Technology Compliance Manager
Location
United States
Posted
6 days ago
Salary
Not specified
Job Description
Role Description
We’re seeking a Technology Compliance Manager to lead the design, implementation, and continuous improvement of our technology control environment across key regulatory frameworks including SOX, and other applicable standards. This role will partner closely with Engineering, IT, Security, Legal, and Finance to embed compliance into our technology ecosystem while managing internal and external audit engagements.
- Develop and execute a risk-based technology compliance strategy across key frameworks (SOX, PCAOB, COSO, COBIT), aligning controls to business objectives.
- Lead control performance, walkthrough, review, deficiency management, remediation efforts of SOX controls.
- Design, implement, and continuously improve IT controls across access management, change management, incident response, and data governance.
- Lead quality testing of control evidence, address any feedback given by external auditors on evidence review.
- Partner cross-functionally with Engineering, IT, Security, Legal, and Finance to embed compliance-by-design into systems and operations.
- Drive automation, continuous monitoring, and process optimization to enhance control effectiveness and reduce manual effort.
- Identify the opportunity to leverage AI to perform deep dive analysis, identify automation opportunity using Agentic AI.
Qualifications
- Deep experience in technology compliance, IT audit, or technology risk management.
- Strong knowledge of major compliance frameworks (SOX ITGCs, PCI DSS, SOC2, GDPR, WCAG).
- Experience managing end-to-end internal and external audit engagements.
- Expertise in cloud environments (GCP, AWS), GitHub, Kubernetes / terraform and Business Operations SaaS platform control configurations.
- Exceptional stakeholder management and communication skills across technical, engineering and audiences.
- Demonstrated experience in people management: motivating and working with high performing teams.
Requirements
- Knowledge of control frameworks such as SOC 2, ISO27001, COBIT or NIST CSF.
- Relevant certifications (CISA, CISSP, CRISC, PMP, or similar).
- Experience in a large public company, Big 4 Audit firm, or regulated environment.
Benefits
- Comprehensive health, life, and disability insurance.
- Commute subsidy.
- Employee stock ownership.
- Competitive retirement/pension plans.
- Generous vacation and personal days.
- Support for new parents through leave and family-care programs.
- Office food snacks.
- Mental Health and Wellbeing programs and support.
- Employee Resource Groups.
- Global Employee Assistance Program.
- Training and development programs.
- Volunteering and donation matching program.
Job Requirements
- Deep experience in technology compliance, IT audit, or technology risk management.
- Strong knowledge of major compliance frameworks (SOX ITGCs, PCI DSS, SOC2, GDPR, WCAG).
- Experience managing end-to-end internal and external audit engagements.
- Expertise in cloud environments (GCP, AWS), GitHub, Kubernetes / terraform and Business Operations SaaS platform control configurations.
- Exceptional stakeholder management and communication skills across technical, engineering and audiences.
- Demonstrated experience in people management: motivating and working with high performing teams.
- Knowledge of control frameworks such as SOC 2, ISO27001, COBIT or NIST CSF.
- Relevant certifications (CISA, CISSP, CRISC, PMP, or similar).
- Experience in a large public company, Big 4 Audit firm, or regulated environment.
Benefits
- Comprehensive health, life, and disability insurance.
- Commute subsidy.
- Employee stock ownership.
- Competitive retirement/pension plans.
- Generous vacation and personal days.
- Support for new parents through leave and family-care programs.
- Office food snacks.
- Mental Health and Wellbeing programs and support.
- Employee Resource Groups.
- Global Employee Assistance Program.
- Training and development programs.
- Volunteering and donation matching program.
Related Guides
Related Categories
Related Job Pages
More Compliance Jobs
Open this job to view full details and requirements.
The specialist will own and support export/import licensing and compliance activities for a varied portfolio of programs, participating in strategies to support international capture, program, and supply chain efforts. Responsibilities include preparing, submitting, and managing export/import authorizations to enable compliant transfers of technology, data, hardware, and services globally.
The specialist will support governance, risk, and compliance initiatives by assessing regulatory requirements, identifying risks, and ensuring alignment with standards like HIPAA and NIST CSF. Key duties include conducting risk assessments, maintaining the risk register, monitoring compliance with healthcare regulations, and preparing compliance reports for leadership.
Compliance Program Strategist
FortraAt Fortra, we’re breaking the attack chain. Ready to join us? At Fortra, our compensation philosophy prioritizes fair market value and internal equity, aligning with your experience and specialized skill set. As an EEO/Affirmative Action Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, veteran or disability status.
This role is accountable for owning the end-to-end strategy, planning, execution, and ongoing management of the organization’s compliance authorization journey, starting with FedRAMP, aiming for initial authorization by 2026-2027. The Strategist will serve as the primary owner of the compliance program, acting as a central liaison between executive leadership, technical teams, vendors, auditors, and government agencies.