LanceSoft
IT - Security Analyst III
This job is now closed
Job Description
- Req#: 26-12946
Job Description: Callouts:
- Role is hybrid ( in office tues, weds, thurs) in Allentown.
- Looking for a candidate who can help evaluate the overall effectiveness and efficiency of the IT SOX Compliance program and controls, who can help identify practical improvement areas to strengthen control execution and opportunities for automation.
Authoring Control Narratives
o Develop, maintain, and update detailed control narratives for ITGCs, application controls, and system development controls.
o Ensure documentation accurately reflects current control design and operating procedures.
o Collaborate with internal stakeholders to validate control narratives and address gaps.
Assessing New Applications for SOX Impact
o Evaluate new and existing IT systems and applications (including third-party solutions) to determine SOX relevance and impact.
o Conduct risk assessments and scoping determinations for in-scope applications.
o Recommend control requirements and remediation actions to ensure compliance with SOX and internal control over financial reporting (ICFR).
Review and Disposition of SOC1 Reports
o Partner with Control Owners to assist in the review of SOC1 (System and Organization Controls) reports for third-party service providers.
o Assess the adequacy of controls described in SOC1 reports and determine their impact on PPL’s SOX compliance.
o Document findings and recommend actions for any identified gaps or deficiencies.
Control Testing and Remediation
o Perform testing of controls for operational effectiveness.
o Track and validate remediation of control deficiencies through to closure.
o Advise management on appropriate remedial actions and monitor progress.
Compliance and Reporting
o Provide periodic updates and reporting to management on SOX compliance status, control effectiveness, and remediation activities.
o Represent IT in meetings and communications with internal and external audit teams.
Continuous Improvement
o Identify and implement operational improvements to drive compliance, efficiency, and education in the IT SOX environment.
o Train and mentor IT control owners to help improve the quality and consistency of control evidence.
Collaboration and Knowledge Sharing
o Work closely with cross-functional teams to integrate security controls and processes into infrastructure and applications.
Qualifications
The vendor shall provide personnel who meet the following minimum qualifications:
• 10+ years of experience supporting enterprise IT SOX programs for fortune 500 companies.
• Strong understanding of SOX requirements, control frameworks, and ITGCs.
• Experience in authoring control narratives, performing SOX risk assessments, and testing controls.
• Familiarity with SOC1 report review and disposition.
• Excellent communication, analytical, and project management skills.
• Strong attention to detail and organizational skills required.
About the company
Established in 2000, LanceSoft is a Certified MBE and Woman-Owned organization, and a pioneer in providing premium end-to-end Global Workforce Solutions and IT Services to diverse clients across various domains.
Notice
Talentify is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.
Talentify provides reasonable accommodations to qualified applicants with disabilities, including disabled veterans. Request assistance at accessibility@talentify.io or 407-000-0000.
Federal law requires every new hire to complete Form I-9 and present proof of identity and U.S. work eligibility.
An Automated Employment Decision Tool (AEDT) will score your job-related skills and responses. Bias-audit & data-use details: www.talentify.io/bias-audit-report. NYC applicants may request an alternative process or accommodation at aedt@talentify.io or 407-000-0000.