Talent.com
Canon
IT Risk & Compliance DirectorCanon • Amstelveen, The Netherlands
IT Risk & Compliance Director

IT Risk & Compliance Director

Canon • Amstelveen, The Netherlands
7 dagen geleden
Functieomschrijving
Overview

Canon is hiring an IT Risk & Compliance Director to provide overall leadership and accountability for IT Compliance across the Canon EMEA organisation, including the definition, implementation, audits and improvement of IT Controls frameworks (User Access Management, Identity Access Management, GDPR and Quality Assurance).


Zorg ervoor dat u de volgende details zorgvuldig leest voordat u solliciteert.

Lead and manage IT interaction and communication with key internal and external stakeholders: Finance, HR, Internal Control, Internal Audit as well as External Auditors in the context of SoX compliance, financial year closure and statutory reporting.

Responsibilities

IT Internal Control Framework including User Access Management Framework:

  • Ownership of defining, reviewing and updating of IT Internal Control Framework and UAM Framework
  • Set all controls and define the control owner in IT Delivery, IT Operations and associated Business Operations
  • Successfully obtain the approval of the external auditor at the beginning of the annual audit, as a fundamental control design to assess
  • Ownership of implementing UAM Framework, including communication and stakeholder management with the Canon EMEA organisation

Identity Access Management Owner:

  • Ownership of IAM within Canon EMEA
  • Lead a fundamental revision of the IAM system and associated processes in IT Operations and Business Units/Functions (including HR)
  • Maintain the IAM as the foundation of the Access Management
  • Responsible for setups/controls through the IAM process
  • Lead and manage the process for Business Unit/Function stakeholders to approve the IAM setup under their remit, with full understanding of good practice and appropriate setup

Governance:

  • Ownership of IT Governance Framework (Charter)
  • Ensure an IT Governance Framework (Charter) is defined, current, monitored and communicated. Ensure the IT Governance Framework is aligned with internal/external stakeholders and supporting the IT strategy and initiatives.
  • Ensure set-up and execution and reporting on internal IT and external IT service providers are compliant with overall IT governance

GDPR:

  • Ensure GDPR compliancy in IT Application systems
  • Ensure the correction and prevention of non-compliancy in IT Applications, IT Organisation and all the associated processes
  • Work closely with CDO and maintain the Data Privacy Charter

External Auditor Support:

  • Be the owner of the IT relationship with External Auditors
  • Organise all requests/questions from external auditor to IT Governance Committee
  • Support Business Users to understand and execute their responsibilities related to IT Application Control (ITAC)
  • Centrally manage all the communication from IT with external auditors
  • Place all required explanations & discussions and make the recommendation to the SVP and VP of IT for the final judgement as Canon IT on the deficiency

Assess & Approve:

  • Risk Control Matrix (RCM) in IT - Define Control Owner & Control Executer
  • SoD (Segregation of Duties) & Roles
  • Owner of System / Standard User Access Group
  • User Access Group
  • User Access Assignment (Check against SoD, Assignment through FAM)
  • Internal Produced by the Entity (IPE’s) in Project
  • Mitigation & Remediation plan & implementation
  • Compliancy assessment and approval to all the delivery project through Quality Gates

Audit:

  • IT General Control (ITGC) & IT Application Control (ITAC) process/execution
  • Audit all related processes in IT and Business
  • Identify the deficiencies, instruct corrections, ensure the implementation (remediation) and report to Sr. Management

Periodic Review:

  • Business & IT User Access
  • SoD Scan
  • Leavers

Control Testing:

  • Conduct internal testing and proving (right or wrong) upon IT Internal Control Framework
  • Assess the materiality of any Deficiency incident and ensure implementation of mitigation and remediation. Ensure the correct production and collation of evidence.

Quality Assurance of the Compliance documentation:

  • Ownership of documentation regarding the required quality of control execution
  • Quality of control and the execution

Competence:

  • Assess the competence of the organisation/units in the IT upon request and periodically for the IT Strategy. Keep the standard current and application to real operations.
  • Frameworks include but are necessarily limited to COSO, ITIL, CobiT, IT-CMF, CMMi, Prince2, MSP and relevant ISO standards.

