SOX ITAC Analyst Booking Holdings (NASDAQ: BKNG)

  • company name Booking Holdings (NASDAQ: BKNG)
  • working location Office Location
  • job type Full Time

Experience: 4 - 4 years required

Pay:

Salary Information not included

Type: Full Time

Location: Karnataka

Skills: it risk management, sox, COSO, COBIT, Cloud Security, ERP audits, IT application controls, IT dependent manual controls, Business Process Controls, DevOps Processes, Source code review

About Booking Holdings (NASDAQ: BKNG)

Job Description

The Specialist, Risk & Control (R&C) position at our Center of Excellence (CoE) involves supporting R&C in conducting SOx testing of IT Application controls and IT Dependent Manual Controls. Your primary responsibility will be to test internal controls to assist with SOX302 attestation. As a subject matter expert, you will provide guidance to the Risk team on controls design, deficiencies evaluation, and process improvements from a SOx testing perspective. Key responsibilities include: - Designing and executing daily testing activities of IT application controls and Business controls, focusing on regulatory/compliance (SOX) related risks - Analyzing information to assess and document testing outcomes clearly and concisely - Identifying design and execution gaps, and communicating issues and recommendations to the R&C team and control owners - Developing and maintaining comprehensive documentation, including process walkthroughs and control testing documentation - Collaborating with R&C to ensure critical SOx controls are well-designed and documented to strengthen the control environment and support business objectives - Contributing to continuous improvement of R&C capabilities and governance in SOX testing The ideal candidate for this role should possess: - Strong background in IT risk management and experience in performing ERP audits - At least 4 years of experience in IT compliance, internal controls, internal/external audit in an international setting - Proficiency in assessing design and operating effectiveness of IT automated process controls, IT dependent manual controls, and interface controls - Familiarity with technology-based product development, DevOps processes, cloud security, and modern technologies - Understanding of architecture such as SOA and microservices, with the ability to review source codes being an advantage - Knowledge of risk management fields and frameworks including SOx, COSO, and COBIT - Strong working knowledge of SOX requirements - Ability to manage multiple priorities, work independently, and collaborate effectively within a team - Proficiency in written and spoken English - Professional certification such as CISA, CRISC, or CIA would be beneficial - A relevant Bachelor's degree is required Pre-Employment Screening: If your application progresses, a third party may conduct pre-employment screening checks in accordance with applicable law. This may include verifying your employment history, education, and other relevant information to assess your qualifications and suitability for the position.,