Talent.com
SOx ITGC Compliance Senior Lead - Financial Department
SOx ITGC Compliance Senior Lead - Financial DepartmentArcelorMittal • Hamilton, ON, CA
No longer accepting applications
SOx ITGC Compliance Senior Lead - Financial Department

SOx ITGC Compliance Senior Lead - Financial Department

ArcelorMittal • Hamilton, ON, CA
22 days ago
Job type
  • Permanent
Job description

Requisition ID: 31772

Note: This job posting is to fill an existing vacancy.

Do you want to work at one of Hamilton-Niagara's Top Employers and a Canada's Top Employer for Young People? We’re looking for people who are driven by excellence to work with innovative technology to create the material tomorrow’s world will be made of.

At ArcelorMittal Dofasco, we play a key role in North America’s advanced manufacturing supply chain working with the top automotive, energy, packaging, and construction brands to develop lighter, stronger and more sustainable steel products – from cans to cars.

We are embarking on a plan to transform our steelmaking production methods to significantly reduce greenhouse gas emissions in the short term, with the goal of achieving net zero by 2050. Our dedication to revolutionizing steelmaking as part of the climate change solution reinforces our status as a leader in North America.

ArcelorMittal Dofasco is Hamilton's largest private sector employer with more than 4,500 employees, shipping 4.5 million net tons of high quality flat carbon steel annually. Our iconic tagline "Our Product is Steel. Our Strength is People." is a true expression of our belief that our people are our competitive advantage.

ArcelorMittal Dofasco Job Posting

Financial Department

SOx ITGC Senior Lead

(Permanent Position)

Join ArcelorMittal Dofasco as a SOX ITGC Compliance Senior Lead and play a pivotal role in strengthening our IT control environment. In this position, you will lead the planning, coordination, and execution of our IT General Controls SOX Compliance program—from risk assessment and scoping to testing, reporting, and remediation. Acting as a strategic advisor and liaison between IT, Finance, Control Owners, Internal Assurance, and external auditors, you will ensure our compliance practices are robust, efficient, and aligned with global standards. This is an exciting opportunity to influence governance and risk management across a dynamic industrial manufacturing environment.

Overall Responsibility:

• Lead and oversee the planning, coordination, evaluations and reporting for the IT General Controls SOX Compliance program, from risk assessment and scoping through to reporting of results & remediation.
• Develop or localize globally issued IT SOX related requirements, policies, and compliance standards.
• Program stewardship; serve as a liaison between IT and other departments (e.g., finance, Global CIO, Internal Assurance, etc.) as well as external auditors, with respect to the IT components of the local SOX program.
• Serve as the Senior Lead advisor to the IT department to continually strengthen control posture.

Key Responsibilities:

Risk Assessment, Scoping and Program Methodology:


Risk Assessment and Scoping: In coordination with overall SOX Program Scoping and the Account Risk Assessment (ARA), lead IT Business Application Risk Assessment (IT BARA) process to confirm IT elements in scope. Apply the IT Control Framework to in-scope systems, tools and infrastructure.
IT SOX Methodology: Accountable for defining local IT SOX related guidance, frameworks, testing requirements and communication expectations with control owners and service providers, as appropriate.
IT Control Documentation: Ensure development or maintenance of relevant IT controls documentation (e.g., IT BARA, IT Control Framework, risk-control matrices, narratives, flowcharts, test plans, etc.)

IT SOX Testing Delivery:


