Primary Roles & Responsibilities
- Review proposed customer contracts for compliance and regulatory issues
- Coordinate external audits of the IT environment
- Develop and maintain both automated and manual continuous audit processes
- Educate users on IT controls processes
- Report compliance results & metrics to executive teams
- Provide continual improvement objectives to better align to external requests
- Build a strong knowledge and understanding of systems and processes
- Assist in development of data governance processes and RACI
- Review and update internal corporate policies based on industry best practices and regulatory requirements
- Understand and document data workflows and lifecycles
- Establish processes to improve the life cycle management of contracts
Knowledge, Skills, Abilities
- Strong familiarity with risk, compliance, and audit frameworks and the various ways they are applied in IT environments
- Understanding of IT regulations – particularly in the privacy domain
- Ability to scope, assess, and revise contracts and suggest edits based on business drivers and compliance needs
- Ability to implement controls in a diverse technical and geographically distributed environment
- Ability to convince a highly varied audience to follow prescribed controls
- Comfort with presenting progress reports and results to senior leadership
- Understanding of process design and compliance terminology
- Ability to write and speak clearly, consistently, and concisely
- Ability to multitask responses to multiple contracts and meet given deadlines
- Ability to be self‑driven, motivated with end‑to‑end ownership on contracts management
- Excellent audit life cycle management skills; use of Excel, document management, ability to track document versions and evidence
Education / Experience Requirements
- 4+ years of prior experience in IT risk, auditing, contracts evaluation, and/or compliance strongly preferred
Supervisory Responsibility
This position may take on a leadership role of other employees during certain projects and audits.
Certifications Desired / Preferred
- CISA and/or CRISC
- CISM or CISSP
Equal Employment Opportunity
Black Box is an equal opportunity employer. Black Box does not discriminate against individuals on the basis of race, color, marital status, sex, sexual orientation, gender identity, religion, national origin, age, disability, veteran status, genetic information, or any other protected status, and endorses those policies and practices which seek to recruit, hire, train and promote the most qualified persons into available jobs.