Financial Controller: SOX & Internal Controls
Listed on 2026-07-14
-
Finance & Banking
Financial Compliance, Risk Manager/Analyst -
Management
Risk Manager/Analyst
- Location:
Cape Town (must be willing to travel locally) - Workplace Type:
Hybrid - Skill Level: Senior Management Level
- Reports To:
Chief Financial Officer
Company Brand:
Lesaka Enterprise Division
Lesaka Technology is dual-listed on the Nasdaq and Johannesburg Stock Exchange (JSE), and as such is subject to the requirements of the Sarbanes‑Oxley Act of 2002 (SOX), including Sections 302 and 404. The Financial Controller: SOX & Internal Controls is a senior leadership role within the Lesaka Enterprise Division, carrying full accountability for the design, implementation, maintenance, and ongoing compliance of the SOX internal control framework across the division.
The incumbent will serve as the subject‑matter expert and functional lead for all matters relating to internal controls over financial reporting (ICFR), risk and control matrices, control testing, deficiency management, and SOX 404 attestation. This role operates at the intersection of finance, internal audit, and governance, requiring a candidate who combines deep technical SOX expertise with strong commercial acumen and stakeholder engagement capability.
The role requires a qualified professional with demonstrable experience in SOX programme design and implementation, gained either within a Big 4 audit firm or in a listed commercial environment. The Financial Controller: SOX & Internal Controls reports to the CFO and engages directly with the Group Internal Audit function, external auditors, and the Audit Committee on all SOX‑related matters.
The Financial Controller: SOX & Internal Controls responsibilities include the following:
Key Performance Areas- SOX Programme Design and Implementation
- Lead the end‑to‑end design, build‑out, and implementation of the SOX internal controls programme for the Lesaka Enterprise Division.
- Establish and maintain the SOX scoping methodology, determining which processes, systems, and accounts are in‑scope based on materiality and risk.
- Develop and maintain the Risk and Control Matrix (RCM) for all in‑scope financial reporting processes, ensuring controls are appropriately designed to address identified risks.
- Define control objectives, control activities, and evidence requirements across key process areas including Revenue, Procure‑to‑Pay, Financial Close, Treasury, Payroll, and IT General Controls (ITGCs).
- Drive the initial SOX implementation roadmap and manage the programme to completion within agreed timelines, engaging stakeholders across finance, operations, and IT.
- Ensure the SOX framework is aligned to the COSO Internal Control – Integrated Framework and Nasdaq/SEC regulatory requirements.
- Internal Control Environment
- Own and maintain the Enterprise Division's internal control environment, ensuring controls are appropriately designed, documented, and operating effectively at all times.
- Conduct periodic process walkthroughs with control owners to validate that documented controls reflect actual operating practice.
- Identify control gaps, design weaknesses, and operating deficiencies; assess their severity and drive timely remediation.
- Maintain a centralised control repository and ensure all process narratives, flowcharts, and control documentation are current and complete.
- Embed a strong control‑awareness culture across the Enterprise Division by providing training, guidance, and ongoing support to control owners and process leads.
- Coordinate with IT and systems teams on the design and assessment of IT General Controls (ITGCs) and IT Application Controls (ITACs) relevant to financial reporting.
- SOX 302 and 404 Compliance
- Manage the annual SOX 404 assessment process, including control testing planning, scheduling, execution oversight, and results reporting.
- Coordinate and support the quarterly SOX 302 sub‑certification process across the Enterprise Division, ensuring disclosures are accurate and supported.
- Oversee the preparation of management's assessment of ICFR for inclusion in the annual report on Form 20‑F or equivalent Nasdaq/SEC filing.
- Ensure timely identification, documentation, classification, and remediation of control deficiencies (significant deficiencies and material weaknesses).
- Main…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: