CrawlJobs Logo

Director, IT Governance, Audit and Compliance

https://www.marriott.com Logo

Marriott Bonvoy

Location Icon

Location:
United States , Bethesda

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

57.16 - 96.05 USD / Hour

Job Description:

The Director, IT Governance, Audit & Compliance, is a leadership role responsible for serving as the governance, audit and compliance execution arm for IT controls managed under the Technology Experience Center (TEC) organization. This role works with IT Provision Owners to perform the governance, oversight, and reporting for regulatory controls that align under IT Asset Inventory, Change Management, Software End of Life (EOL) and Hardware Removal. The Director ensures controls are consistently designed, executed, evidenced, and audit ready in alignment with internal policy, regulatory obligations, and external audit requirements. The Director partners closely with Marriott IT Control Owners, Product Owners, Application Owners, Infrastructure and Application teams, Security, and Risk Management to facilitate quarterly and annual audits. This role will manage a team who will be responsible for coordinating evidence collection, management for remediation of control gaps, and provide clear, compliance reporting to leadership, Internal Audit, and external regulators. This role requires deep understanding of IT Operations, Software Development Lifecycle, regulatory control frameworks, audit methodology, and process maturity models (e.g., CMMI) and serves as a key advisor to TEC IT Provision Owners and the GIS Compliance Program on compliance risk, control effectiveness, and continuous improvement.

Job Responsibility:

  • Act as the TEC aligned control execution authority for regulatory IT controls, including Asset Inventory, Change Management, and Software End of Life
  • Work with TEC IT Provision and Control Owners for alignment on policy, standard operating procedures, and control execution requirements
  • Responsible for control design validation, operational execution oversight, and compliance reporting for TEC managed controls
  • Establish and maintain standardized governance processes, control narratives, and operating procedures to ensure consistency and auditability
  • Ensure alignment of TEC controls with enterprise policies, regulatory obligations, and audit expectations
  • Lead quarterly and annual audit requirements, supporting Management Testing and external audit requests
  • Coordinate evidence collection, validation, and submission across multiple IT control owners and stakeholders
  • Serve as the primary point of contact for GIS Regulatory and Compliance organization and auditors related to TEC managed controls
  • Track, manage, and report on audit findings, observations, and remediation activities through closure
  • Facilitate collaboration across TEC IT control owners to ensure timely and accurate control execution
  • Partner with Application, Infrastructure, Security, and Platform teams to operationalize compliance requirements
  • Drive accountability for control gaps, remediation plans, timelines, and ownership
  • Provide clear guidance and education to teams on control intent, expectations, and audit readiness
  • Develop and deliver executive level compliance reporting, dashboards, and risk summaries
  • Provide leadership with clear visibility into control health, risk posture, and remediation progress
  • Support regulatory responses with accurate, evidence based narratives and documentation
  • Identify systemic control weaknesses and lead process improvements to reduce audit risk and operational friction
  • Establish repeatable, scalable compliance oversight processes to support long term regulatory sustainability
  • Lead and develop a compliance focused team responsible for governance execution and audit readiness
  • Establish clear performance expectations aligned to control execution quality, audit outcomes, and risk reduction
  • Partner effectively with senior leaders, control owners, and auditors as a trusted compliance authority
  • Demonstrate sound judgment, discretion, and professionalism when managing regulatory risk and audit interactions

Requirements:

  • Bachelor’s degree or equivalent combination of education, certifications, and experience
  • 10+ years of progressive IT leadership experience, with demonstrated ownership of governance, audit, or compliance functions, including leading teams, delivering complex initiatives, and driving process improvement and operational excellence
  • Team leadership in matrixed organizations
  • Servant leadership that highly values feedback
  • Demonstrated ability to resolve conflict and drive direction/focus
  • Proven experience executing and supporting regulatory IT controls in large, complex enterprises
  • Strong working knowledge of: IT Operations
  • Regulatory control frameworks
  • Audit methodologies
  • ITIL & SDLC Processes
  • Process maturity models (e.g., CMMI)
  • Demonstrated experience leading audit facilitation, evidence management, and remediation execution
  • Exceptional written and verbal communication skills, including the ability to present complex compliance topics to senior leadership
  • Proven ability to influence and drive outcomes without direct authority across matrixed organizations

