Talent.com
Director, External Audit Engagement
Director, External Audit EngagementFidelity Investments • Merrimack, NH, US
Director, External Audit Engagement

Director, External Audit Engagement

Fidelity Investments • Merrimack, NH, US
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Job Description

Job Description :

Director, External Audit Engagement

The Role

The Fidelity Enterprise Cybersecurity Governance, Risk and Compliance (GRC) Product Area is seeking a Director, External Audit Engagement to play a leadership role within ECS to ensure successful engagements with independent third-party audit firms. Such third-party firms are hired to assess Fidelity’s control environment and attest to the design and operation of cybersecurity controls, following industry-standard frameworks. The Director will introduce ECS product areas to the requirements within the certification frameworks and will work with line managers to ensure that controls are designed in accordance with framework requirements and are operating in accordance with defined procedures. As 3rd party assessments are conducted, the Director will assist product area teams as needed with gathering evidence to demonstrate control effectiveness and will work to resolve or explain potential exceptions. The Director will oversee the timely issuance of draft and final reports attesting to Fidelity’s cybersecurity control environment. Throughout the engagements the Director will work closely with Enterprise Technology and Risk Analysis (ETRA) External Audit Center of Excellence and with relevant BU information technology organizations.

Success in this role will be demonstrated by well-managed external audit engagements resulting in unqualified opinions and / or certifications of Fidelity’s cyber control environment. These audit engagements and frameworks cover SOC1 / 2 / 3, ISO 27001, NIST CSF / 800-53, HITRUST, and PCI-DSS, among others. The successful incumbent will also have familiarity with laws and regulations which impose information security requirements on Fidelity’s businesses, including HIPAA, GLBA, FFIEC, CFTC, and GDPR, to name a few. This will permit the successful incumbent to work with colleagues in GRC to coordinate compliance activities across ECS product areas. By working across Fidelity and achieving unqualified reports from 3rd party assessors, the External Audit Engagement team assures clients that they can select Fidelity with confidence to administer company benefit plans and to process and safeguard customer transactions and accounts.

The Expertise and Skills You Bring

Proven knowledge of IT risk and cybersecurity functions and how they contribute to Fidelity’s mission and success.

Extensive knowledge of audited cybersecurity frameworks and standards, including AICPA’s SOC 1, SOC 2, and SOC 3, including all SOC 2 trust principles; Payment Card Industry’s Data Security Standard; HITRUST; ISO / IEC 27000 family

Experience and knowledge managing projects end-to-end, with demonstrable ability to communicate progress effectively across multiple lines and levels.

Understanding of NIST Cybersecurity Framework core standards

Bachelor’s degree in a technology or a computer science subject area a plus

7+ years working in IT assurance for a 'Big 4' or similar audit firm and experience with Fortune 500 clients.

Cybersecurity certifications a plus

  • Prior experience in a cybersecurity role (policy, operations, technology) or in an IT risk role
  • Ability to quickly establish trust and a positive rapport with ECS business partners and BU stakeholders.

Independent worker; high sense of ownership; 'focus and finish' attitude.

Ability to influence product areas to prioritize external assessments in product roadmaps and backlogs.

Ability to manage multiple priorities independently; proactive approach to defining issues and resolving open questions.

Ability to effectively facilitate and follow up on business meetings, present information to groups with the appropriate degree of formality.

React quickly to requests; bring a sense of urgency to respond to inquiries.

Data analysis and synthesis; working knowledge of MS-Excel

The Value You Deliver

Help to win and retain business for Fidelity by demonstrating the depth and breadth of Fidelity’s cybersecurity program.

Manage third-party assessments in a manner which minimizes risk for Fidelity.

Review exceptions or findings on final reports and support their ultimate remediation.

Center of excellence and expertise for external audit processes, value and outcomes

The Team

Members of the Compliance Center of Excellence within the GRC Product Area are charged with knowing the external requirements and standards to which Fidelity is held. They make certain that Fidelity ECS has appropriate policies and controls which align to these standards, and they work with Product Area teams to produce evidence supporting the policies and controls. The external requirements include federal and state laws, regulations, guidance, best practices, and industry expectations. Members of the team engage with external assessors and examination staff periodically to provide evidence of control.

The base salary range for this position is $126,000-255,000 USD per year.

Placement in the range will vary based on job responsibilities and scope, geographic location, candidate’s relevant experience, and other factors.

Base salary is only part of the total compensation package. Depending on the position and eligibility requirements, the offer package may also include bonus or other variable compensation.

We offer a wide range of benefits to meet your evolving needs and help you live your best life at work and at home. These benefits include comprehensive health care coverage and emotional well-being support, market-leading retirement, generous paid time off and parental leave, charitable giving employee match program, and educational assistance including student loan repayment, tuition reimbursement, and learning resources to develop your career. Note, the application window closes when the position is filled or unposted.

Please be advised that Fidelity’s business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirement-related financial activities and the rules and regulations of numerous self-regulatory organizations, including FINRA, among others. Those laws and regulations may restrict Fidelity from hiring and / or associating with individuals with certain Criminal Histories.

Most roles at Fidelity are Hybrid, requiring associates to work onsite every other week (all business days, M-F) in a Fidelity office. This does not apply to Remote or fully Onsite roles.

