Remote Senior Director, IT Controls & SOX Compliance

Mheducation

Northern (KY)

Hybrid

USD 124,000 - 215,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

McGraw Hill is seeking a Sr. Director of IT Internal Controls & Risk Compliance for the DES organization to lead SOX compliance and build a scalable IT governance framework across our digital products and ERP landscape.

This remote role requires deep IT audit experience, strong knowledge of COSO/ COBIT/NIST, and proven leadership to partner with Finance, Internal Audit, and External Audit while driving risk-based control improvements across the company.

Qualifications

  • 10+ years of progressive experience in IT audit, IT risk management, or SOX compliance within a complex corporate environment.
  • Proven track record in planning and executing internal, SOX (Business & IT), operational, and IT audits.
  • Experience supporting SOX implementations or major control transformations preferred.
  • Experience working with PCAOB-regulated auditors.
  • Familiarity with audit management tools.
  • Big 4 or equivalent public-company experience preferred.
  • Advanced understanding of internal control frameworks and risk assessment methodology.
  • Exceptional leadership, communication, problem-solving, critical thinking and stakeholder management capabilities.
  • Ability to coach and guide control owners; demonstrated ability to build consensus and work across a matrixed organization.

Responsibilities

  • Audit Execution and Risk Assessment: Plan and develop audit scope for complex assessments including SOX and SOC2 audits; participate in end-to-end engagements from planning through risk assessment, execution, reporting, issue validation, and follow-up; apply a robust understanding of business and IT risks and how controls address these risks.
  • Internal Controls & Remediation: Provide guidance to control owners on designing and implementing effective controls, ensure timely remediation of deficiencies, recommend improvements; design and implement controls for new entities and evolving business processes; support SOX readiness initiatives and system implementations to embed business, IT, and automated controls appropriately.
  • SOX and Compliance Expertise: Apply strong knowledge of SOX requirements, internal control frameworks (COSO, COBIT, NIST), and risk assessment principles to identify control gaps, assess risks, and recommend practical, business-focused solutions; effectively communicate SOX control concepts, audit findings, and remediation expectations to process owners and management, including senior leadership
  • IT Controls Implementation & Sustainment: Lead evaluation and implementation of IT General Controls—including user access provisioning/deprovisioning and periodic reviews, segregation of duties considerations, change management and release controls, and operations controls (interfaces, batch processing, backups, monitoring); assess and document controls across complex application landscapes such as digital products, Oracle ERP, legacy/custom, and SaaS; maintain comprehensive risk & control matrices, narratives, and system architecture documentation; partner with Finance and other stakeholders to identify IT-dependent controls and support audit walkthroughs and testing.
  • Program Development & Sustainability: Participate in the building of an enterprise IT risk and compliance program beyond initial SOX implementation; maintain an inventory of in-scope applications, infrastructure, and related risks; align IT risk management with enterprise and DES risk initiatives; support development of IT policies and standards, and the creation of metrics for executive, Committee, and Audit reporting; integrate recognized governance frameworks and establish sustainable compliance monitoring processes.
  • Collaboration & Coordination: Coordinate audit activities with external auditors to maximize efficiency, leverage work performed, and minimize disruption to the business; build strong relationships across DES, IT, Finance, Internal Audit and business partners; collaborate effectively to partner across functions and stakeholders.

Skills

IT audit
IT risk management
SOX compliance
Leadership
Communication
PCAOB experience
COSO COBIT NIST

Tools

Audit management tools

Job description

McGraw Hill is seeking a Sr. Director of IT Internal Controls & Risk Compliance for the DES organization to lead SOX compliance and build a scalable IT governance framework across our digital products and ERP landscape.

This remote role requires deep IT audit experience, strong knowledge of COSO/ COBIT/NIST, and proven leadership to partner with Finance, Internal Audit, and External Audit while driving risk-based control improvements across the company.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Remote Senior Director, IT Controls & Risk (SOX)
Remote Senior Director, IT Controls & Risk (SOX)

Mcgraw Hill • United States

Remote
USD 124,000 - 215,000
Remote Senior Director - IT Risk & SOX Compliance
Remote Senior Director - IT Risk & SOX Compliance

Mcgraw Hill • Columbus (OH)

On-site
USD 124,000 - 215,000
Annual bonus plan
Medical benefits
Head of IT Risk & Internal Controls (SOX) - Remote
Head of IT Risk & Internal Controls (SOX) - Remote

RiseMe • United States

On-site
USD 124,000 - 215,000
Senior Director, IT Risk & SOX Controls — Remote
Senior Director, IT Risk & SOX Controls — Remote

Mcgraw Hill • New York (NY)

On-site
USD 124,000 - 215,000
Sr Director, IT internal Controls & Risk Compliance
Sr Director, IT internal Controls & Risk Compliance

Mheducation • Northern (KY)

Hybrid
USD 124,000 - 215,000
Remote IT Compliance Auditor - SOX & IT Controls Lead
Remote IT Compliance Auditor - SOX & IT Controls Lead

Redwire Space NV • United States

On-site
USD 95,000 - 125,000
Senior Director, IT Governance and Security Controls
Senior Director, IT Governance and Security Controls

Coca-Cola • United States

On-site
USD 180,000 - 230,000
Senior SOX & Internal Audit Lead – Remote
Senior SOX & Internal Audit Lead – Remote

SunPower • Orem (UT)

On-site
USD 90,000 - 130,000
RSU Awards
Bonus program
Health insurance
+2
IT Compliance Auditor – SOX & Controls Lead
IT Compliance Auditor – SOX & Controls Lead

Redwire • United States

Hybrid
USD 90,000 - 140,000
Benefits package
Flexible work arrangements
Remote GRC Director: ISMS & Compliance Strategy
Remote GRC Director: ISMS & Compliance Strategy

Jobvite, Inc. • United States

Remote
USD 154,000 - 209,000