Nice to have:

  • Experience with IT Asset Management, Change Management, and Software Lifecycle controls
  • Prior experience supporting internal and/or external regulatory audits
  • Familiarity with IT governance, risk, and compliance (GRC) operating models
  • Strong analytical skills with the ability to translate data into audit ready insights
  • Experience building repeatable compliance processes in evolving or transforming organizations
What we offer:
  • 401(k) plan
  • stock purchase plan
  • discounts at Marriott properties
  • commuter benefits
  • employee assistance plan
  • childcare discounts
  • medical coverage
  • dental coverage
  • vision coverage
  • health care flexible spending account
  • dependent care flexible spending account
  • life insurance
  • disability insurance
  • accident insurance
  • adoption expense reimbursements
  • paid parental leave
  • paid sick leave
  • PTO
  • holidays

Additional Information:

Job Posted:
March 21, 2026

Expiration:
April 02, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Director, IT Governance, Audit and Compliance

Audit Director, Quality & Compliance

The Audit Director is responsible for leading the strategy, execution, and conti...
Location
Location
United States , Philadelphia
Salary
Salary:
Not provided
cabalettabio.com Logo
Cabaletta Bio Inc
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Life Sciences, Quality, Regulatory, or related discipline
  • 10+ years of GxP audit experience in biotechnology, pharmaceutical, or cell therapy environment
  • Demonstrated experience leading internal and external GxP audits
  • Strong understanding of FDA, EMA, MHRA, and ICH regulations (including ICH E6 R3, Annex 1, 21 CFR Parts 210/211/312/820, GCP/GMP/GLP)
  • Experience supervising or mentoring employees
  • Strong analytical, organizational, and communication skills
  • Ability to manage competing priorities in a fast-paced, rapidly growing company
  • Experience in advanced therapies, ATMPs, or cell/gene therapy manufacturing preferred
  • Experience preparing for and supporting regulatory inspections preferred
  • Certifications such as ASQ, RQAP-GCP/GMP, RAC, CQA, or equivalent preferred
Job Responsibility
Job Responsibility
  • Develop and maintain the annual risk-based Internal Audit Program across GCP, GMP, GLP, IT/CSV, and Quality Management System (QMS) domains
  • Plan, schedule, and execute internal audits, vendor audits, and for-cause audits
  • Ensure alignment with global regulatory requirements and industry best practices for advanced therapies and cell therapy manufacturing
  • Evaluate organizational risk and adjust audit scope and approach accordingly
  • Directly supervise the current audit team member including goal setting, workload planning, performance management, and professional development
  • Provide coaching, technical training, and oversight to ensure audit readiness and consistent application of audit standards
  • Support team succession planning and capability building as the audit function grows
  • Lead or oversee audits of internal functional areas (e.g., Clinical Operations, CMC, MSAT, Manufacturing, Quality Control, Regulatory Affairs, IT)
  • Oversee vendor and third-party audits to qualify and maintain GxP suppliers
  • Ensure timely issuance of audit reports, management responses, and CAPA plans
What we offer
What we offer
  • health and retirement, PTO, and stock option plans
Read More
Arrow Right