• Determine and communicate annual testing timelines, schedule; maintain on-time delivery of the SOX testing program.
• Collaborate with process and control owners, finance SOX leads, and relevant third-parties to deliver a comprehensive and risk-aligned SOX program.
Control evaluations: Oversee and provide quality assurance over annual evaluations of design and operating effectiveness, for in-scope controls and systems. This includes validation of test plans and procedures, review of walkthroughs and operating effectiveness testing and the level of evidence within working files to support conclusions over the effectiveness of IT controls.
Deficiency management: Identify deficiencies, root causes, and develop clear, concise, practical recommendations and ensure timely remediation. Facilitate dialogue to identify remediation plans for testing exceptions, deficiencies. Coordinate with finance SOX leads, evaluate severity of identified deficiencies.
• Effectively monitor IT SOX service provider performance with effective financial management within the allocated budget to ensure compliance with SOX requirements.
• Prepare and present periodic reports & presentations on IT SOX compliance & issues to various stakeholders both internally and externally at various levels of management
• Collaborate with external auditors during the audit process, providing necessary documentation and addressing any audit findings related to IT SOX compliance.
• Monitor remediation against plans, timing. Coordinate and oversee remediation testing and validation processes, as required.

Liaison and stakeholder coordination:


• Coordinate and communicate effectively with global teams (e.g., GCIO) to ensure consistent and standardized IT SOX compliance practices.
• Collaborate with business process SOX teams to align IT SOX testing with overall risk assessment and scoping efforts.
• Collaborate with third-party service providers engaged in IT SOX testing activities, ensuring clear communication, adherence to timelines, and quality deliverables.
• Engage in regular, ongoing dialogue with IT External Audit team to ensure timely provision of testing materials and coordination to reduce duplication of effort (e.g., joint walkthrough sessions).

Business engagement, remediation advisory and process improvement:


• Research, maintain currency with regulations and industry best practices related to IT controls and SOX compliance.
• Collaborate with IT Department and business process owners to identify remediation plans or opportunities for strengthening IT controls and streamlining compliance processes. Facilitate remediation discussions, validation testing, as required.
• Inquire and maintain an understanding of system development, key projects and potential changes to technology that could impact program scope. Identify gaps, support project team in designing and controls, and assessing the design and operating effectiveness of controls.
• Participate in projects aimed at improving overall governance, risk management, and compliance frameworks. This may include business engagement meetings, facilitation or co-facilitation of training and awareness sessions and presentations to stakeholders.
• Provide advice and recommendations as necessary to strengthen and optimize ITGCs within the IT Department and lead the implementation, where needed.


Education & Accreditation:

• Bachelor's degree in Information Systems, Computer Science, or a related field.
• Professional certifications such as Certified Information Systems Auditor (CISA) or Certified Internal Auditor (CIA) are preferred.
• Minimum of 7 years of experience in IT audit, internal controls, or compliance, with a focus on SOX compliance.
• Prior Big 4 accounting firm experience is an asset.
• Experience in managing IT SOX programs through technology transformation is an asset.
• Experience in leading and managing IT SOX compliance programs.
• Experience in industrial manufacturing (e.g., steel) is an asset.

Knowledge:


• Expert knowledge of SOX requirements and leading SOX programs.
• Expert knowledge of SOX internal controls framework.
• Expert knowledge and practical experience in designing, evaluating, and testing various IT General Controls (ITGCs) across different technology environments, including but not limited to:


o Access Management (e.g., user provisioning, privileged access, segregation of duties, logical access reviews across applications, databases, and operating systems).
o Change Management (e.g., development, testing, and promotion to production, emergency changes, system configurations, patch management).
o System Operations (e.g., job scheduling, data backups and recovery, incident management, monitoring).
o Program Development (e.g., secure coding practices, system development lifecycle controls).
o Data Center Operations (where applicable).
o Network Security Controls (relevant to SOX scope).
o Database Security Controls.


• Advanced understanding of an audit advisory role.
• In-depth knowledge of IT controls, their application within a SOx environment, risk management frameworks, and industry standards (e.g., COBIT, COSO).
• Strong understanding of IT processes, systems, and technologies, including critical business applications (e.g., SAP ECC/S4HANA, financial systems), underlying infrastructure (servers, databases, networks), and cloud environments.
• Ability to identify risks and recommend cost-effective controls.
• Understanding of the steel industry.
• Knowledge in Audit Board is an asset.
• Deep understanding of how IT controls integrate with and support business process controls

Skills:


• Advanced project management, coordination skills and experience leading and managing teams.
• Excellent communication (verbal and written) skills are required.
• Excellent interpersonal skills are required.
• Excellent presentation skills are required.
• Strategic thinker with strong analytical skills and problem-solving ability.
• Excellent organizational and time-management skills are required.
• Strong influencing skills: ability to present points of view effectively and gain support for their position, balancing technical and business considerations.
• Demonstrated and proven ability to work effectively in a team environment and maintain positive interpersonal relationships.
• Strong understanding of IT processes and various technologies used for custom development along with purchased packages where SAP experience is preferred. Ability to translate technical IT concepts into business risks and vice versa.

