Director, IT SOX Compliance
Listed on 2025-11-30
-
IT/Tech
Cybersecurity, IT Business Analyst
Rippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.
By connecting every workforce system to a single source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take onboarding, for example. With Rippling, you can just click a button and set up a new employee’s payroll, health insurance, work computer, and third-party apps—like Slack, Zoom, and Office 365—all within 90 seconds.
Based in San Francisco, CA, Rippling has raised $1.9B from the world's top investors—including Kleiner Perkins, Founders Fund, Sequoia, Bedrock, and Greenoaks—and was named one of America's best startup employers by Forbes (#12 out of 500)
We prioritize candidate safety. Please be aware that all official communication will only be sent from addresses.
About the roleAt Rippling, our technology is at the core of how businesses manage their workforce. As the Director, IT SOX Compliance, you will play a pivotal role in ensuring the integrity, security, and compliance of our critical IT systems and data that underpin our financial operations. This role will be a critical part of the Accounting and Finance organization, reporting directly to the Controller.
You will be instrumental in building and scaling a robust IT SOX compliance framework that meets regulatory requirements and proactively manages IT risks related to financial reporting. Your expertise will directly contribute to Rippling's continued growth and reputation by safeguarding our systems and ensuring trust with our customers and stakeholders. This is a critical role that will shape our IT compliance posture as we continue to innovate and expand.
- Develop, implement, and maintain Rippling's IT SOX compliance strategy and framework, ensuring alignment with business objectives and regulatory requirements.
- Lead the identification, assessment, and mitigation of IT risks across all IT systems and processes, with a strong focus on financial reporting controls.
- Own and manage the design, implementation, and testing of IT General Controls (ITGCs) and automated application controls in support of SOX compliance.
- Own and manage all aspects of System and Organization Controls (SOC) audits, including readiness, execution, and reporting.
- Collaborate closely with external auditors, providing necessary documentation, evidence, and support for IT SOX audits and other compliance assessments.
- Support and address questions from customer escalation and support teams regarding customer issues related to their SOX compliance.
- Partner explicitly with R&D and Product leads to embed IT SOX compliance capabilities and controls directly into Rippling's products and new features from the design phase.
- Support the relationship and process for potential go-to-market partnerships with major accounting and consulting firms for client cross-referrals, primarily focusing on pre-IPO companies.
- Establish and manage IT SOX compliance policies, procedures, and standards to ensure consistent application of controls and best practices.
- At least 10 years of progressive experience in IT audit or IT compliance roles, with a strong focus on SOX compliance.
- Demonstrated expertise in designing, implementing, and assessing IT General Controls (ITGCs) and application controls in a SOX compliant environment.
- Deep understanding of common IT control frameworks as they pertain to IT SOX compliance in a SaaS environment, with a strong emphasis on the COSO framework.
- Proficiency with GRC tools and technologies used to manage risk and compliance programs, specifically in the context of IT SOX.
- Strong knowledge of cloud computing environments (e.g., AWS) and associated security and compliance considerations relevant to SOX.
- Excellent written and verbal communication skills, with the ability to articulate complex technical and compliance concepts to both technical and non-technical audiences.
- Proven ability to lead cross-functional initiatives and influence stakeholders, particularly in R&D, at all levels of the organization.
- Bachelo…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).