ironquill.tech/board

$ cat jobs/manager-it-compliance-remote-east-coast-raleigh-jersey-city-arch-capital-group-ltd-98949c90bc8e.json

Manager, IT Compliance - Remote, East Coast (Raleigh, Jersey City or New York Ci

arch capital group ltd·US·United States·mid
Apply on himalayas → Get AI match score →
With a company culture rooted in collaboration, expertise and innovation, we aim to promote progress and inspire our clients, employees, investors and communities to achieve their greatest potential. Our work is the catalyst that helps others achieve their goals. In short, We Enable Possibility℠. The Manager,ITCompliance, working closely with the CISOand Director of IT Security,will provide management,leadershipand delivery of the compliance function, liaising closely with other IT and business stakeholders. He/she will be the main point of contact for all IT Compliance related activities including leading/coordinatingIT control assessment activities (SOX, SOC 2, etc.) and customer information security due diligence reviews. Responsibilities Work with IT process owners to identify/improve and document detailed controls for key application,security,and infrastructure components. Provideon-going organization wide guidance on IT control requirements andimpact. Facilitate requests between control owners and Internal/external audit teams and be the main point of contact with the Internal and External Audit teams. Manage and report on IT control gaps,track issues tocompletion,and provide recommendations for improvements. Lead in the design and implementation of efficient and effective controls within the organization. Participate in data privacy governance related activities such as data mapping and data privacy assessments. Manage the response forIT-relatedcustomer security assessments. ProactivelyidentifyIT control gaps with a focus on automating control reviews wherever possible. Manage access recertification process. Required Qualifications 5+ years of combined experience in the fields of Information Systems audit,IT security,IT governance,IT risk & IT compliance In-depth knowledge and experience withSarbanes-Oxley, PCI-DSS, ISO 27001, SOC2and the NYDFS Cybersecurity Regulation. Working Knowledge of Windows Operating System and Active Directory Security including User