IT SOX Specialist
Job Overview
Job title: IT SOX Specialist
Company: Manulife
Job description: Are you looking for unlimited opportunities to develop and succeed? With work that challenges and makes a difference, within a flexible and supportive environment, we can help our customers achieve their dreams and aspirations.
Job Description
As part of the Governance & Control (G&C) function, first-line technology operations focused on managing operational risk and responsible to operationalize and execute the Global Technology risk strategy. G&C aligns with leadership to set the risk culture, supports IT in identifying, and mitigating technical risks end to end, and provides an objective view of key risks to enable business decisions. G&C also provides processes, data, skilled resources, and insight to track accountability and enable risk-based decisions. Measures performance against mandatory requirements, such as risk standards, informing our operational risk position.
You will join a world-class company known for its commitment to diversity, community involvement, and work-life balance. We are committed to the personal and professional development of our team members, including support for attaining and keeping industry designations and certifications.
Responsibilities include:
Measure and report on SOX compliance with mandatory standards (information risk management / operational risk management) and supporting internal control functions
Define procedures for SOX performance measurement and control testing
Track and report on SOX program progress
Review and assess the condition of SOX controls against established criteria. Evaluate to verify controls meeting established assurance objectives
Develop and assist in completing corrective action plans for key controls/measures that cannot be measured or where control deficiencies exist
Work with the ETS Service Areas to help define and improve Information Security practices. Provide input and recommendations on best practices
Maintain awareness of current and emerging threats and stay abreast of current and developing technologies, risks, and security best practices
Support in maintaining a control inventory using risk and control platform (Archer)
You bring:
5 years of relevant SOX and information risk management experience
Experience with information security risk assessment methodologies
Experience with technology change management: processes, policies, standards, and controls, including current tools & technologies (ServiceNow, Remedy, Salesforce, etc).
Experience with ISO 27001/27002 and/or CIS Top 20 Critical Controls
Demonstrated knowledge of technological trends and developments in the area of information security & risk management
Experience implementing and/or supporting a large-scale corporate enterprise solution.
Nice to have:
Professional certification(s) related to information security or information risk management such as CISSP, CISM, CISA, GIAC
Working knowledge in two or more of the following domains:
Security architecture and controls in various infrastructure platforms (i.e. Windows, Unix, Virtual hosting, access management, networking, end-user technology, cloud computing Azure, AWS Infrastructure as a Service (IaaS), and Platform as a Service (PaaS)).
GRC Platform such as Archer
Previous experience in the Financial, Insurance, or Healthcare sectors
If you are ready to unleash your potential, it’s time to start your career with Manulife/John Hancock.
About Manulife
Manulife Financial Corporation is a leading international financial services group that helps people make their decisions easier and lives better. With our global headquarters in Toronto, Canada, we operate as Manulife across our offices in Canada, Asia, and Europe, and primarily as John Hancock in the United States. We provide financial advice, insurance, and wealth and asset management solutions for individuals, groups and institutions. At the end of 2019, we had more than 35,000 employees, over 98,000 agents, and thousands of distribution partners, serving almost 30 million customers. As of March 31, 2020, we had $1.2 trillion (US$0.8 trillion) in assets under management and administration, and in the previous 12 months we made $30.4 billion in payments to our customers. Our principal operations are in Asia, Canada and the United States where we have served customers for more than 155 years. We trade as ‘MFC’ on the Toronto, New York, and the Philippine stock exchanges and under ‘945’ in Hong Kong.
Manulife is an equal opportunity employer. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention and advancement and we administer all of our practices and programs based on qualification and performance and without discrimination on any protected ground. It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will consult with applicants contacted to participate at any stage of the recruitment process who request any accommodation. Information received regarding the accommodation needs of applicants will be addressed confidentially.
Expected salary:
Location: Toronto, ON
Job date: Sat, 20 Mar 2021 06:02:41 GMT