Northwestern Mutual logo
Northwestern MutualPosted 1 week ago
EXPIRED

IT and Cybersecurity Regulatory Response Lead

$118,960–$118,960 year

On-siteMilwaukee, Wisconsin, United States

Part TimeSenior LevelBachelors DegreeLarge

Job Summary

Own and manage the second-line IT SOX/MAR program through direct individual contribution and serving as a people leader for junior team members. Serve as the primary accountable stakeholder for building an integrated program addressing IT SOX/MAR requirements and state cybersecurity regulations including New York DFS Part 500, California Consumer Privacy Act Article 9, and the Wisconsin Insurance Data Security Law. Represent regulatory requirements in IT GRC and cybersecurity efforts to build an automated continuous controls assurance program leveraging a unified data platform and ServiceNow. Develop relationships with first-line IT teams and articulate technical positions to reach consensus with third-line auditors on scoping rationale and control coverage. Identify dependencies between business process and IT program components, including segregation of duties and interface risks. Automate and improve IT SOX/MAR processes with evolving needs for future system development and data engineering capabilities.

Required Qualifications

  • Bachelor's degree in MIS, Accounting, Business, or a related field, or equivalent relevant experience
  • Minimum 8–12 years of experience in information systems, systems audit, IT controls, or a related technology risk and compliance discipline
  • Technical understanding of IT SOX/MAR program design
  • 1–2 years of people leadership experience
  • Excellent relationship management, influence, communication, negotiation, and professional judgment skills
  • Proven ability to independently identify and resolve critical and complex issues through effective problem-solving skills
  • Ability to operate effectively in ambiguous situations and bring structure to complex work
  • Compliance
  • Cross Functional Partnering & Planning
  • Process Improvement
  • Engineering Expertise & Practices
  • Strategic Vision & Planning
  • Analytical Thinking
  • Risk Optimization
  • Coaching & Mentoring
  • Data Security
  • Strategic Vision & Planning
  • Risk Assessment & Identification
  • Risk Mitigation
  • Risk Governance
  • Learning Agility & Critical Thinking
  • Scenario Planning
  • Technology Integration
  • Risk Consulting
  • Risk Optimization

Desired Qualifications

  • Including preferred 6–8 years of experience in technology risk, IT audit, or regulatory compliance within a public accounting, consulting, or professional services environment
  • Experience building or enhancing regulatory compliance programs; financial services industry experience is a plus

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Find similar roles