CLeader Technology Risk and ComplianceEmpresa : Chubb Tipo de empleo : Tiempo completo Monterrey, MexicoDescripción del trabajo - Leader Technology Risk and ComplianceDescriptionChubb is seeking a highly experienced and strategic Leader Technology Risk and Compliance to support the management and continued maturation of Chubb's North America Technology SOX Compliance program.
Reporting to the Vice President, Global Leader of SOX IT Compliance, this role will serve as a key senior contributor and subject matter expert in ensuring adherence to all applicable IT controls.
It will act as a trusted partner to business stakeholders, Internal Audit, and External Audit teams, playing a critical role in driving compliance excellence and operational maturity across the organization.
This position offers a unique opportunity to lead high-impact initiatives within a globally recognized financial services organization.QualificationsResponsibilitiesLeadership & StrategyServe as a leader and subject matter expert within the SOX IT Compliance function, providing strategic direction and hands‐on oversight of the North America Technology SOX programContribute to the strategic vision and roadmap for the SOX IT Compliance program, driving continuous improvement and maturation of the control environmentBuild, mentor, and develop a high‐performing team of SOX IT compliance professionals, fostering a culture of accountability, collaboration, and continuous learningRepresent the SOX IT Compliance function in discussions and governance forums, effectively communicating program status, risks, and recommendations to executive leadershipChampion a risk‐aware culture across the organization by promoting awareness of SOX compliance requirements and best practicesSOX Program ManagementLead and oversee the design, implementation, and monitoring of IT General Controls (ITGCs), IT Application Controls (ITACs), and Software Development Lifecycle (SDLC) requirements to ensure SOX compliance across the regionDrive the scoping, planning,
and execution of the annual SOX IT compliance assessment, ensuring timely and accurate completion of all testing and documentation activitiesAnalyze control results and identify opportunities for continuous improvement of the SOX control environment, developing actionable recommendations for remediation and enhancementOversee the remediation of control deficiencies identified by auditors, ensuring appropriate root cause analysis and action plans are defined, tracked, and resolved in a timely mannerAudit & Stakeholder ManagementServe as a key point of contact and partner for internal, external, and regulatory auditors on the scope, depth, risks, and results of technology auditsPartner and negotiate with audit teams on control design, testing approaches, and findings to ensure balanced and pragmatic outcomesCollaborate with process, control, and system owners across the organization to drive alignment and accountability for SOX compliance obligationsOversee the review and evaluation of SOC 1 Type 2 reports or equivalent documentation to assess vendor SOX compliance and determine appropriate reliance on third‐party systems and servicesTechnology & InnovationEvaluate and assess emerging technologies and evolving processes (e.G., DevSecOps, cloud environments, AI/large language models) and provide authoritative control guidance for new and developing areasStay current on regulatory changes, industry trends, and technological advancements that may impact the SOX IT compliance landscape, proactively advising leadership on potential risks and opportunitiesDrive the optimization and effective utilization of GRC tools (e.G., AuditBoard)
to enhance program efficiency, reporting capabilities, and overall compliance monitoringQualifications12+ years of progressive leadership experience across enterprise technology disciplines, including one or more of the following: application development, information security, strategic planning, risk management, compliance monitoring, IT auditing, or operations10+ years of relevant IT SOX auditing experience with a public accounting firm and/or a publicly traded companyDeep, demonstrable understanding of Sarbanes‐Oxley compliance requirements, including IT General Controls, IT Application Controls, and SSAE 18 (SOC 1 Type 2) reporting standardsProven track record of leading and developing high‐performing teams in a complex, matrixed, and global organizational environmentDemonstrated ability to influence and negotiate with senior stakeholders, auditors, and cross‐functional leaders without direct authorityStrong executive presence with excellent written and verbal communication skills, including the ability to present complex technical and compliance topics to executive‐level audiencesProven ability to manage multiple high‐priority initiatives simultaneously in a dynamic, fast‐paced environmentDemonstrated leadership competencies including business acumen, strategic thinking, accountability, integrity, and inclusive leadershipPreferredExperience working with GRC tools such as AuditBoard or similar platformsFamiliarity with cloud control frameworks, DevSecOps environments, and emerging technologies such as AIPrior experience in the insurance or financial services industryExperience working in a large, integral, publicly traded organizationEducationBachelor's degree (B.S.) or Master's degree in Information Systems, Computer Science, Accounting, Finance, or a related fieldCertificationsCertified Information Systems Auditor (CISA)Additional relevant certifications (e.G., CISSP, CRISC, CPA) are a plus#J-*****-Ljbffr
📌 Leader Technology Risk And Compliance (Xico)
🏢 Chubb
📍 Xico