Certifications : Category : Information Technology

[job_alerts.create_a_job]

Director Engagement • Merrimack, NH, US

[internal_linking.related_jobs]
Director of Storm EW Product Management Group

Director of Storm EW Product Management Group

BAE Systems • Nashua, NH, US
[job_card.full_time]
Director Of Storm Ew Product Management Group.Because this role involves a combination of collaborative / in-person and independent work, it will take the form of a hybrid work format, with time spli...[show_more]
[last_updated.last_updated_30] • [promoted]
Associate Director, Internal Communications & Employee Experience

Associate Director, Internal Communications & Employee Experience

UniFirst • Wilmington, MA, US
[job_card.full_time]
Associate Director, Internal Communications & Employee Experience.Shape How 16,000 Team Partners Connect, Engage, and Thrive. At UniFirst, our people are at the heart of everything we do.As a $2 bil...[show_more]
[last_updated.last_updated_30] • [promoted]
Assistant Director of Positive Options

Assistant Director of Positive Options

Community Options, Inc. • Nashua, NH, US
[job_card.full_time]
Assistant Director of Positive Options.The Assistant Director of Positive Options uses best practices and technology within a community-based setting to teach people with developmental disabilities...[show_more]
[last_updated.last_updated_variable_days]
Performance Audit Senior Consultant (Remote)

Performance Audit Senior Consultant (Remote)

Blue Cross Blue Shield Association • Manchester, NH, United States
[filters.remote]
[job_card.full_time]
The role ensure Plans' operations handle customer interactions accurately and promptly, leaving a positive brand impression. Execute audit programs and validate reported results.Present updates and ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Director, Revenue Enablement

Director, Revenue Enablement

Rightworks LLC • Nashua, NH, US
[job_card.permanent]
[filters_job_card.quick_apply]
Rightworks offers the only intelligent cloud purpose-built for accounting firms and professionals.Backed by award-winning support, our fully managed IT and applica...[show_more]
[last_updated.last_updated_30]
Director of Corporate Development and Strategy

Director of Corporate Development and Strategy

ZOLL Medical Corporation • Chelmsford, MA, US
[job_card.full_time]
At ZOLL, we're passionate about improving patient outcomes and helping save lives.We provide innovative technologies that make a meaningful difference in people's lives. Our medical devices, softwar...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Manager, Internal Audit

Senior Manager, Internal Audit

Onto Innovation • Wilmington, MA, US
[job_card.permanent]
Senior Manager, Internal Audit.Onto Innovation is a leader in process control, combining global scale with an expanded portfolio of leading-edge technologies that include : 3D metrology spanning the...[show_more]
[last_updated.last_updated_30] • [promoted]
Group Director

Group Director

Morgan Stanley • Manchester, NH, US
[job_card.full_time]
Group Directors provide exceptional service to our clients and support Financial Advisor(s) / Private Wealth Advisor(s) / teams on a daily basis. The Group Director is a senior service level position fo...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Director, Account Management

Director, Account Management

AmerisourceBergen Corporation (Cencora) • Manchester, NH, United States
[job_card.full_time]
Our team members are at the heart of everything we do.At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on ...[show_more]
[last_updated.last_updated_1_day] • [promoted]
Associate Director of the Enrollment Management Center

Associate Director of the Enrollment Management Center

InsideHigherEd • Lowell, Massachusetts, United States
[job_card.full_time] +1
About Middlesex Community College : .Middlesex Community College (MCC), established in 1970, provides access to affordable education to prepare individuals for success and lifelong learning.We promot...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Director of Integrations (remote)

Director of Integrations (remote)

Johnson Controls • Westford, Massachusetts, USA
[filters.remote]
[job_card.full_time]
At Johnson Controls we transform the environments where people live work learn and play.From optimizing building performance to improving safety and enhancing comfort we drive the outcomes that mat...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Remote Finance Director - AI Trainer ($50-$60 / hour)

Remote Finance Director - AI Trainer ($50-$60 / hour)

Data Annotation • Nashua, New Hampshire
[filters.remote]
[job_card.full_time] +1
We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the quality of ...[show_more]
[last_updated.last_updated_30] • [promoted]
Director of AI

Director of AI

Cerence Inc. • Burlington, MA, United States
[job_card.full_time]
Director of AI page is loaded## Director of AIlocations : Remote - USAtime type : Full timeposted on : Posted 30+ Days Agojob requisition id : R0005754## • •A Moving Experience.Cerence AI is the...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Director, Internal Audit

Director, Internal Audit

Entegris • Billerica, MA, United States
[job_card.temporary]
Here at Entegris, we use advanced science to enable technologies that transform the world, and we are seeking employees who have the drive to continue that mission. Vice President of Internal Audit ...[show_more]
[last_updated.last_updated_30] • [promoted]
Associate Director of Business Analytics

Associate Director of Business Analytics

Southern New Hampshire University • Hooksett, NH, United States
[job_card.full_time]
Southern New Hampshire University is a team of innovators.Individuals who believe in progress with purpose.Since 1932, our people-centered strategy has defined us - and helped us grow a team that n...[show_more]
[last_updated.last_updated_1_day] • [promoted]
FAST Labs Campaign Strategy Director

FAST Labs Campaign Strategy Director

BAE Systems • Merrimack, NH, US
[job_card.full_time] +1
The FAST Labs Campaign Director will lead the shift to mission-focused campaigns in the FAST Labs Business Area in the BAE Systems Electronic Systems Sector, reporting directly to the Vice Presiden...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Audit Manager

Audit Manager

Gpac • Dracut, Massachusetts, United States
[job_card.full_time] +1
[filters_job_card.quick_apply]
Gpac has partnered with top CPA firms across the United States and Canada that are looking for top talent to add to their team on a permanent-full-time basis! .We are seeking Audit M...[show_more]
[last_updated.last_updated_30]
Associate Director of FP&A ONSITE

Associate Director of FP&A ONSITE

RTX • Tewksbury, Massachusetts, USA
[job_card.full_time]
MA134 : Innovation Dr Tewks Bdg 400 836 North Street Building 400 Tewksbury MA 01876 USA.Person or Immigration Status Requirements : . At Raytheon the foundation of everything we do is rooted in our va...[show_more]
[last_updated.last_updated_variable_days] • [promoted]