakeholders (IT, business, audit) is required.
Skills & Competencies
- Solid understanding of the core concepts and requirements of SOX IT controls and IT audit.
- Ability to translate control and compliance requirements into practical, easy-to-understand guidance for non-audit stakeholders.
- Strong communication and collaboration skills across different functions.
- Ability to work effectively in a fast-changing, dynamic environment.
Mindset & Working Style
- Practical, flexible, and support-oriented
- Professionally rigorous without being rigid
- Strong learning mindset with a focus on continuous improvement