IT General Controls Expert - Software Development Lifecycle …, San Pedro Tlaquepaque
IT General Controls Expert - Software Development Lifecycle …, San Pedro Tlaquepaque
-
San Pedro Tlaquepaque, México
-
Publicado: hace menos de una semana
-
Guardar
Descripción
**_Description: -_**
HP is a proven leader in personal systems and printing, delivering innovations that empower people to
create, interact, and inspire like never before. We leverage our strong financial position to extend our
leadership in traditional markets and invest in exciting new technologies.
HP has an impressive portfolio and strong innovation pipeline across areas such as:
- Blended reality technology
- our unique Sprout by HP will change the way people do things
- 3D printing
- Multi-function printing
- Ink in the office
- Tablets, phablets, notebooks
- Mobile workstations
We are looking for visionaries who are ready to make an impact on the way the world works. At HP, the
future is yours to create!
**_ Responsibilities: _**
- Establishes and maintains relationships with several IT support/business teams. Uses deep business knowledge and business acumen to drive improvements in IT engagement for this initiative.
- Meet aggressive timelines, deliver quality product, and work well in a dynamic team environment. Demonstrate an understanding of standard IT processes and tools.
- Supporting team manager with various activities to help drive the various projects within the team to meet the goals.
- Engage with IT teams, Auditors & Legal as needed and help manage audit activities.
- Contribute as part of the second Line of Defense to the compliance of applicable laws & Regulations, Internal codes of practice/Standards and policy and procedures.
- Support management with delivery of action plans for AIR raised, Audit and SOX Controls testing.
- Ensuring that approved IT General controls are embedded in the current service lines and processes across HP.
- Analyze SOC reports (e.g., SOC 1, SOC 2, SOC 3) prepared by service organizations to assess the effectiveness of their controls related to financial reporting, security, availability, processing integrity, confidentiality, and privacy.
- Gain a deep understanding of the control objectives outlined in the SOC reports and the criteria against which the controls are evaluated. This involves interpreting the AICPA Trust Services Criteria for SOC 2 reports or the controls related to financial reporting for SOC 1 reports.
- Evaluate the design of controls documented in the SOC reports to assess whether they are suitably designed to achieve their intended objectives. This involves reviewing control descriptions, policies, and procedures outlined in the reports.
- Assess the operating effectiveness of controls by reviewing evidence provided in the SOC reports, such as test results, documentation, and management assertions. Determine whether controls are operating effectively over the specified period.
- Identify any deficiencies, gaps, or weaknesses in the controls documented in the SOC reports. This includes identifying areas where controls are not effectively designed or implemented, as well as instances of non-compliance with control objectives.
- Document findings from the analysis of SOC reports, including observations, conclusions, and recommendations for improvement. Clearly communicate findings to relevant stakeholders, including management, auditors, and clients.
- Collaborate with internal and external stakeholders, including auditors, clients, and service organizations, to address findings and resolve any issues identified during the analysis of SOC reports.
- Review all the project deliverables in accordance with SDLC framework.
- Stay updated on relevant regulations and standards applicable to the industry, Evaluate and recommend improvements to business practices, processes, and controls.
- Conduct risk assessments to identify potential compliance risks and vulnerabilities within the SDLC process.
- Develop mitigation strategies and controls to address identified risks and ensure that compliance risks are effectively managed throughout the development lifecycle.
- Provide support to internal and external auditors and auditees.
**_ Education and Experience Required: _**
Bachelor’s degree in management information systems computer science or equivalent experience and a minimum of 5 years of related experience or a Master’s degree and a minimum of 3 years of experience.
**_ Knowledge and Skills: _**
- Excellent verbal and written communication skills.
- Excellent project management and process development skills.
- Ability to collaborate, working closely with both functional and technical teams.
- Understanding of audit and assurance principles and practices. Familiarity with auditing standards, such as SSAE 18 (formerly SAS 70) for SOC 1 reports and AT-C 205 for SOC 2 reports.
- Strong knowledge of information security principles, concepts, and best practices.
- Proficiency in using software tools and technologies for analyzing SOC reports and assessing control effectiveness.
- PMP or SAFe Agile Scrum Master Certification preferred
- Strong knowledge on the Compliance processes and controls
- Authorship of the SDLC deliverables
- Understa Postúlate en Kit Empleo: kitempleo.com.mx/empleo/5uvilg
HP is a proven leader in personal systems and printing, delivering innovations that empower people to
create, interact, and inspire like never before. We leverage our strong financial position to extend our
leadership in traditional markets and invest in exciting new technologies.