Work Environment:



• Office environment with some plant exposure.

Hours of Work:



Days, Monday to Friday with extended hours as required to meet internal/external customer requirements.

Total Rewards at ArcelorMittal Dofasco

We value you, and your contributions to our mutual success. To recognize this, we provide extensive and market-competitive total rewards including salary, variable pay, employer funded retirement savings, group benefits with fully paid premiums, and other programs like recognition points and wellness initiatives.

The salary range for this position is $115,000 - $144,000. Starting salary will depend on the successful candidate’s qualifications and work experience.

On your first day you will immediately be eligible for:

    • Participation in our annual bonus plan based on the achievement of Company goals against target metrics at a rate of 15%.
    • Company paid Defined Contribution Pension Plan. No employee contribution required. With employer contributions between 5 and 10%.
    • Competitive vacation allowances
    • Group Benefits with no health and dental premiums.
    • For health and dental claims, you only pay amounts above the maximums the plan pays.
    • Life insurance premiums are shared with the company.

After two years of permanent company service, you will participate in our Profit Sharing, where all permanent employees share equally in the allocation of profits.

Other immediate benefits include:

    • Competitive vacation entitlements
    • PPE and workwear provided at no cost
    • Wellness and Employee Assistance Programs
    • Free access to three onsite fitness centers and our 70-acre recreation park with multiple arenas, fields and organized sports for you and your family


We would like to thank all those who apply in advance since only applicants selected to complete an online assessment will be contacted.


ArcelorMittal Dofasco is an equal opportunity employer and encourages all qualified candidates to apply and we are committed to providing accommodations for people with disabilities to support their participation in all aspects of the recruitment and selection process. If you require accommodation, we will work with you to meet your needs.

Create a job alert for this search

SOx ITGC Compliance Senior Lead - Financial Department • Hamilton, ON, CA

Similar jobs

Governance, Risk & Compliance Consultant - CMMC - Remote $150-175k - LT Harper Recruitment Group

LT Harper Recruitment Grouphamilton, on, ca
Remote
Full-time

Governance, Risk & Compliance Consultant - Remote - $150k-175k.Experienced as a GRC consultant.In-depth knowledge of the CMMC framework, NIST SP 800-171, and DFARS 252.Requirements to acquire a SEC...Show more

 • Promoted

Vessel Maintenance & Compliance Lead

Ocean / OcéanHamilton, ON, CA
Permanent

A Canadian maritime leader is seeking a Technical Superintendent for the Hamilton office.The role involves planning, coordinating, and supervising vessel maintenance and mechanical repairs across v...Show more

 • Promoted

Asset Protection Team Lead Focused on Training and District Oversight

LVMH GroupHamilton, ON, CA
Full-time

Excel as an Asset Protection Team Lead, responsible for district-wide loss prevention efforts and agent training.Collaborate to enhance safety and compliance in a busy retail setting.This position ...Show more

 • Promoted

Financial Service Representative

goeasy Ltd.Hamilton, ON, CA
Full-time

Join easyfinancial, the consumer lending driver behind goeasy’s rapid growth.We’ve earned prestigious accolades including being named one of.Canada’s Top Growing Companies.TIME Magazine’s 2025 list...Show more

 • Promoted

Risk Manager

BET99hamilton, on, ca
Full-time

BET99 is Canada's Premiere Online Sportsbook and Casino.Launched in 2020, we have consistently innovated the online gaming landscape every step of the way, exponentially growing our customer base a...Show more

