Senior Compute Compliance Architect

Boeing Boeing · Aerospace · North Charleston, SC +4

This role focuses on architecting and implementing compliance processes for IT services, with an initial emphasis on Sarbanes-Oxley (SOX) controls for compute, storage, and databases. It involves leading process design, evidence collection, mock audits, and collaborating with infrastructure teams. While the role mentions setting the stage for future AI capabilities, its core function is IT compliance and risk management, not direct AI/ML development or deployment.

What you'd actually do

  1. Lead process design and build activities for securing SOX systems and collecting evidence of the controls
  2. Train team members to effectively conduct peer reviews, evidence collection and how to pass an audit
  3. Conduct mock audits in alignment with internal and external auditor expectations for both design effectiveness and operational effectiveness
  4. Manage findings to ensure correctness in assignee, gap identified, severity level with internal and external audit teams
  5. Collaborate with infrastructure product teams to understand their processes, capabilities and opportunities for automation

Skills

Required

  • 10+ years of experience implementing and managing a cyber-risk management program, Sarbanes–Oxley (SOX) program, auditing of applications, processes, or other compliance programs
  • 10+ years of experience collecting and analyzing data from multiple sources, as well as interpreting data and presenting analysis and recommendations to management
  • 10+ years of experience with cybersecurity, information protection, risk management, and/or IT compliance
  • 10+ years of experience e working within one or more IT infrastructure domains
  • 10+ years of experience in public accounting and/or industry experience designing, implementing, and testing SOX-relevant IT General Controls (ITGCs)

Nice to have

  • Bachelor’s degree or higher
  • Cloud certifications (e.g. Azure, GCP, AWS, etc.)
  • Experience with International Traffic in Arms Regulations / Export Administration Regulations (ITAR/EAR)
  • Experience with Defense Federal Acquisition Regulation (DFAR), National Institute of Standards and Technology ( NIST), and other regulations

What the JD emphasized

  • Sarbanes Oxley (SOX)
  • SOX
  • ITGCs