Sr. Manager, IT Governance, Risk, and Compliance

Trinity Industries

Dallas, Northern (TX, KY)

Hybrid

USD 140,000 - 190,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Trinity Industries in Dallas, TX, seeks a Senior Manager of IT Governance, Risk, and Compliance (IT GRC) to lead ITGC design, SOX compliance, and audit relationships within IRM. The role reports to the Senior Director of IGRC and collaborates with IT leadership, CISO, and CPO.

You will own TICAP rollout, drive training programs, and act as SME for IT compliance with business leaders. The position is based at the headquarters in Dallas and requires strong leadership in a complex environment.

Qualifications

  • Bachelor’s degree or technical degree; related certifications may be considered.
  • 5–7 years IT audit/compliance, risk, or internal audit experience, including 3+ years leading a team.
  • Deep understanding of IT general controls (ITGCs), SOX, audit lifecycle, and infrastructure.

Responsibilities

  • Lead ITGC control design, alignment, documentation, and annual control rationalization.
  • Manage TICAP rollout, scheduling assessments, and leadership reporting.
  • Own SOX training program and regulatory awareness packages with HR collaboration.
  • Coordinate with internal and external audit resources; manage evidence requests.
  • Oversee ITGC monitoring and remediation status reporting.

Skills

IT GRC
SOX compliance
Audit liaison
Risk assessment
Team leadership
ITGC control design
Regulatory reporting

Education

Bachelor's degree

Job description

Job Description - Sr. Manager, IT Governance, Risk, and Compliance (2600542)

Job Description

Sr. Manager, IT Governance, Risk, and Compliance - ( 2600542 )

Description

Trinity Industries is seeking a Senior Manager of IT Governance, Risk, and Compliance (IT GRC) for our headquarters office in Dallas, TX. This position functions within the Information GRC (IGRC) team, reporting to the Senior Director of IGRC within the Information Risk Management (IRM) organization. IRM sits within the Legal organization under the Chief Information Security Officer (CISO) and Chief Privacy Officer (CPO) and provides information compliance program services to the IT organization. This role leads IT General Controls (ITGC) control design and oversight, compliance program execution, and audit relationship management across internal audit, external audit, and SOC engagements, partnering closely with IT leadership, the Chief Audit Executive, the Chief Information Officer, and the Chief Information Security Officer.

What you will do:
  • Lead ITGC control design activities including alignment, procedure customization, and verification, as well as annual control rationalization to identify gaps and eliminate redundant or unnecessary controls.
  • Manage IT process and control documentation including risk control matrices, process flowcharts, and control procedures to support SOX regulatory requirements and internal policy compliance.
  • Act as the primary Subject Matter Expert (SME) for IT and business leaders on IT compliance, SOX requirements, and cyber and technology risk, advising on control expectations and the regulatory impact of changes to applications and infrastructure.
  • Own the rollout and ongoing maintenance of the Trinity IT Compliance Assessment Program (TICAP), including scheduling assessments, coordinating with control owners, tracking results, and reporting outcomes to leadership.
  • Own the SOX compliance training program, including the creation and annual update of regulatory awareness, framework awareness, control owner awareness, and control procedure training packages. Coordinate with HR on publishing and distribution, and manage the control awareness attestation process.
  • Serve as the primary liaison between the IT organization and all internal and external audit resources, coordinating on behalf of IT across SOX ITGC, SOC 1, and SOC 2 audit engagements. Coordinate evidence requests for Test of Design and Test of Effectiveness, manage issue mitigation and remediation tracking, and provide audit status reporting to leadership.
  • Oversee ongoing ITGC monitoring and execution performance, including weekly metrics and remediation status reporting. Conduct ad-hoc and requested execution assessments to identify issues prior to audit.
Managerial Responsibilities
  • Manage the daily activities of IT GRC Specialist(s), including performance reviews, time sheet approvals, goal setting, professional development, and prioritization of team tasks and projects in alignment with organizational objectives.
  • Provide mentorship and guidance to team members, assisting in their career growth and skill development.
  • Act as a point of escalation for complex issues or challenges faced by the team.
Qualifications
What you will need:
  • Bachelor’s or technical degree preferred (Computer Science, Information Systems, Business Administration, or related field). Industry equivalent experience combined with relevant certifications or specialized training will be considered.
  • Minimum of five to seven years of IT audit/compliance, risk assurance, IT advisory, or internal audit experience, including at least three years of experience leading a team.
  • Deep understanding of IT general controls (ITGCs), SOX compliance requirements, control design principles, and the audit lifecycle, including Test of Design and Test of Effectiveness. Familiarity with infrastructure, SDLC, and IT service management in complex enterprise environments.
  • Certification in one or more of the following is desired: ITIL, ISO 27000, COBIT, CISSP, SANS, CISA, Security+, CMMC
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Technology Governance Sr. Manager
Information Technology Governance Sr. Manager

Trinity Industries, Inc. • Dallas (TX)

On-site
USD 140,000 - 190,000
Senior IT GRC & Compliance Leader
Senior IT GRC & Compliance Leader

Trinity Structural Towers • Dallas (TX)

On-site
USD 130,000 - 180,000
Senior IT GRC Manager — SOX, Risk & Audit
Senior IT GRC Manager — SOX, Risk & Audit

Trinity Industries • Dallas (TX), Northern (KY)

Hybrid
USD 140,000 - 190,000
Sr. Manager, IT Governance, Risk, and Compliance
Sr. Manager, IT Governance, Risk, and Compliance

Trinity Structural Towers • Dallas (TX)

On-site
USD 130,000 - 180,000
Sr. IT Security Analyst
Sr. IT Security Analyst

The Marzetti Company • Columbus (OH)

On-site
USD 90,000 - 120,000
Sr. Security Governance, Risk & Compliance Specialist
Sr. Security Governance, Risk & Compliance Specialist

clarioclinical • United States

On-site
USD 120,000 - 180,000
IT GRC Lead Analyst
IT GRC Lead Analyst

Westfield Insurance • Westfield Center (OH)

Hybrid
USD 90,000 - 120,000
IS-IT Compliance and Controls Manager
IS-IT Compliance and Controls Manager

MasterCraft Boat Company • Vonore (TN)

On-site
USD 100,000 - 140,000
IT Compliance & Risk Lead (SOX, GRC, Audits)
IT Compliance & Risk Lead (SOX, GRC, Audits)

TKO • Connecticut

On-site
USD 105,000 - 140,000
Lead GRC Analyst (IT/Security)
Lead GRC Analyst (IT/Security)

Ultra Clean Technology • Manor (TX)

On-site
USD 90,000 - 120,000