Enterprise Systems Security Manager

Circle K Stores Inc.
Tempe, AZ, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English, Spanish
Job source

Tech stack

Control Objectives for Information and Related Technology (COBIT) Identity and Access Management Information Technology Audit Smartsuite Strategies of Testing Enterprise Software Applications IT General Controls (ITGC) Information Technology

Job description

Job Summary: The Enterprise Systems Security Manager is responsible for safeguarding enterprise applications and IT environments through strong access governance, effective IT control management, and proactive risk and vulnerability coordination. This role partners closely with IT, Compliance, Audit, and business stakeholders to ensure SOX compliance, secure system operations, and continuous improvement of the organization’s IT control framework. The ideal candidate combines technical expertise with governance, risk, and people leadership capabilities., Application Access Management

  • Lead enterprise-wide application access management strategies, including role design, provisioning, de-provisioning, and periodic access reviews.
  • Ensure least-privilege access principles are enforced across all critical systems and applications.
  • Partner with application owners and IAM teams to resolve access-related risks and audit findings.

SOX IT Controls Management

  • Own and manage SOX IT General Controls (ITGCs) related to access, change management, and system operations.
  • Coordinate with Internal and External Audit teams to support SOX testing, walkthroughs, and evidence requests.
  • Maintain documentation for control effectiveness, control design, and risk assessments.

Control Design and Expansion

  • Design, implement, and enhance IT control frameworks to support evolving business, regulatory, and security requirements.
  • Expand IT controls into new systems, applications, and processes as the enterprise technology landscape grows.
  • Evaluate control gaps and recommend scalable, sustainable solutions.

Remediation Oversight

  • Oversee remediation efforts for identified control deficiencies, audit findings, vulnerabilities, and compliance issues.
  • Track remediation plans, timelines, and ownership to ensure timely and effective resolution.
  • Validate remediation effectiveness and ensure issues are fully resolved before closure.

Vulnerability and Risk Coordination

  • Coordinate vulnerability and risk management activities across enterprise systems.
  • Partner with cybersecurity, infrastructure, and application teams to assess risk impact and prioritize mitigation efforts.

Training and Support

  • Provide training and ongoing support to IT and business stakeholders on access controls, SOX requirements, and security best practices.
  • Act as a subject matter expert for IT controls, access governance, and audit readiness.
  • Promote a culture of accountability, security awareness, and compliance., * This position will have direct reports but is also expected to work as an individual contributor as needed.
  • This position requires a proactive approach to driving global IT compliance and control improvements.

Requirements

Do you have experience in SOX?, Do you have a Bachelor’s degree?, * Bachelor’s degree in information technology, Computer Science, Business Administration, or a related field.

  • Professional certifications such as CISA, CRISC, or CISSP are preferred.

Experience:

  • 5+ years of experience in IT SOX compliance, IT audit, or IT risk management in a global organization.
  • Proven experience with IT general controls (ITGCs), SOX 404, and related frameworks (e.g., COBIT, COSO).
  • Familiarity with ERP systems, cloud platforms, and GRC tools is highly desirable.

Skills and Competencies:

  • Strong analytical and problem-solving skills with the ability to identify risks and recommend solutions.
  • Excellent communication and interpersonal skills to collaborate with diverse teams and stakeholders globally.
  • Strong knowledge of IT control design, operation, and testing methodologies.
  • Detail-oriented with strong organizational skills to manage multiple priorities effectively.
  • Ability to work both independently and collaboratively as part of a global team., In English

In Spanish

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Actionable steps to improve team testing strategies immediately

Luise Freese Luise Freese · World Congress 2025

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

2:17 min

Governing enterprise IT as a global automotive CIO

Katrin Lehmann Katrin Lehmann +1 · Coffee With Developers

4:04 min

Testing strategies and philosophical approaches for modern application delivery

Lian Li · World Congress 2023

3:24 min

Evaluating remote software roles and compensation structures

Nacho Iacovino · World Congress 2021

2:46 min

Missing equipment retrieval processes for departing employees

Jasmin Azemović Jasmin Azemović · World Congress 2026 Europe

Videos

See all

Related articles

See all