Search jobs > Dallas, TX > Compliance manager

IT Governance, Risk, and Compliance Manager

Trinity Industries
Dallas, Texas, United States
Full-time

Trinity Industries is hiring an IT Governance, Risk, and Compliance Manager in our Dallas, TX office.

The IT Governance, Risk, and Compliance (IT GRC) Manager functions within the Information GRC (IGRC) team, reporting to the Senior Director of IGRC within the Information Risk Management organization.

The IT GRC Manager will be responsible for the execution of the Trinity IT Compliance Assessment Program (TICAP), to include analyzing IT processes, risks, and controls, collaborating on the design and implementation of controls to mitigate risk, performing root cause analyses, identifying improvement opportunities, managing projects in support of annual compliance assessments, and recommending achievable action plans.

This position will support Trinity’s audit partners and business customers to include the Chief Audit Executive, Chief Information Officer, and Chief Information Security Officer.

The ideal candidate will have a solid understanding of IT systems, IT Service Management (ITSM), cybersecurity, and information risks and will understand the regulatory impact of changes to applications and infrastructure.

What you will do :

  • Continuously evaluate IT activities aimed at reducing cyber and compliance risks
  • Manage IT process and control documentation for regulatory compliance (ITGC, risk control matrix, process flowcharts, etc.

and support SOX and regulatory requirements for Oracle, OS400, SQL, and other IT systems

  • Manage IT process and control documentation for internal policy compliance and support TICAP objectives for alignment with enterprise risk appetites
  • Gain a comprehensive understanding of compliance requirements and become a trusted Subject Matter Expert (SME) in advising IT and business leaders on how to navigate cyber and technology risks
  • Evaluate and report on the effectiveness of managed service providers in executing outsourced information security and compliance activities
  • Assess alignment of IT controls across multiple frameworks, such as COBIT, ITIL, and NIST, to ensure comprehensive coverage
  • Be the main point of contact for the Information Technology (IT) team for all internal and external audit requirements.

Act as the primary liaison between the IT staff and corporate internal and external audit resources.This includes oversight of internal and external audit engagements, managing issue mitigation, tracking remediation, and reporting

Managerial Responsibilities

  • Manage the daily activities of two IT GRC Specialists, including performance reviews, time sheet approvals, goal setting, and professional development
  • Foster a collaborative and productive team environment, ensuring effective communication and coordination within the team
  • Provide mentorship and guidance to team members, assisting in their career growth and skill development
  • Oversee the allocation and prioritization of team tasks and projects, ensuring alignment with organizational objectives
  • Act as a point of escalation for complex issues or challenges faced by the team

What you will need :

  • Bachelors or Technical Degree, Preferred (Computer Science, Information Systems, Business administration, or other industry related curriculum) / Industry equivalent experience with certifications or specialized training will be considered
  • Minimum of six - nine years of IT audit / compliance, risk assurance, IT advisory, or internal audit experience.With three years of experience leading a team
  • Broad understanding of all IT areas, including infrastructure, system development life cycle (SDLC), auditing, and internal controls
  • Certification in one or more of the following is desired : ITIL, ISO 27000, COBIT, CISSP, SANS, CISA, Security+, CMMC
  • 30+ days ago
Related jobs
Promoted
EMCOR
Dallas, Texas

The Regional Security & Compliance Manager position reports to the ECS Director of IT and works closely with the ECS Security & Compliance Manager and the EMCOR Security & Compliance Team. Security & Compliance - Provide support and guidance to ECS HQ and ECS Operating Companies (OpCos) to ensure co...

Promoted
PWC
Dallas, Texas

Our team helps our clients understand their current capabilities and assist in the implementation of governance controls to effectively mitigate information risk and maximise exploitation of their information assets. We focus on assisting organisations manage vast amounts of electronic data and navi...

Promoted
Bank of America Corporation
Addison, Texas

Partnership across Enterprise Data Governance, Strategy and Operations (EDSGO) to ensure consistency and alignment with broader enterprise Policies including Data Management and Regulatory Reporting, quality assurance (QA) requirement generation, metrics and reporting and issue/incident resolution i...

Promoted
Alvarez & Marsal Europe
Dallas, Texas

Our services include due diligence (IT and operational), merger integration / carve-out planning and execution, transition service agreement negotiation & governance, ERP implementations, IT operations & cost reduction, and enterprise architecture. Drawing on a strong operational heritage an...

Promoted
AmTrust Financial Services
Dallas, Texas

Mental: Clear and conceptual thinking ability; excellent judgment, troubleshooting, problem solving, analysis, and discretion; ability to handle work-related stress; ability to handle multiple priorities simultaneously; and ability to meet deadlines Physical: Computer keyboarding Auditory/Visual: He...

Promoted
Citigroup, Inc
Irving, Texas

Its members include Citi's Technology Head, Co-CIOs, Chief Information Security Officer (CISO), Technology Control Head, Technology COO, and representatives from Citi's second (Operational Risk and Compliance) and third (Internal Audit) lines of defense. Strong knowledge of Risk and Control monitori...

Omni Hotels & Resorts
Dallas, Texas

Collaborate with IT and security teams to design and implement security controls that protect sensitive data and comply with industry standards. We are seeking a highly skilled IT Compliance, Data Governance, and Risk Management Specialist with a strong technical security background and extensive ex...

Triumph Financial
Dallas, Texas

Identity Access Management and Privileged Access Management (IAM and PAM)Role and attribute-based access controls (RBAC and ABAC) Willingness to expand and apply security knowledge, skills, and abilities to department initiatives. IT risk, IT security and/or IT audit experience. While performing the...

BuzzClan
Dallas, Texas

As a Risk and Governance Analyst, you will play a vital role in ensuring the confidentiality, integrity, and availability of. Develop and implement risk mitigation strategies and controls to address identified risks and ensure. Evaluate and recommend security tools and technologies to enhance the or...

Springstone, Inc.
Carrollton, Texas

The Market Director of QA, Risk Management, & Compliance is responsible for the development/administration of Performance Improvement, Risk Management, and Staff Development activities of multi-facility market to ensure that all state, federal, TJC standards for care consistently met. Collects and a...