People Leadership:

Lead, manage, recruit, develop and coach team members to be a high-performing, motivated and knowledgeable team. xnkfpon

IT Risk Management:

  • Lead, oversee and maintain IT risk management framework
  • Ensure development, implementation, and maintenance of IT Risk policies, standards, and procedures to manage IT risks effectively
  • Ensure regular IT risk assessments are conducted
  • Ensure the IT Risk Register is continuously maintained, updated, and aligned to ensure leadership visibility and judgement on risks, and mitigation actions
  • Collaborate with IT, security, legal, and Regional Risk to address and mitigate identified risks
  • Ensure creation of IT risk reporting to senior leadership aligning with regional risk reporting requirements and regulatory expectations

Review and challenge IT Strategy and IT Division MTPs, and provide feedback to IT leadership.

Qualifications

Skills and knowledge required:

  • In-depth knowledge of best practices in IT Governance and IT Compliance in particular COBIT, IT-CMF and COSO
  • Good understanding of ITIL, CMMi and relevant ISO chapters
  • ITIL Foundation certified
  • ISACA certified (2 out of 4)
  • IT-CMF certified (Core & Assessor)
  • General understanding of IT infrastructure components supporting IT Services
  • Knowledge of definition and reporting on KPI’s
  • Strong leadership capability to influence and ensure others comply with EIT standards of practice (frameworks), controls, policies and quality assurance principles
  • Collaborates with others to achieve a common goal; authoritative leadership and decision-making when required
  • Provide proactive recommendations for continuous improvement (quality-driven)
  • Experience of defining, leading and driving broad-reaching process/policy reviews and audits
  • Good understanding of the Canon Business
  • Significant professional experience in IT, including leadership of people/projects
  • Excellent communication and presentation skills, including presenting to and influencing at senior leadership level

Canon Leadership Principles

  • Inspires a shared vision
  • Is courageous and has conviction
  • Ensures delivery of the outcome
  • Understands the customer
  • Drives growth and innovation
  • Inspires and motivates others
  • Collaborates building trust-based relationships
  • Develops self, others and the organisation

Maak een vacature-alert aan voor deze zoekopdracht

IT Risk & Compliance Director • Amstelveen, The Netherlands

Vergelijkbare banen

Senior Consultant IT Risk & Control

PwC Nederlandamsterdam, noord holland, Netherlands

Job Description Summary /h3 pAs a Senior Consultant Risk Control, you will have the opportunity to make a meaningful impact on corporate and public organizations, as well as society.You will enga... Laat meer zien

 • Gesponsord

Senior Security Risk & Compliance Leader

KPN New BusinessAmsterdam, The Netherlands

KPN New Business zoekt een Senior Security Risk Manager die verantwoordelijk is voor het toezicht op risico’s op het gebied van security en continuïteit.Bekijk het functieoverzicht hieronder.Als u ... Laat meer zien

 • Gesponsord

Head of Compliance

Ink RecruitmentAmsterdam, The Netherlands

Owner/Director – Ink Recruitment – Corporate Governance Team.Controleer hieronder of u heeft wat nodig is voor deze functie en, zo ja, solliciteer dan zo snel mogelijk.Rapidly expanding Global Brok... Laat meer zien

 • Gesponsord

IT Program Director

ITC InfotechAmsterdam, The Netherlands

ITC Infotech is a leading global technology services and solutions provider, led by Business and Technology Consulting.ITC Infotech provides business-friendly solutions to help clients succeed and ... Laat meer zien

 • Gesponsord

Senior Consultant IT Risk Management & Compliance (m/v/x)

Eraneos NetherlandsAmsterdam, The Netherlands

Til risk & digital compliance naar een hoger niveau!.Is dit de volgende stap in uw carrière? Ontdek of u de juiste kandidaat bent door het volledige overzicht hieronder te lezen.Heb jij ervarin... Laat meer zien

 • Gesponsord

Director IT Operations

BME - Building Materials EuropeAmsterdam, The Netherlands

Get AI-powered advice on this job and more exclusive features.Vaardigheden, ervaring, kwalificaties: als u de juiste match bent voor deze functie, zorg er dan voor dat u vandaag nog solliciteert.Th... Laat meer zien

 • Gesponsord

IT Risk & Compliance Director

Canonamstelveen, noord holland, Netherlands

Overview /h3pCanon is hiring an bIT Risk Compliance Director /b to provide overall leadership and accountability for IT Compliance across the Canon EMEA organisation, including the definition, imp... Laat meer zien