HP has an impressive portfolio and strong innovation pipeline across areas such as:
- Blended reality technology
- our unique Sprout by HP will change the way people do things
- 3D printing
- Multi-function printing
- Ink in the office
- Tablets, phablets, notebooks
- Mobile workstations
We are looking for visionaries who are ready to make an impact on the way the world works. At HP, the
future is yours to create!
**_ Responsibilities: _**
- Establishes and maintains relationships with several IT support/business teams. Uses deep business knowledge and business acumen to drive improvements in IT engagement for this initiative.
- Meet aggressive timelines, deliver quality product, and work well in a dynamic team environment. Demonstrate an understanding of standard IT processes and tools.
- Supporting team manager with various activities to help drive the various projects within the team to meet the goals.
- Engage with IT teams, Auditors & Legal as needed and help manage audit activities.
- Contribute as part of the second Line of Defense to the compliance of applicable laws & Regulations, Internal codes of practice/Standards and policy and procedures.
- Support management with delivery of action plans for AIR raised, Audit and SOX Controls testing.
- Ensuring that approved IT General controls are embedded in the current service lines and processes across HP.
- Analyze SOC reports (e.g., SOC 1, SOC 2, SOC 3) prepared by service organizations to assess the effectiveness of their controls related to financial reporting, security, availability, processing integrity, confidentiality, and privacy.
- Gain a deep understanding of the control objectives outlined in the SOC reports and the criteria against which the controls are evaluated. This involves interpreting the AICPA Trust Services Criteria for SOC 2 reports or the controls related to financial reporting for SOC 1 reports.
- Evaluate the design of controls documented in the SOC reports to assess whether they are suitably designed to achieve their intended objectives. This involves reviewing control descriptions, policies, and procedures outlined in the reports.
- Assess the operating effectiveness of controls by reviewing evidence provided in the SOC reports, such as test results, documentation, and management assertions. Determine whether controls are operating effectively over the specified period.
- Identify any deficiencies, gaps, or weaknesses in the controls documented in the SOC reports. This includes identifying areas where controls are not effectively designed or implemented, as well as instances of non-compliance with control objectives.
- Document findings from the analysis of SOC reports, including observations, conclusions, and recommendations for improvement. Clearly communicate findings to relevant stakeholders, including management, auditors, and clients.
- Collaborate with internal and external stakeholders, including auditors, clients, and service organizations, to address findings and resolve any issues identified during the analysis of SOC reports.
- Review all the project deliverables in accordance with SDLC framework.
- Stay updated on relevant regulations and standards applicable to the industry, Evaluate and recommend improvements to business practices, processes, and controls.
- Conduct risk assessments to identify potential compliance risks and vulnerabilities within the SDLC process.
- Develop mitigation strategies and controls to address identified risks and ensure that compliance risks are effectively managed throughout the development lifecycle.
- Provide support to internal and external auditors and auditees.
**_ Education and Experience Required: _**
Bachelor’s degree in management information systems computer science or equivalent experience and a minimum of 5 years of related experience or a Master’s degree and a minimum of 3 years of experience.
**_ Knowledge and Skills: _**
- Excellent verbal and written communication skills.
- Excellent project management and process development skills.
- Ability to collaborate, working closely with both functional and technical teams.
- Understanding of audit and assurance principles and practices. Familiarity with auditing standards, such as SSAE 18 (formerly SAS 70) for SOC 1 reports and AT-C 205 for SOC 2 reports.
- Strong knowledge of information security principles, concepts, and best practices.
- Proficiency in using software tools and technologies for analyzing SOC reports and assessing control effectiveness.
- PMP or SAFe Agile Scrum Master Certification preferred
- Strong knowledge on the Compliance processes and controls
- Authorship of the SDLC deliverables
- Understa Postúlate en Kit Empleo: kitempleo.com.mx/empleo/5uvilg
Información clave
-
Nombre de la empresaHewlett Packard
-
Nombre de la vacanteIT General Controls Expert - Software Development Lifecycle (San Pedro Tlaquepaque)
Consejos de seguridad
Reporta anuncios o mensajes sospechosos.
Más info sobre el anuncio
El anuncio IT General Controls Expert - Software Development Lifecycle … fue publicado en la categoría Tlaquepaque Informática, telecomunicación de Locanto.
Ahora mismo, no tenemos más anuncios en esta categoría en Tlaquepaque.
¿Buscas algo más? Puedes aumentar tu radio de búsqueda y mirar los resultados en otras ubicaciones cerca de ti, como Informática, telecomunicación en Tonalá, Zapopan o Guadalajara (GDL). Además, en esta sección, disponemos de más anuncios clasificados en un radio de 15 km. Haz clic aquí para verlos.