IT Risk & Control Officer
Role details
Job location
Tech stack
Job description
As an IT Risk & Control Officer, you will be responsible for supporting the FP&A (Financial Planning and Analysis) and OTC (Order to Cash) process owners throughout the business to design and maintain internal controls in line with risk and to maintain the quality of our processes. You will play a significant role contributing to activities which form part of the annual SOx Program as well as assessing risks for new and ongoing initiatives within the FP&A and OTC departments. You will work closely with Risk Managers and stakeholders from multiple departments. This position will require you to have a strong big picture focus, but be able to zoom in and out of the details to ensure you understand the processes fully., * Support the FP&A and OTC business units to understand risks according to SOx, Security, GDPR, business continuity requirements and assist them in determining optimal controls to mitigate risks in the product environment
- Perform comprehensive IT risk assessments and assist process and control owners in determining and designing optimal controls to mitigate risks
- Support the business to design controls based on risks in support areas for the IT and business processes
- Monitor changes occurring to the platforms and processes to guide stakeholders to aim sustaining compliance by design
- Enable continuous improvement, maintaining B.com controls framework, by providing general and technical guidance on how to maintain relevant controls
Requirements
Do you have experience in Risk management?, * 6+ years of experience gained within the following areas IT Risk Management, IT audit and compliance and IT general control design
- Advanced risk management & compliance knowledge and experience including:
- IT Risk Management and IT Governance
- Operational Risk Management
- SOx, ICOFR, COSO
- Experience with high priority technology domains incl. Data, AI, Cybersecurity (NIST, ISO 27001), and Cloud is advantageous
- Experience in other relevant compliance domains (e.g. GDPR, DMA, DSA, FCRM) is advantageous
- Qualifications related to any of the above are advantageous (incl. CRISC, CRM, CRMP, FRM, CISM, CCSP, CGEIT, CIPM, CPA, ACCA, CIA, CISA)
- Hands on experience with leading risk assessments and financial audits in a technologically dynamic environment, going beyond the standard risks around Access and Change Management
- Able to self-motivate, organise and take responsibility for own workload to ensure that deadlines and objectives are met
- Ability to work in a fast-paced environment with challenging stakeholders
- Fully comfortable working in English, both written and spoken
Benefits & conditions
Booking.com's Total Rewards Philosophy is not only about compensation but also about benefits. We offer a competitive compensation and benefits package, as well unique-to-Booking.com benefits which include:
- Annual paid time off and generous paid leave scheme including: parent, grandparent, bereavement, and care leave
- Hybrid working including flexible working arrangements, and up to 20 days per year working from abroad (home country)
- Industry leading product discounts - up to 1400 per year - for yourself, including automatic Genius Level 3 status and Booking.com wallet credit
Inclusion at Booking.com:
Inclusion has been a core part of our company culture since day one. This ongoing journey starts with our very own employees, who represent over 140 nationalities and a wide range of ethnic and social backgrounds, genders and sexual orientations.
Take it from our Chief People Officer, Paulo Pisano: "At Booking.com, the diversity of our people doesn't just build an outstanding workplace, it also creates a better and more inclusive travel experience for everyone. Inclusion is at the heart of everything we do. It's a place where you can make your mark and have a real impact in travel and tech."
We ensure that colleagues with disabilities are provided the adjustments and tools they need to participate in the job application and interview process, to perform crucial job functions, and to receive other benefits and privileges of employment.