Director - Governance, Risk and Compliance

We are a fast-growing fintech company seeking a proactive and highly organized G...
Location
Location
United States , New York
Salary
Salary:
175000.00 - 200000.00 USD / Year
clearstreet.io Logo
Clear Street
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in GRC, security compliance, risk management, or related functions
  • Strong understanding of common security frameworks (SOC 2, ISO 27001, NIST CSF, PCI-DSS)
  • Experience managing audits end-to-end
  • Demonstrated ability to build and maintain governance processes and cross-functional compliance programs
  • Excellent documentation, communication, and stakeholder-management skills
  • Experience in technology, fintech, financial services, or other highly regulated industries
Job Responsibility
Job Responsibility
  • Develop, maintain, and manage the company’s security and compliance policy framework
  • Ensure policies are current, properly communicated, approved, and effectively implemented across the organization
  • Oversee periodic reviews of all internal policies
  • Educate teams on policy requirements and drive adherence
  • Build, implement, and continuously refine the company’s cyber security risk management framework
  • Lead risk identification, assessment, scoring, and periodic re-evaluations
  • Maintain the corporate risk register
  • Manage all internal and external audits including SOC 2, ISO 27001, regulatory exams, and customer due-diligence requests
  • Coordinate and prepare audit evidence
  • Serve as the primary liaison with external auditors, security assessors, and regulatory bodies
What we offer
What we offer
  • Competitive compensation packages
  • Company equity
  • 401k matching
  • Gender-neutral parental leave
  • Full medical, dental and vision insurance
  • Lunch stipends
  • Fully stocked kitchens
  • Happy hours
  • Fulltime
Read More
Arrow Right

Sr. Director, Cybersecurity Governance, Risk & Compliance

The Sr. Director of Cybersecurity Governance, Risk Management, and Compliance (G...
Location
Location
United States
Salary
Salary:
173500.00 - 419500.00 USD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree or higher in Information Technology, Cybersecurity, Computer Science, or a related field
  • Minimum of 10 years of experience in cybersecurity and/or IT Risk, with at least 5 years focus on GRC
  • Proven track record in a senior leadership role within a large organization
  • Experience in developing and implementing cybersecurity strategies
  • Strong knowledge of relevant regulations and standards, such as GDPR, NIST CSF, and ISO 27001
  • Exceptional leadership and management skills
  • Strong analytical and problem-solving abilities
  • Excellent communication and interpersonal skills
  • Ability to work collaboratively across departments and build consensus
  • Proficient in cybersecurity technologies and tools.
Job Responsibility
Job Responsibility
  • Define and execute a comprehensive cybersecurity GRC strategy that aligns with business objectives and legal/regulatory requirements
  • Partner with cross-functional teams, including Legal, IT, Audit, and Business Units, to integrate security and compliance requirements into business processes
  • Recruit, mentor, and develop a high-performing team of GRC professionals
  • Develop and maintain the cybersecurity governance framework, ensuring it aligns with the organization's overall business objectives
  • Create policies, procedures, and guidelines that support the cybersecurity strategy
  • Ensure compliance with industry standards, regulations, and best practices
  • Identify, assess, and prioritize cybersecurity risks facing the organization
  • Develop risk mitigation strategies and allocate resources to address key risk areas
  • Collaborate with other departments to integrate risk management practices across the organization
  • Monitor and report on the effectiveness of risk management strategies
What we offer
What we offer
  • Comprehensive suite of benefits supporting physical, financial, and emotional wellbeing
  • Career development programs to help achieve career goals
  • Inclusive work environment valuing diverse backgrounds.
  • Fulltime
Read More
Arrow Right