 • Promoted

Casino Revenue Auditor: Drive Compliance & Insights

Great Canadian EntertainmentMilton, Halton Region, CA
Full-time

A leading entertainment company in Halton Region, Milton is seeking an Audit position for their casino operations.The successful candidate will be responsible for reviewing and balancing gaming rev...Show more

 • Promoted

Senior Director, Consumer Risk & Payments

AffirmHamilton, ON, CA
Full-time

A financial technology company is searching for a Senior Director of Consumer Risk product in Hamilton, Ontario.This role involves overseeing the product vision and strategy for Consumer Risk withi...Show more

 • Promoted

Financial Advisor CIRO-ID (Urban)

CIBCGeorgetown, ON, CA
Full-time

We’re building a relationship‑oriented bank for the modern world.We need talented, passionate professionals who are dedicated to doing what’s right for our clients.At CIBC, we embrace your strength...Show more

 • Promoted

Retail Loss Prevention Lead

SEPHORAHamilton, ON, CA
Full-time

Oversee Loss Prevention strategies as a dedicated Retail Lead.Collaborate with the District Manager and ensure compliance while training Agents to enforce security standards effectively.In this ful...Show more

 • Promoted

Data Security Services Compliance Manager - Entrust

Entrusthamilton, on, ca
Full-time

At Entrust, we’re shaping the future of identity centric security solutions.From our comprehensive portfolio of solutions to our flexible, global workplace, we empower careers, foster collaboration...Show more

 • Promoted

Governance, Risk & Compliance Consultant - CMMC - Remote $150-175k - hamilton

LT Harper Recruitment Grouphamilton, on, ca
Remote
Full-time

Governance, Risk & Compliance Consultant - Remote - $150k-175k.Experienced as a GRC consultant.In-depth knowledge of the CMMC framework, NIST SP 800-171, and DFARS 252.Requirements to acquire a SEC...Show more

 • Promoted

GRCS Manager: Internal Controls & SOX/IPO Readiness Leader

KPMG LLP CanadaHamilton, ON, CA
Full-time

A leading accounting and advisory firm is seeking a Manager to lead Governance, Risk, and Compliance Services.This role involves managing advisory engagements, conducting internal control assessmen...Show more

 • Promoted

Cyber Compliance & Risk Lead (IT/OT)

ipss inc.Halton Hills, ON, CA
Full-time

An established industry player is seeking a dedicated Cyber Security Compliance Specialist to enhance its city-wide cyber security program.This pivotal role involves conducting thorough compliance ...Show more

 • Promoted

Data Security Services Compliance Manager

Entrusthamilton, on, ca
Full-time

At Entrust, we’re shaping the future of identity centric security solutions.From our comprehensive portfolio of solutions to our flexible, global workplace, we empower careers, foster collaboration...Show more

 • Promoted

Dynamic Financial Services Associate for Growth and Impact

Meridian Credit UnionHamilton, ON, CA
Full-time

Shape the financial future of our members as a proactive Financial Services Associate.Deliver insightful credit and investment advice while achieving exceptional sales performance in a collaborativ...Show more

 • Promoted

Global Conflicts Lawyer — Risk & Compliance Innovator

Gowling WLGHamilton, ON, CA
Full-time

A premier international law firm is seeking a Conflicts Lawyer to support their global conflicts team.This role involves analyzing conflicts, advising on legal ethics, and participating in the cont...Show more

 • Promoted

Senior Manager, Internal Audit & ICFR - 12 month Contract

Vaco by HighspringHalton Hills, ON, CA
Permanent +1

Senior Manager, Internal Audit & ICFR Testing - 12 months.Lead IT and business control testing for an ICFR program and manage a team of up to five testers.Partner with IT, Finance, and business lea...Show more

 • Promoted

Senior Customs Specialist - Compliance

DSV Road GmbHMilton, Halton Region, CA
Full-time

If you are a current DSV employee and interested in a position in another country, please contact your Human Resource representative to discuss the process and requirements of applying.DSV – Global...Show more