Manager, DT GRC (Governance, Risk, And compliance)

Austin, Texas, United States

Applications have closed

ServiceNow

ServiceNow allows employees to work the way they want to, not how software dictates they have to. And customers can get what they need, when they need it.

View company page

Company Description

At ServiceNow, our technology makes the world work for everyone, and our people make it possible. We move fast because the world can’t wait, and we innovate in ways no one else can for our customers and communities. By joining ServiceNow, you are part of an ambitious team of change makers who have a restless curiosity and a drive for ingenuity. We know that your best work happens when you live your best life and share your unique talents, so we do everything we can to make that possible. We dream big together, supporting each other to make our individual and collective dreams come true. The future is ours, and it starts with you. 

With more than 7,400+ customers, we serve approximately 80% of the Fortune 500, and we're proud to be one of FORTUNE's 100 Best Companies to Work For® and World's Most Admired Companies® 2022.

Learn more on Life at Now blog and hear from our employees about their experiences working at ServiceNow.

Unsure if you meet all the qualifications of a job description but are deeply excited about the role? We still encourage you to apply! At ServiceNow, we are committed to creating an inclusive environment where all voices are heard, valued, and respected. We welcome all candidates, including individuals from non-traditional, varied backgrounds, that might not come from a typical path connected to this role. We believe skills and experience are transferrable, and the desire to dream big makes for great candidates.

About Digital Technology

We’re not yesterday’s IT department, we're Digital Technology. The world around us keeps changing and so do we. We’re redefining what it means to be IT with a mindset centered on transformation, experience, AI-driven automation, innovation, and growth. We’re all about delivering delightful, secure customer and employee experiences that accelerate ServiceNow’s journey to become the defining enterprise software company of the 21st century. And we love co-creating, using, and highlighting our own products to do it.

Ultimately, we strive to make the world work better for our employees and customers—when you work in ServiceNow Digital Technology, you work for them.

Job Description

ServiceNow is changing the way people work. With a service-orientation toward the activities, tasks and processes that make up day-to-day work life, we help the modern enterprise operate faster and be more scalable than ever before. We make work, work better for our customers.

We’re disruptive.  We work hard but try not to take ourselves too seriously.  We are highly adaptable and constantly evolving.  We are passionate about our product, and we live for our customers.  We have high expectations and a career at ServiceNow means challenging yourself to always be better.   

 

The Position:

The Manager, Technology GRC is a strategic role for ServiceNow Digital Technology organization and will play an important role in out path to $16 Billion.  This is an exceptional opportunity to help build out the Tech GRC function from the ground up.

This extraordinary individual will be tasked with all aspects of risk and compliance management lifecycles ranging from global regulatory requirements to risk assessments, internal controls and issues management as well as governance and reporting to department and function leaders.

 

Key responsibilities include:

  • Contribute to planning, scope development, and project execution for sophisticated technology compliance related audits and perform audit test work and preparation of adequate and sufficient audit documentation in accordance with prescribed methodology.
  • Plan and perform SOX-ITGC design and operating effectiveness testing and ensure results are appropriately documented and communicated.
  • Proactively identify opportunities for audit process automation through use of analytics and robotics process automation and partnering with different team members on executing digitization/automation to improve and innovate the SOX program methodology to become more efficient and effective.
  • Work with the Tech GRC team in the update of SOX documentation including process flowcharts, narratives, risk and controls matrices and evaluate scoping of controls as new systems are developed and/or process changes.
  • Develop and manage the Regulatory Examination process, including notification, document collection, interview and process live-walkthrough preparation, responses and follow-up communication, where necessary.
  • Work with the local compliance teams to ensure the Regulatory Examination process is followed and any policies, procedures, and guidelines deemed necessary as an outcome of the regulatory examination are developed.
  • Identify root cause and opportunities for improvement of internal controls and acquire consensus on remediation plans with key business partners (IT Operations, Product, Information Security and SOX teams).
  • Communicate our compliance framework to all relevant stakeholders (internal and external).
  • Assist with special projects as needed, with the ability to work in a fast-paced, ever-changing environment.

Qualifications

To be successful in this role, we need someone who:

  • Has 8+ years of experience in relevant Technology GRC functions (e.g. compliance, audit and risk management). Preferably at a technology or SaaS / Cloud and / or as an auditor at Big4 firm
  • Has a deep understanding of risk management methodologies, frameworks, and principles (e.g. SOX, COBIT, NIST, CSA, ITIL, PCI, GDPR, etc.) to evaluate and recommend best approach to mitigating risk with best in class controls.
  • Possess strong oral and written communication skills along with refined presentation skills and the ability to work with other departments and varying levels of management, including senior leadership.
  • Experience managing external audits and consultants
  • Experience presenting and communicating to Executive Management
  • Highly responsive and have a customer first mindset
  • Certifications highly desired (CISA, CIA, CISM, CISSP, CRISC, etc.) 

Qualifications:

  • At least a bachelor’s degree in Information Systems, Risk Management or related field.
  • Combined 8+ years of experience in Technology risk and compliance roles
  • Adeptness and proficiency at leveraging wide range of technology tools and solutions to assess data, automate processes, and support a variety of fast growing and changing business needs
  • Excellent internal/external stakeholder management skills
  • Ability to multi-task and work in agile, changing and fast growing environments
  • Excellent understanding of how IT runs and its operational processes
  • Excellent verbal and written communication skills, teamwork skills, and an engaging personality; a proven ability to effectively interface with a diverse range of roles at all levels

Additional Information

ServiceNow is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status or any other category protected by law.

At ServiceNow, we lead with flexibility and trust in our distributed world of work. Click here to learn about our work personas: flexible, remote and required-in-office.

If you require a reasonable accommodation to complete any part of the application process, or are limited in the ability or unable to access or use this online application process and need an alternative method for applying, you may contact us at talent.acquisition@servicenow.com for assistance.

For positions requiring access to technical data subject to export control regulations, including Export Administration Regulations (EAR), ServiceNow may have to obtain export licensing approval from the U.S. Government for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by the U.S. Government.

Please Note: Fraudulent job postings/job scams are increasingly common. Click here to learn what to watch out for and how to protect yourself. All genuine ServiceNow job postings can be found through the ServiceNow Careers site.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Agile Analytics Audits Automation CIA CISA CISM CISSP Cloud COBIT Compliance CRISC GDPR Governance ITIL NIST Risk assessment Risk management SaaS SOX

Perks/benefits: Career development Flex hours Startup environment

Region: North America
Country: United States
Job stats:  4  1  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.