Thomson Reuters

Senior Cyber Compliance & Audit analyst

Join Thomson Reuters as a Senior Cyber Compliance & Audit Analyst in Richmond, VA. Leverage ServiceNow for compliance assessments, requiring 4+ years in SoX, ITGC, SOC, PCI. Enjoy flexible work, industry-leading benefits, and career growth.

ServiceNow Role Type:
Department - JobBoardly X Webflow Template
System Administrator
ServiceNow Modules:
Department - JobBoardly X Webflow Template
DevOps
Department - JobBoardly X Webflow Template
Governance, Risk, and Compliance
ServiceNow Certifications (nice to have):
Department - JobBoardly X Webflow Template
Certified System Administrator

Job description

Date - JobBoardly X Webflow Template
Posted on:
 
March 21, 2025

We are hiring a Senior Cyber Compliance & Audit analyst to assess and improve control testing processes. The role involves working collaboratively with control owners and stakeholders to identify and address non-compliance issues. The ideal candidate has a background in IT, Accounting, or Finance, and experience in SoX, ITGC, SOC, PCI within Audit, Big 5, consulting firms or as line 1a or line 1b completing IT-IS control testing.

Requirements

  • Bachelor's degree in IT, Accounting, Finance or equivalent education and experience (preferable)
  • At least 4+ years of relevant work experience in SoX, ITGC, SOC, PCI within Audit, Big 5, consulting firms or as line 1a or line 1b completing IT-IS control testing or working within a Governance or Compliance function across Financial Services organizations
  • One of these certifications in order of preference is essential CISA, CISSP, CCAK, CISM, CRISC or ISO (preferred)
  • Strong ethical principles and understanding of business and IS ethics
  • Awareness about common security vulnerabilities of web and cloud applications and operating techniques from sources such as SANS, OWASP Top10 and Cloud Security Alliance (CSA)
  • Experience in testing Cloud controls and related technologies will be an asset
  • Excellent oral and written communication skills in English. Additional expertise in French, Spanish or another language will be an asset
  • Knowledge about GRC platforms like ServiceNow, Process Unity, RSA Archer, MetricStream and like

Benefits

  • Industry-Leading Benefits: comprehensive benefit plans, flexible vacation, two company-wide Mental Health Days off, access to the Headspace app, retirement savings, tuition reimbursement, employee incentive programs, and resources for mental, physical, and financial wellbeing
  • Flexibility & Work-Life Balance: flexible work arrangements, work from anywhere for up to 8 weeks per year, and hybrid model, empowering employees to achieve a better work-life balance
  • Career Development and Growth: culture of continuous learning and skill development, preparing talent to tackle tomorrow’s challenges and deliver real-world solutions
  • Culture: globally recognized and award-winning reputation for inclusion, innovation, and customer-focus
  • Hybrid Work Model: flexible hybrid working environment (2-3 days a week in the office depending on the role) for our office-based roles while delivering a seamless experience that is digitally and physically connected
  • Social Impact: opportunities to get involved with pro-bono consulting projects and Environmental, Social, and Governance (ESG) initiatives

Requirements Summary

4+ years of relevant work experience in SoX, ITGC, SOC, PCI, Bachelor's degree in IT, Accounting, Finance or equivalent education and experience, and CISA, CISSP, CCAK, CISM, CRISC or ISO certification