Audit Manager / Director

Join our team and play a crucial role in maintaining the integrity of our county...
Location
Location
United States , Baltimore
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Accounting, Finance, or a related field
  • CPA (Certified Public Accountant) certification is required
  • Certification as a Certified Internal Auditor (CIA) is preferred
  • A minimum of 10+ years of experience in auditing in a governmental or public accounting environment
  • Strong knowledge of Fiscal Policy, Government Audits, and Government Procurement
  • Prior experience in County Government operations and procedures
  • Advanced understanding of Governmental Accounting principles
  • Excellent communication, analytical, and problem-solving skills
  • Ability to work independently and make decisions based on detail-oriented judgment
  • Strong ethical standards and high levels of integrity
Job Responsibility
Job Responsibility
  • Manage audits of county departments, agencies, and programs to ensure compliance with laws, regulations, and policies
  • Oversee the conduct of financial, compliance, operational and performance audits
  • Develop productive working relationships with county departments and management
  • Partner with other members of the audit team, providing leadership and direction as needed
  • Prepare comprehensive reports detailing audit findings and recommendations
What we offer
What we offer
  • Competitive compensation package
  • Medical, vision, dental, and life and disability insurance
  • Eligibility to enroll in company 401(k) plan
  • Fulltime
Read More
Arrow Right

Audit Director

The Audit Director is a senior level management position responsible for contrib...
Location
Location
Canada , Mississauga
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 15+ years of experience in a related role
  • Compliance Risk Management experience in second or third line of defense is preferred
  • Demonstrated success in business, functional and people management
  • Consistently demonstrates clear and concise written and verbal communication
  • Demonstrated ability to remain unbiased in a diverse working environment
  • Effective negotiation skills
Job Responsibility
Job Responsibility
  • Leads a global team of auditors to provide timely and complete assurance over the US Regulatory Issue Validations
  • Responsible for planning of audit coverage and delivery of high quality, value-added Regulatory Issue Validations in accordance with audit methodology
  • Leads validations owned by ICRM and coordinates models subject matter expertise for all other audit teams
  • Proactively manages IA’s relationship with multiple internal and external stakeholders, including senior risk and business executives, and government regulators
  • Uses communication and leadership skills to influence a wide range of senior internal and external audiences
  • provides impactful, valuable and ongoing IA input through active interactions with stakeholders and formal participation at key committees and management initiatives
  • Possesses, through direct hands-on experience, a strong understanding of Audit and Compliance
  • maintains an understanding of key relevant regulations, current business practices and industry trends
  • Supports and endorses the Quality Assurance (QA) function of IA, and resolve issues found by QA, improving audit processes and coverage
  • Ensures the adoption of Citigroup and Citibank Audit Committee Charters and the IA Charter, and engages in internal/external negotiations
  • Fulltime
Read More
Arrow Right

Senior Accountant – Government Auditing

BLS is seeking a professional with advanced technical skills and experience work...
Location
Location
Salary
Salary:
Not provided
belfint.com Logo
Belfint Lyons & Shuman, P.A
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Accounting
  • 3-4 years public accounting experience in an audit or accounting environment with emphasis on government accounting
  • Strong organizational skills
  • Attention to detail
  • CPA certification or evidence of working towards certification
  • Working knowledge of government audit compliance
  • Ability to work independently
  • Some supervisory experience and client relations skills
  • Experience with Data Analysis software such as IDEA
  • Working knowledge of ProSystems software, Thomson Reuters Checkpoint, Microsoft Office, and other programs related to accounting and auditing
Job Responsibility
Job Responsibility
  • Planning and executing the full scope of audit, review and accounting engagements for government entities, entities that receive government awards, and other audit organizations with Generally Accepted Auditing Standards and Yellow Book
  • Performing single audits in accordance with Uniform Guidance
  • Acting as primary liaison between the client and the Supervisor, Manager, or Director
  • Preparing, reviewing, and analyzing various financial statements
  • Staying compliant with pronouncements of professional and other regulatory groups
  • Mentoring of new staff on assignments, while simultaneously performing efficiently on engagements
What we offer
What we offer
  • Flexible work options
  • Career advancement
  • Nurturing, open-door environment
  • Resources and tools needed to succeed
  • Ongoing training
  • Mentoring to guide you through your career
Read More
Arrow Right

