Senior Cybersecurity Analyst - Sox Controls

Target Target · Retail · NCD-0375 Brooklyn Park, MN

This role is for a Senior Cybersecurity Analyst focused on SOX IT General Controls. The primary responsibilities include providing subject-matter expertise in SOX IT risks and controls, conducting assessments and testing of IT controls, supporting new application onboarding, advising on control design and remediation, and reporting risks to leadership. The role requires experience in cybersecurity, SOX programs, and ITGC, with a focus on ensuring financial transaction systems are well-controlled and meet SOX requirements.

What you'd actually do

  1. Provide subject-matter expertise in SOX IT risks and controls (access, change management, and operations)
  2. Conduct in-depth process assessments and technical testing of key IT controls
  3. Support onboarding of new applications and technology teams to the SOX program
  4. Advise on design of IT controls and actions to reduce information security risks
  5. Advise on remediation and perform impact assessments when IT deficiencies are identified

Skills

Required

  • 5+ years of information security or other relevant experience
  • In-depth knowledge and experience in SOX programs and application of ITGC
  • In-depth knowledge and experience testing the effectiveness of controls
  • Ability to identify problems, analyze data and present conclusions
  • Ability to lead down, across, and up in order to influence desired outcomes

Nice to have

  • Bachelor's degree
  • Relevant certifications like CISA, CISSP, CISM
  • Knowledge of cloud technology and security controls
  • Knowledge of operating system security (ex. Windows/Linux) and databases (ex. Mongo, Postgres)
  • Experience in agile teams and modern technologies (ex. microservice architecture)
  • Strong verbal, written and presentations skills
  • Ability to navigate ambiguity and develop trusted business relationships
  • Knowledge of information security frameworks such as ISO, HiTrust, or PCI

What the JD emphasized

  • SOX IT General Controls requirements
  • SOX IT risks and controls
  • ITGC