Manager, IT SOX and Risk Assurance
Listed on 2026-02-27
-
IT/Tech
IT Consultant, IT Business Analyst, IT Project Manager
ABOUT THE ROLE
We are looking for a highly motivated, strategic and solution-focused candidate to join our growing SOX and Risk Assurance team. In this role, you will support Peloton’s global IT control environment and support the execution of our IT SOX program, helping drive forward a culture of compliance, integrity and continuous improvement across the organization. The ideal candidate is passionate about IT risk management, thrives working collaboratively in a dynamic, fast-paced environment, and uses their creativity to inspire new ways of working and problem solving.
You will serve as a trusted business partner and the connective tissue between the business, internal audit, and our external auditors, leveraging your technical and internal controls expertise to help us continually assess and manage risks in the IT environment while also supporting business objectives. An ability to think critically and execute effectively while collaborating with business partners and control owners across the organization will be key to success in this role.
This role reports to the Senior Manager of IT SOX and Risk Assurance as part of our Finance organization. It is based onsite in our New York, NY office, and requires in-person collaboration each week (Tuesday through Thursday).
- Work within the Second Line of Defense (SOX) team, acting as an advisor to IT business teams and driving the design, implementation and monitoring of the company’s risk and control framework
- Assist in managing the execution of the IT SOX program, including the monitoring, application and reporting of IT General (ITGC) controls, IT Application (ITAC) controls, and key reports in accordance with SOX 404 requirements and corporate standards.
- Design, implement, and monitor UAR processes to ensure that user access is appropriate and complies with organizational policies and regulatory requirements while ensuring UARs are performed timely, completely and accurately
- Analyze processes, risks, and controls related to the IT environment to identify improvement opportunities, recommend solutions that are pragmatic and achievable, and partner with management to resolve deficiencies.
- Identify and drive opportunities for automation and leveraging data analytics within the audit process to gain efficiencies and increase audit effectiveness; cohesively bridge the gap between upstream and downstream processes by increasing reliance on key systems and reports.
- Perform comprehensive IT risk assessments to identify potential compliance risks and vulnerabilities. Develop and implement risk mitigation strategies to address any identified risks.
- Evaluate new system implementations for control considerations, and partner with system owners to ensure appropriate IT controls are designed and in place prior to the system’s go live.
- Assist with SOC-1 report assessments including providing guidance and recommendations to ensure compliance with corporate standards and SOX requirements.
- Provide IT expertise and support on various special projects and company-wide initiatives, ensuring compliance with relevant regulations and standards, including assisting in the development and implementation of IT policies and procedures to support business objectives.
- Understand the importance of implementing emerging technologies into Peloton’s ecosystem such as AI and ML while also being cognizant of their inherent risks.
- Develop and deliver high quality and engaging training programs for control owners and other stakeholders to support their understanding and compliance with SOX requirements.
- Collaborate with internal and external auditors to facilitate SOX audits and ensure timely completion and resolution of issues; partner with the business process SOX team to align on scoping and audit requirements
- Prepare and present executive level communications on IT SOX and Compliance work streams, including Audit Committee updates and recommendations
- Stay current with industry best practices, regulatory changes, and emerging trends in IT compliance
- Proactively identify areas of improvement on an ongoing basis, providing guidance on best practices and offering…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).