The Sarbanes Oxley (SOX) Risk Architect & Compliance Lead role is accountable for facilitation of IT risk management processes. Collaborates cross-functionally to help mature and execute the IT Risk Security and Compliance processes which include governance, risk assessment, risk analysis, risk metrics, risk reporting, supplier monitoring, internal / external audit support, and technology enablement. Provides leadership for the creation of a SOX Compliance Strategy, project execution and improvement initiatives for IT. Creates strategies and processes related to all areas of Governance, Risk Management and Compliance. May coordinates the efforts of several groups to ensure compliance with other federal and industry regulations and requirements.
Responsibilities:
- Establish and oversee formal risk analysis and risk-assessment programs for various Information Services systems and processes, focusing on SOX-related controls.
- Drive technology enablement to automate the delivery of SOX audit evidence.
- Ensure and monitor compliance with SOX as well as other federal and industry regulations and requirements.
- Liaise with Internal Audit, Internal Controls, external Auditors and BTS application teams/control owners to remediate new and outstanding issues; track compliance-related issues.
- Participate in the overall creation and maintenance of AbbVie’s risk, security & compliance policies, standards, guidelines, and baselines.
- Maintain expertise on governance, risk, security & compliance trends through training, research, and development in order to mitigate potential security exposures.
- Responsible for compliance with applicable Corporate and Divisional Policies and procedures
- Ensure that all applicable AbbVie IT policies and procedures are followed. Reviews and provide input to improve procedures as applicable.