 • Gesponsord

IT Director

PFSCMwoerden, utrecht, Netherlands

Information Technology Director /p pREPORTS TO: PFSCM Director /p pLOCATION: PMO US, Arlington, PMO-NL, Woerden /p pSTATUS: Full-time /p h3Overall responsibilities /h3 pThe IT Director reports to t... Laat meer zien

 • Gesponsord

Senior Director, Enterprise Risk Management

Airwallexamsterdam, noord holland, Netherlands

Location /h3pNL - Amsterdam; UK - London /ph3Employment Type /h3pFull time /ph3Department /h3pRegulatory Compliance, Risk /ph3bAbout Airwallex /b /h3pAirwallex is the only unified payments and fin... Laat meer zien

 • Gesponsord

Senior Operational & IT Risk Leader

Care Professionalsamsterdam, noord holland, Netherlands

Care Professionals seeks an experienced professional based in Gelderland, Netherlands, for a role focused on risk management within regulated financial sectors.You will leverage at least 7 years of... Laat meer zien

 • Gesponsord

Director, Enterprise Risk Management

Tradewebamsterdam, noord holland, Netherlands

About Tradeweb /b Tradeweb is a global leader in electronic trading for rates, credit, equities, and money markets.As financial markets become increasingly interconnected, our technology enables ef... Laat meer zien

 • Gesponsord

Global Head, Enterprise Risk Management

airwallexAmsterdam, The Netherlands

Zorg ervoor dat u de volledige omschrijving hieronder leest en solliciteer direct als u ervan overtuigd bent dat u aan alle eisen voldoet.Regulatory & Compliance, Risk.Airwallex is the only uni... Laat meer zien

 • Gesponsord

IT Risk & Compliance Director

Canon EMEAamstelveen, noord holland, Netherlands

Overview /h3pOverall leadership and accountability for IT Compliance across the Canon EMEA organisation, regarding the definition, implementation, audits and improvement of IT Controls frameworks, ... Laat meer zien

 • Gesponsord

IT Risk Program Manager

Levy Professionalsamsterdam, noord holland, Netherlands

An exciting opportunity for a seasoned IT Risk Professional to lead a major transformation programme within a large, international organisation.This role focuses on modernising IT risk management p... Laat meer zien

 • Gesponsord

Head of Information Security | Strategy, Risk & Compliance

Hanab HoldingAmsterdam, The Netherlands

Klaar om te solliciteren? Voordat u dat doet, zorg ervoor dat u alle details met betrekking tot deze baan in de onderstaande omschrijving leest.Je bent verantwoordelijk voor het waarborgen van de d... Laat meer zien

 • Gesponsord

Tech Risk & Compliance Director [Interim]

riverflexAmsterdam, The Netherlands

Director, Tech Risk & Compliance.Contract | Hybrid (Europe, with travel as required) | 6 months with possible extension.De verwachte ervaring van sollicitanten, evenals extra vaardigheden en kw... Laat meer zien

 • Gesponsord

Tech Risk & Compliance Director — Hybrid EU (6m)

riverflexAmsterdam, The Netherlands

Riverflex is seeking a Director, Tech Risk & Compliance to lead compliance initiatives for a major European FMCG group.Ligt uw cv klaar? Zo ja, en bent u ervan overtuigd dat dit de functie voor... Laat meer zien

 • Gesponsord

Senior Director, Enterprise Risk Management

airwallexAmsterdam, The Netherlands

Zorg ervoor dat u de volledige omschrijving hieronder leest en solliciteer direct als u ervan overtuigd bent dat u aan alle eisen voldoet.Regulatory & Compliance, Risk.Airwallex is the only uni... Laat meer zien

 • Gesponsord

Senior Risk Manager

Lloyds Bank NLAmsterdam, The Netherlands

Senior) Risk Manager – Policy Oversight (Data privacy, Information Security and Data management).Denkt u de juiste kandidaat te zijn voor de volgende functie? Solliciteer dan na het lezen van de vo... Laat meer zien

 • Gesponsord

Security Operations & Corporate IT Leader

EPI CompanyAmsterdam, The Netherlands

European Payments Initiative (EPI) is seeking a Head of Security Operations and Corporate IT to scale security and IT services across a pan‑European business.Bekijk het functieoverzicht hieronder.A... Laat meer zien