Director SOX Compliance

ibex


Date: 1 day ago
City: Lahore
Contract type: Full time
The Director IT SOX Compliance will provide strategic leadership and expert oversight of IT controls and compliance under the Sarbanes-Oxley Act (SOX). This role will drive the assessment, design, implementation, and continuous monitoring of IT General Controls (ITGCs), conduct SOX 404 testing, and ensure rigorous adherence to regulatory requirements. The ideal candidate will bring exceptional leadership capabilities, advanced technical proficiency, and deep expertise in IT SOX compliance and will partner closely with IT, Finance, Internal Audit, and External Audit teams.

Responsibilities

  • Lead the Annual SOX IT Compliance Program
  • Develop, execute, and oversee the annual SOX IT compliance plan, including scoping, testing, remediation, and reporting.
  • Ensure coverage includes technology infrastructure and key business applications impacting financial reporting (Revenue systems, payroll systems, Active Directory, in-scope reporting tools).
  • Provide expert guidance on the identification, evaluation, and mitigation of IT risks related to financial reporting.
  • Drive the maturity of the IT SOX program through continuous process improvement, automation, and the adoption of industry best practices (e.g., COBIT, COSO)
  • IT General Controls (ITGC) Oversight
  • Maintain proactive ownership of ITGCs for all in-scope systems.
  • Develop a working knowledge of all in-scope systems and their impact on financial reporting.
  • Collaborate with process and system owners to evaluate, strengthen, and optimize control structures.
  • Oversee testing, remediation, and documentation of control effectiveness.
  • Identify opportunities for process improvements and risk mitigation.
  • Vendor & Third-Party Risk Management
  • Manage SOX scoping for vendor-managed in-scope applications.
  • Review SOC 1 reports, assess deficiencies, and ensure appropriate complementary user entity controls (CUECs) are in place.
  • Ensure vendors meet company compliance and reporting standards.
  • Audit Coordination
  • Act as the primary IT liaison for internal and external auditors.
  • Facilitate communications between IT, Finance, and business functions to ensure audit readiness.
  • Drive timelines for audit activities and ensure completeness and accuracy of provided documentation.
  • Change & Impact Assessment
  • Monitor business and IT system changes to assess potential impacts on ITGCs.
  • Proactively address risks from new technologies, system upgrades, or process changes.
  • Governance & Documentation
  • Ensure SOX-related IT procedures are properly documented to minimize rework and reduce audit findings.
  • Partner with IT teams to create process flowcharts, policies, and control documentation where gaps exist.
  • Provide regular, high-level reports on the IT SOX compliance status and risk posture to executive leadership.

Qualifications

Experience - 12 -15 years of experience

Skills And Abilities

  • 12 to 15+ years of experience in IT SOX compliance, IT audits, or IT risk management.
  • Strong knowledge of SOX 404, IT General Controls (ITGCs), COBIT, NIST, COSO, and ISO 27001.
  • Experience with SAP, Oracle, Workday, and cloud security (AWS, Azure, GCP) controls.
  • Expertise in automated SOX testing tools and GRC platforms (e.g., ServiceNow GRC, AuditBoard).
  • Prior experience working with public companies or Big 4 audit firms (Deloitte, PwC, EY, KPMG) is a plus.
  • Strong understanding of IT risk, compliance, and cybersecurity.
  • Strong analytical and problem-solving skills with attention to detail.
  • Expertise in IT change management, access controls, operations management, and data security.
  • Excellent project management and leadership skills.
  • Demonstrated ability to lead, influence, and collaborate effectively with cross-functional teams, including senior management, auditors, and business leaders

Reporting Time - 9:00 am-6:00 pm (EST)

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Principal Software Engineer - Backend

dubizzle, Lahore
10 hours ago
At Dubizzle Labs, we are looking to further expand our Pakistan office of already 400+. We are most interested in bringing on board colleagues who love to learn, perform, and teach. We are building a high-quality engineering environment with a super focus on delivering value to customers. Your primary responsibility would be to build world-class suite products to support the...

ENGINEER, PLANNING - (DAR ENGINEERING - LAHORE)

DAR ENGINEERING, Lahore
2 days ago
Job description:Major Responsibilities: Preparing Project plan, Scheduling and Monitoring by utilizing PrimaveraP6 and MS project. Identification, monitoring& streamlining of critical paths running through the Project Master baseline Schedule Portfolio management, Resource Planning and reporting. Preparation of project budget and schedule. Generating detail time schedule and cashflow. Collect information from stakeholders for timely preparation of realistic budget revisions and LFs. Develop,...

Intern - Business Development

DevDimensions, Lahore
4 days ago
DevDimensions is on the hunt for a Business Development Intern to drive growth and unlock new opportunities!Responsibilities:Research and identify potential clients and market trends.Assist in lead generation through various platforms (Upwork, LinkedIn, etc.).Support the sales team in preparing proposals, presentations, and pitches.Maintain and update CRM systems with client interactions and follow-ups.Conduct competitive analysis and provide insights to improve sales strategies.Collaborate...