Senior IT Compliance Analyst
Nashville, TN, US, 37214
ABOUT THE ROLE
As a Senior IT Compliance Analyst at Amrize, you will be a key contributor to our IT compliance program, providing essential support to the IT Compliance Manager in navigating our significant spin-off and establishing robust SOX compliance processes. You will be actively involved in the day-to-day execution of IT control activities, documentation, and audit support. This position requires a detail-oriented individual with strong analytical capabilities, a collaborative spirit, and a foundational understanding of IT controls to effectively assist IT teams and audit partners.
WHAT YOU’LL ACCOMPLISH
1.) IT Control Execution & Support
-
Control Design & Documentation Support:
-
Assist in the design and documentation of efficient, sustainable, and effective IT controls, helping to create clear procedures and process flow diagrams.
-
Support the IT Compliance Manager in identifying and researching process and technology solutions to improve compliance and operational efficiency.
-
Participate in periodic reviews with process and application owners to ensure any changes are accurately assessed for control impacts and documentation updates.
-
-
Control Monitoring & Evidence Collection:
-
Perform monitoring activities for IT Controls and application controls, including the systematic collection and organization of evidence.
-
Conduct initial quality reviews of collected evidence, ensuring accuracy and completeness.
-
Provide direct support to control owners by assisting with training, reviewing their evidence, and offering guidance on their IT processes.
-
-
Controls Testing & Audit Liaison:
-
Serve as a key point of contact for compiling and submitting IT-related evidence requested by internal and external auditors.
-
Help maintain and update documentation of the control environment, ensuring evidence clearly demonstrates control operating effectiveness.
-
Facilitate communication and evidence exchange between control owners and Audit teams for specific requests
-
2.) Gap Identification & Remediation Assistance
- Remediation Support:
-
-
Assist control owners in developing and documenting remediation plans for identified control deficiencies.
-
Track and report on the progress of remediation plans, collaborating with IT process, application, and control owners.
-
Support the IT Compliance Manager in analyzing the impact of new system implementations, significant modifications, and IT policy changes on internal IT controls.
-
Help facilitate the timely remediation of any exceptions with IT process/application owners.
-
-
Compliance Research & Analysis:
-
Research and stay current with changes in regulatory guidance, industry best practices, and emerging areas of focus/hot topics for external audits, particularly concerning SOX.
-
Contribute to the monitoring and assessment of emerging risks in IT compliance, including cybersecurity threats that could impact SOX controls.
-
3.) IT Compliance Program Contribution
-
Program Activities Support:
-
Actively contribute to various IT Compliance Program activities, supporting the broader IT Governance Framework.
-
This includes assisting with:
-
Updates and reviews of Policy & Procedure documentation.
-
Data gathering and analysis for IT Risk Assessments & Gap Analysis.
-
Coordination and logistical support for Internal and External Audit Management.
-
IT Compliance Continuous Monitoring initiatives.
-
Development and delivery of Training & Awareness materials.
-
Execution of specific SOX Projects.
-
Basic Security Compliance Monitoring tasks.
-
Prepare supporting documentation and data for management reports and committee presentations.
-
-
WHAT WE’RE LOOKING FOR
-
Communication & Stakeholder Interaction: Strong written and verbal communication skills. Ability to clearly articulate compliance requirements and gather necessary information from both technical and non-technical teams.
-
Analytical & Problem-Solving: Detail-oriented with a strong ability to identify and analyze compliance gaps, and contribute to developing practical solutions. Proactive in identifying potential issues.
-
Collaboration & Interpersonal Skills: A team player who works effectively with cross-functional teams, providing support for control implementation and audit activities.
-
Adaptability & Continuous Learning: Eager to learn and develop new skills, open to new ideas, and able to adjust to change and stay current on new technologies and compliance standards.
-
Initiative & Accountability: Self-motivated with the ability to take ownership of assigned tasks and complete them accurately and efficiently. Demonstrates strong commitment and initiative.
-
Safety & Compliance: Successful candidates must adhere to all safety protocols and properly use Amrize-approved Personal Protection Equipment (PPE), including respirators. Employees who are required to wear respirators must be clean-shaven where the respirator seal meets the face to pass qualitative and quantitative fit tests.
Qualifications:
-
Bachelor’s degree in a business-related or IT-related field of concentration, or an equivalent combination of training and experience.
-
3-5 years of experience in IT audit, IT risk management, or IT compliance, with exposure to SOX.
-
Foundational knowledge of SOX concepts, practices, procedures, and basic IT subject-matter proficiency.
-
Experience in supporting controls design, execution monitoring, or audit requests.
-
Relevant professional certifications (e.g., CISA coursework/pursuit, or other IT audit/security certifications) are a plus.
-
SAP experience is a plus, but not required.
Additional Requirements:
Demonstrate a commitment to communicating, improving and adhering to health, safety and environmental policies in all work environments and areas. Promote a culture of safety and exhibit these behaviors. Successful candidates must adhere to all safety protocols and proper use of Amrize approved Personal Protection Equipment ("PPE"), including but not limited to respirators. Employees that are required to wear respirators must be clean shaven where the respirator seal meets the face in order to pass the qualitative and quantitative fit tests.
WHAT WE OFFER
- Competitive salary
- Retirement Savings: Choose from 401(k) pre-tax and/or Roth after-tax savings
- Medical, Dental, Disability and Life Insurance
- Holistic Health & Well-being programs
- Health Savings Accounts (HSAs) & Flexible Spending Accounts (FSAs) for health and dependent care
Vision and other Voluntary benefits and discounts - Paid time off & paid holidays
- Paid Parental Leave (maternity & paternity)
- Educational Assistance Program
- Dress for your day
This position is expected to be open until 8/01/2025
Senior IT Compliance Analyst
Nearest Major Market: Nashville