Job Description Summary
The Sr Staff Digital Auditor will be responsible for ensuring the successful planning & execution of security assessments & audits across GE Aerospace. As a Senior Associate, this individual will serve as a leader and mentor to other team members and create strong working relationships within Cyber Security & other business functions to improve our Cyber Hygiene and help the business achieve its goals & objectives.
You will be responsible for leading the IT SOx controllership program and continuous auditing/monitoring activities with focus on defining, improving and managing the audit lifecycle partnering with Finance Controllership to develop standard work and execute scoping, audit plan schedule, sprints, walkthroughs, test of design, test of effectiveness, defect logging, interfacing with external auditors and collaborating with third party resources while tracking and monitoring of key metrics to ensure progress, provide visibility & support data-driven decisions. Additionally, this senior leader will be expected to collaborate, coach, and guide in-house junior and third-party resources to maximize their outputs and help grow their careers/skillsets. This position will give the opportunity to help define the future of the GE Aerospace by setting the foundations for a strong IT SOx program, improving our testing capabilities while helping the business to meet its regulatory requirements.
Job Description
Essential Responsibilities:
Mentor/Coach a team of security and audit specialists to perform IT security assessments.
Strong knowledge of IT controls and cyber security regulations (Preferably SOx & CMMC/NIST).
Own the relationship with the SLT to ensure alignment, speed & quality.
Collaborate with cross-discipline teams to establish an integrated plan to deliver team commitments.
Partner with and build strong working relationships with key stakeholders including but not limited to IT, Sourcing, Legal and functional teams.
Run cross-business security steering committees or “Working Groups.”
Partner with key industry peers to conduct benchmarking exercises to provide perspective on GE’s maturity and to proactively implement best practices.
Evaluate and communicate security risks and solutions to Business leadership.
Own & execute our continuous auditing/monitoring strategy, leverage automation to optimize auditing capabilities and resource utilization.
Develop and maintain standard processes, standard work, templates & SOPs while applying Continuous Improvement.
Own, develop and execute the IT SOx lifecycle.
Partner with Finance Controllership for an integrated SOx program, collaborate on scoping and defect analysis.
Responsible for the workpaper quality review and managing testing results.
Effectively communicate defects, observations, and improvement opportunities to improve our cyber posture and meet regulatory and contractual goals.
Lead, collaborate & develop Testing CoE resources.
Constantly evaluate resources against business priorities and identify when to shift resources and/or augment staff.
Design, create and maintain metrics, reporting, and tracking program to ensure processes working as designed and risks are being tracked.
Lead the definition and implementation of processes for coordination and communication between organizations and with internal and external stakeholders.
Continuously measures deliverables of self and team against scheduled commitments. Effectively balances different, competing objectives.
Identifies misalignments with goals, objectives, and work direction against the organizational strategy. Makes suggestions to course correct.
Ensures understanding of issues and presents clear rationale. Able to speak to mutual needs and win-win solutions. Uses two-way communication to influence outcomes and ongoing results.
Manages risk and dependencies between organizations.
Tracks and monitors program status and metrics to ensure milestones are met, and internal and external delivery commitments are met.
Ensures ongoing communication of progress against program objectives.
Proactively identifies and resolves issues and makes recommendations.
Ensures that the GE Aerospace processes abides by all defined cross-discipline standards and all compliance and regulatory requirements.
Provide constant feedback to team members.
Connect across functions, technologies to drive business outcomes.
Qualifications/Requirements:
Bachelor’s degree from accredited university or college with minimum of 5 years of professional experience OR Associates degree with minimum of 8 years of professional experience OR High School Diploma with minimum of 10 years of professional experience
Minimum 5 years of professional experience in IT
Note: Military experience is equivalent to professional experience
Eligibility Requirement:
-Legal authorization to work in the U.S. is required. We will not sponsor individuals for employment visas, now or in the future, for this job.
Fluent in English (Italian/French/Portuguese would be a plus).Desired Characteristics:
GE Leadership Program Graduates will get strong credit towards relevant work experience, commensurate to the program they have completed.
Experience with various industry regulations (SOx, CMMC, NIST, Export Control, Data Privacy Laws, DFARS, etc..)
Direct/indirect experience leading teams and contractors.
Experience interfacing with external auditors and regulators.
Strategist, ability to serve as a leader and embrace sense of ownership.
Visionary, creative and able to take on complex problems and turn them into solutions.
Technologist, passionate about using innovative technologies to deliver business outcomes.
Process/Data driven, problem solver and analytical dedicated to delivering results.
Demonstrates the initiative to explore alternate technology and approaches to solving problems.
Demonstrates awareness about competitors and industry trends with the ability to analyze impact of technology choices.
Skilled in breaking down problems, documenting problem statements and estimating efforts.
Experience and expertise of the Lean/Agile methodologies (e.g., Scrum, Problem Solving, Continuous Improvement, Kaizen, etc.).
Experience and expertise in using different process Automation/Data & Analytics technologies will be a plus (e.g., UiPath, Athena, Quick sight, Spotfire, Alteryx, etc.).
Experience with Governance Risk & Compliance & IT Management tools (e.g., Audit Board, ServiceNow, etc.).
Experience with ERP security controls (Preferably SAP & Oracle).
Experience with Cloud security controls.
Strong written and verbal communication skills.
Ability to develop partnership with cross functional teams and develop an inclusive & collaborative environment.
Experience working in remote / global teams.
Ability to manage and drive change across the organization.
Ability to motivate the team and drive clear accountability.
Persists to completion, especially in the face of overwhelming odds and setbacks.
Pushes self for results; pushes others for results through team spirit.
Ability to takes ownership of small and medium sized tasks and deliver while mentoring and helping team members.
This role is restricted to U.S. persons (i.e., U.S. citizens, permanent residents, and other protected individuals under the Immigration and Naturalization Act, 8 U.S.C. 1324b(a)(3)) due to access to export-controlled technology. GE will require proof of status prior to employment.
Additional Information
GE offers a great work environment, professional development, challenging careers, and competitive compensation. GE is an Equal Opportunity Employer (https://www.eeoc.gov/sites/default/files/2022-10/22-088_EEOC_KnowYourRights_10_20.pdf) . Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
GE will only employ those who are legally authorized to work in the United States for this opening. Any offer of employment is conditioned upon the successful completion of a drug screen (as applicable).
Relocation Assistance Provided: No
#LI-Remote - This is a remote position