Manager of Audit & Compliance at Vectra responsible for internal audits of IT processes and compliance. Collaborating with IT, Security, Engineering teams to ensure effective risk management and regulatory compliance.
Responsibilities
Develop and carry out a risk-based internal audit plan for IT operations, security controls, and compliance processes
Conduct audits from planning through reporting, evaluating the effectiveness of IT controls, policies, and procedures
Identify control gaps and IT-related risks during audits and recommend actionable improvements
Prepare clear audit findings reports and work with stakeholders on remediation plans
Track audit findings and drive remediation efforts to closure with accountable owners
Work closely with IT, Security, Engineering, and other teams to gather evidence and facilitate audit processes
Serve as a liaison with external auditors and internal teams for any audit inquiries or compliance assessments
Support external compliance audits and certifications (e.g. ISO 27001, SOC 2) by providing required documentation and coordinating audit logistics
Maintain comprehensive audit workpapers and documentation repositories using a modern GRC tool
Help build audit playbooks and improve audit workflows to increase efficiency
Requirements
University degree in Information Systems, Computer Science, MIS, or a related field
Professional certification such as CISA (Certified Information Systems Auditor) or CIA strongly preferred
5+ years of experience in IT auditing, IT risk, or related compliance fields
Demonstrated experience leading or executing multiple IT audits end-to-end, including working with external or third-party auditors
Strong understanding of IT governance, security, and compliance frameworks (e.g. ISO 27001, SOC 2, NIST 800-53, Sarbanes-Oxley (SOX), GDPR)
Familiarity with cloud platforms and enterprise IT controls (AWS, Azure, O365, etc.)
Experience with GRC or audit management tools (e.g. AuditBoard, Drata, Vanta) is a plus
Excellent communication skills
Strong organizational and project management skills
Benefits
Compensation includes competitive base pay
Incentive plan eligibility
Participation in the employee equity plan (stock options)
Consultor GRC responsável pela implementação de projetos de Governança, Riscos e Compliance na Redbelt Security. Avaliação de processos e controles para segurança cibernética e melhoria contínua.
Policy & Regulatory Affairs Manager at Emerald AI influencing regulatory strategy and engaging with stakeholders. Analyzing policy developments and aligning business objectives with regulatory context.
Head of Compliance overseeing regulatory compliance for fintech company revolutionizing healthcare payments. Leading a high - performing compliance team ensuring adherence to evolving regulations.
IT Compliance Coordinator responsible for IT compliance and resilience across Hydro's operations. Overseeing projects, audits, and collaboration with IT and business stakeholders to ensure adherence to regulations and frameworks.
BIC Compliance Analyst ensuring compliance with risk management policies related to engagement letters and conflict waivers. Collaborating with partners and supporting firm attorneys with conflicts analysis.
Director, Global Regulatory Affairs leading Protara's ex - US regulatory strategy and operational execution for clinical studies in oncology, cell and gene therapy, and rare diseases.
Manager ensuring compliance across Regulatory, EHS, Product, and Data Governance domains at Celestica. Collaborating with suppliers and managing data integrity for compliance mandates.
Director of Regulatory Compliance managing compliance for cross - border payments fintech in Malta. Leading financial crime prevention and AML compliance efforts within the organization.
Compliance Associate managing client - specific tax forms at Oxford Risk Management Group. Responsibilities include data analysis and compliance reporting across various programs.
Senior Manager: Governance, Risk and Compliance leading GRC functions at Reward Gateway. Managing risk governance, regulatory compliance and assurance processes for the organization.