SOx ITGC Compliance Specialist - Financial Department
Listed on 2026-03-11
-
IT/Tech
IT Business Analyst, Cybersecurity
SOx ITGC Compliance Specialist - Financial Department
City:
Hamilton
Requisition
Arcelor Mittal Dofasco, Hamilton's largest private sector employer, is a leading steel manufacturing company engaged in advanced manufacturing, working with top automotive, energy, packaging, and construction brands. We are embarking on a plan to transform our steelmaking production methods to significantly reduce greenhouse gas emissions, aiming for net zero by 2050.
We are seeking a proactive and detail-oriented SOX ITGC Compliance Specialist to support the execution of our IT General Controls SOX Compliance program. In this dynamic role, you will coordinate key compliance activities including User Access Reviews, ITGC testing, documentation, and remediation tracking.
Overall Responsibility- Supports the operational execution and tactical coordination of the IT General Controls SOX Compliance program.
- Responsible for assessing, monitoring, and improving the IT General Controls SOX Compliance Program.
- Supports, localizes and ensures compliance with globally issued IT SOX related requirements, policies, and compliance standards.
- Work in collaboration with the SOX ITGC Compliance Senior Lead to advise the IT department to continually strengthen control posture.
- Acts as a liaison between the IT Business Unit, other Business Units, auditors and 3rd parties to ensure compliance with internal control requirements and audit readiness.
- Primarily responsible for coordinating User Access Reviews (UARs), assisting in control testing, maintaining documentation, and ensuring timely remediation of deficiencies.
- Coordinate and track periodic UARs across systems within the scope of the IT General Controls SOX Compliance Program.
- Communicate with reviewers to ensure timely completion and escalated delays.
- Validate role appropriateness, reporting structures, and employment status.
- Maintain audit trails and evidence for all UAR activities.
- Provide guidance on tool usage and role descriptions.
- Assist in the execution of Test of Design (TOD) and Test of Operating Effectiveness (TOE) for ITGCs.
- Collect and organize evidence for walkthroughs and control testing.
- Support remediation tracking and follow-up on open deficiencies.
- With SOX ITGC Senior Compliance Lead, liaise with internal stakeholders (e.g., IT, Finance, Global Assurance) to align on compliance timelines and deliverables.
- Collaborate with third‑party service providers engaged in IT SOX testing activities, ensuring clear communication, adherence to timelines, and quality deliverables.
- Support the implementation of new or updated controls.
- Monitor control performance and flag potential issues for escalation.
- Support regular, ongoing dialogue with IT External Audit team to ensure timely provision of testing materials and coordination to reduce duplication of effort.
- Work in collaboration with the SOX ITGC Compliance Senior Lead to coordinate key report testing and submission of testing results to external auditors.
- Identify and guide IT Business Unit in remediating control deficiencies, collaborating on solutions and tracking progress.
- Assisting SOX ITGC Senior Compliance Lead to prepare status updates and dashboards for management and audit teams.
- Ensure documentation is current, complete, and aligned with global AM ITGC standards, including SOX.
- Assist in QAR (Quality Assurance Review) preparations and responses.
- Identify opportunities to automate control testing and monitoring processes using data analytics and automation tools, improving efficiency and scalability.
- Participate in the review and enhancement of the ITGC framework, ensuring it aligns with business needs and evolving technologies.
- Inquire and maintain an understanding of system development, key projects and potential changes to technology that could impact program scope. Identify gaps, support project team in designing and controls, and assessing design and operating effectiveness of controls.
- Research, maintain currency with regulations and industry best…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).