Cyber Compliance & Audit Analyst job opportunity at Thomson Reuters. The role involves assessing, challenging, and testing controls, identifying non-compliance issues, and proposing efficiencies. Requirements include a bachelor's degree, 4+ years of experience in audit, and certifications such as CISA, CISSP, or CISM.
Requirements
- Bachelor's degree in IT, Accounting, Finance or equivalent education and experience
- At least 4+ years of relevant work experience in SoX, ITGC, SOC, PCI within Audit, Big 5, consulting firms or as line 1a or line 1b completing IT-IS control testing or working within a Governance or Compliance function across Financial Services organizations
- One of these certifications in order of preference is essential CISA, CISSP, CCAK, CISM, CRISC or ISO (preferred)
- Strong ethical principles and understanding of business and IS ethics
- Awareness about common security vulnerabilities of web and cloud applications and operating techniques from sources such as SANS, OWASP Top 10 and Cloud Security Alliance (CSA). Experience in testing Cloud controls and related technologies will be an asset
- Excellent oral and written communication skills in English. Additional expertise in French, Spanish or another language will be an asset
- Knowledge about GRC platforms like ServiceNow, Process Unity, RSA Archer, MetricStream and like
- Willingness and drive to learn continuously and approach change with openness
- Ability to work independently, act decisively, and ensure personal deadlines and team requirements are met
- Strong analytical and problem-solving skills, with the ability to identify and analyze complex problems
- Excellent time management and organizational skills, with the ability to prioritize tasks and meet deadlines
Benefits
- Comprehensive benefit plans
- Flexible and supportive benefits for work-life balance: flexible vacation, two company-wide Mental Health Days Off; work from another location for up to a total of 8 weeks in a year, 4 of those weeks can be out of the country and the remaining in the country, Headspace app subscription; retirement, savings, tuition reimbursement, and employee incentive programs; resources for mental, physical, and financial wellbeing
- Hybrid Work Model: We’ve adopted a flexible hybrid working environment (2-3 days a week in the office depending on the role) for our office-based roles while delivering a seamless experience that is digitally and physically connected
- LinkedIn Learning access
- internal Talent Marketplace with opportunities to work on projects cross-company
- Ten Thousand Coffees Thomson Reuters café networking
- Ten employee-driven Business Resource Groups
- two paid volunteer days annually
- Environmental, Social and Governance (ESG) initiatives for local and global impact