Compliance Director

Reporting to the Associate Vice-President of Compliance for Global Functions, th...
Location
Location
India , Hyderabad
Salary
Salary:
Not provided
amgen.com Logo
Amgen
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master’s degree and 14 to 16 years of Information Systems experience OR Bachelor’s degree and 16 to 18 years of Information Systems experience
  • Minimum of 12 or more years working in a corporate advisory or procedural support role with significant experience in operational controls for Global Capabilities Centers
  • Strong communications skills including English fluency
  • Experience in building compliance controls, processes, policies, and requirements with particular emphasis on anti-corruption, conflict of interest, compliance investigations, and corporate monitoring
Job Responsibility
Job Responsibility
  • Support Amgen’s compliance leadership team in providing strategic advice pertaining to global compliance program framework
  • Help develop global compliance capabilities out of Amgen India office (e.g., policy improvement, training governance, monitoring activities, investigation procedures)
  • Help develop and measure implementation strategies to develop and integrate the Amgen compliance program at Amgen India including
  • the Amgen compliance monitoring and auditing plans, develop and support robust compliance training program, provide support as needed for compliance investigations, interpret and apply Amgen compliance policies
  • Support Amgen India mid and senior level leaders execute corporate compliance priorities
  • Develop and maintain working knowledge of Amgen’s Global Compliance Policies and Standard Operating Procedures
  • Develop and maintain working knowledge and understanding all applicable laws and codes regulating Amgen activities with government officials and the healthcare community (e.g., Prevention of Corruption Act, OPPI, UCPMP)
  • Access various Amgen source systems (e.g., SAP, Concur, C3) to gather information required to make assessments impacting our training and monitoring activities
  • Co-chair compliance steering committee with Amgen India Managing Director focused on building compliance program controls and risk mitigation plans in response to: key compliance program metrics (e.g., investigations, monitoring, training), emerging business activities material to Amgen India, developments in external environment that have impact on compliance program
  • Draft and deploy local compliance policies and procedures to address functional tactics / activities being carried out with members of the healthcare community and/or government officials that are incremental to our global compliance requirements (due to nuances in local regulations / codes)
Read More
Arrow Right

Audit Director - IA Risk & Controls Transformation

Citi is undergoing a Transformation to modernize and simplify the bank. We’re ra...
Location
Location
Canada , Mississauga
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 15+ years of experience in a related role
  • Related certifications (CPA, ACA, CFA, CIA, CISA or similar) preferred
  • Demonstrated success in business, functional and people management
  • Demonstrated strong collaboration skills amongst peers, supporting team members, and various levels of Management
  • Ability to own, project manage and oversee multiple, concurrent projects with stringent deadlines
  • Consistently demonstrates clear and concise written and verbal communication
  • Demonstrated ability to remain unbiased in a diverse working environment
  • Effective negotiation skills
  • Bachelor’s degree/University degree or equivalent experience
  • Master’s degree preferred
Job Responsibility
Job Responsibility
  • Deliver and manage multiple, concurrent validations, and ensure the delivery of audit reports are complete, insightful, timely, error free and concise
  • Contribute to the delivery of reports and oversee audit’s coverage and reporting on common high risk areas
  • Provide independent assurance on the design and operating effectiveness of an area, at a global or regional level
  • Ensure timely delivery of comprehensive regulatory and internal audit issue validation, including issues arising from other external parties
  • Ensure IA meets/exceeds expectations, and support and drive the IA Transformation Program and IA’s and management’s Transformation efforts
  • Develop and cultivate strong stakeholder relationships to influence and improve the identification, measurement, management, reporting and controls in governance, risk and control environments
  • Support and endorse the Quality Assurance (QA) function of IA, and resolve issues found by QA, improving audit processes and coverage
  • Ensure the adoption of Citigroup and Citibank Audit Committee Charters and the IA Charter, and engage in internal/external negotiations
  • Oversee various tasks to build the audit team, including recruiting staff, developing and training the team, and managing the budget
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency, as well as effectively supervise the activity of others and create accountability with those who fail to maintain these standards
  • Fulltime
Read More
Arrow Right