Specialist Technology Compliance
Position summary
Introduction
Job description
Manage Technology Compliance - Monitor and ensure compliance to the TI governance model, methodologies, policies, processes, and standards; Provide compliance assurance inputs and insights to TI planning; Assist in the development and implementation of governance frameworks, i.e. policies, processes, standards, and business requirements to support technology compliance; Conduct regular compliance audits to ensure adherence to regulatory standards and internal policies; Perform User Access Reviews to evaluate and validate user access rights and permissions; Identify and address compliance issues in technology processes and systems in collaboration with cross-functional teams; Contribute to the development and maintenance of documentation related to technology compliance processes and controls; Assist in the resolution of compliance-related incidents and vulnerabilities; Implement any changes in legal, regulatory and external contractual requirements relevant to the use of technology resources and the processing of information within the business and the technology operations of the enterprise; Identify and assess all potential compliance requirements and the impact on TI activities in areas such as data flow, privacy, internal controls, financial reporting, industry-specific regulations, intellectual property, health and safety; Assess the impact of TI-related legal and regulatory requirements on third-party contracts related to TI operations and service providers; Define and communicate the consequences of non-compliance; Obtain internal legal counsel, when required, on changes to relevant laws, regulations and standards; Maintain an up-to-date log of all relevant legal, regulatory and contractual requirements; the impact thereof, and required action; Maintain an integrated register of overall external TI compliance requirements for the enterprise; Obtain confirmation of compliance with internal policies from business and IT process owners and unit heads on a regular basis; Perform regular (and, when required, independent) internal and external reviews to assess levels of compliance; Integrate reporting on legal, regulatory and contractual requirements at an enterprise-wide level, involving all business units; Monitor and report on non-compliance issues and investigate the root cause where necessary; Stay updated on industry regulations, legislation, and standards related to technology security and compliance.
Manage Technology Assurance - Develop and maintain the technology compliance programme; Develop, implement and monitor compliance requirements related to the technology Regulatory Universe; Facilitate all internal and external audits and findings, ensuring the development of mitigating actions, monitoring the implementation thereof and obtaining evidence of the successes achieved; Ensure effective and efficient communication with all stakeholders; Conduct monitoring as per the agreed compliance coverage plan; Monitor and maintain all compliance registers; Compile a monthly monitoring schedule as per the monitoring plan and report findings to the Manager; Liaise with internal departments, co-ordinate meetings with line managers and provide monitoring feedback; Define the objective of the assurance initiative in collaboration with identified stakeholders of the assurance initiative; Ensure that the objectives of the assurance engagement consider all three value objective components, namely: delivering benefits that support strategic objectives; minimise the risk that strategic objectives are not achieved, and optimizing resource levels required to achieve strategic objectives; Define a detailed work program for the assurance initiative, structured according to the management objectives and governance components in scope; Define all governance components in scope of the review, that is, the principles, policies and frameworks; processes; organizational structures; culture, ethics and behavior; information; services, infrastructure and applications; people, skills and competences as directed by the Manager; Refine the scope of the assurance engagement, based on available resources; Execute the planned assurance initiative. Validate and confirm the design of the internal controls in place. Additionally, and specifically in internal audit assignments, consider the cost-effectiveness of the governance component design; Provide positive assurance opinions, where appropriate, and recommendations for improvement relating to identified operational performance, external compliance and internal control weaknesses.
Governance, Compliance, Risk Management & Reporting - Develop, implement, and communicate the function’s policies, processes and procedures to support effective governance and compliance; Facilitate internal and external audit processes; Assist in the preparation and response to external audits and assessments; Track and ensure that all audit findings are addressed effectively and timeously; Generate management and other required reports timeously.
Stakeholder Relations Management - Develop and maintain sound relationships with key service providers to support ongoing collaboration and alignment; Monitor and provide regular reports on SLA compliance when required whilst identifying areas of inefficiency.
Financial Management - Provide inputs into to the TI budget development process; Assist in managing expenditure in line with business needs and priorities, and within set financial parameters; Monitor and ensure efficient utilisation of the approved budget; Monitor the costs involved while maintaining quality of service; Provide required reports on utilisation of the budget, including possible deviations; Identify and report potential irregular. fruitless and wasteful expenditure; Provide the required supporting documents timely to enable effective auditing processes.
Minimum requirements
Minimum Formal Qualifications:
• B.Sc./B. degree in Electrical /Electronic Engineering, or B-Degree in Computer Science/ Computer Studies/ Information Technology, or related field
• ECSA Professional Registration as an Engineer will be an advantage
• ISACA Professional Registration will be an advantage
Minimum Years of Experience:
• Minimum 3 years’ experience is required in information technology compliance within an electronics operations environment
• Knowledge and understanding of technology compliance, governance, systems and IT projects
• Experience in the implementation of IT governance frameworks
• Strong business acumen, including ability to interpret and apply company policies to effectively achieve objectives
If you have not been contacted within 3 weeks of the closing date of this advert, please accept that your application was unsuccessful.
ATNS is an equal opportunity employer that strives to achieve a diverse workforce broadly representative of our people. This position will be filled in line with the objectives of ATNS’ Employment Equity Plan and therefore candidates from designated groups as per the Employment Equity Act of 1998, are encouraged to apply.
People with disabilities are encouraged to apply.