Job Listings

Sr Manager, IT Risk and Audit Compliance (Hybrid)

3700 S. Stonebridge Dr., McKinney, Texas
Job number: 15288

Job Description:

Sr Manager, IT Risk and Audit Compliance (Hybrid)

Primary Duties & Responsibilities

JOB SUMMARY

Experience what being part of the Globe Life family feels like. Be inspired by your leaders, encouraged, and cheered on by your teammates to excel and be supported in your career while working with us. We offer a competitive salary with a great benefits package, including 401(K) match, medical, dental, and vision health plans, short – term and long-term disability, paid time off, tuition reimbursement and other career development opportunities.

The IT Risk and Audit Compliance Sr Manger is responsible for establishing and maintaining Globe Life’s overall IT risk and compliance management program, which will be designed to ensure that the company’s risk related to IT assets, partnerships, and resources are adequately accounted and planned for. The individual in this position is responsible for identifying, evaluating and reporting on IT risks in a manner that meets Globe Life’s regulatory and other compliance requirements. The Senior leader works proactively with various IT departments to implement practices that meet Globe Life’s defined policies and standards for IT risk management. While this role will interact with our Information Security risk groups, it’s primary focus will be on non-cybersecurity related risks and SOX related audits.

The Sr Manager, IT Risk and Audit Compliance is the "process owner" for all of Globe Life’s IT related risk and audit assessments and identification activities for IT and its IT dependent strategic business objectives. A crucial element of the role is working with line-of-business managers and other key decision makers to determine acceptable levels of residual risk for the company as a whole and for various internal departments and organizations.

The ideal candidate for this position is a proven leader, problem solver and integrator of people and processes, as well as an effective internal consultant. The individual must also possess solid domain competencies in a number of IT risk and audit related disciplines, including business continuity management, disaster Recovery, privacy, Audit, and compliance. Globe Life’s IT risk management activities have, in the past, focused largely on technical solutions. However, effective risk management requires a more-comprehensive and performance-based approach that aligns levels of protection with business needs. For this reason, the IT risk manager must be much more than simply a technology and controls expert, it must also possess significant management and communications skills and extensive business knowledge.

 

PRIMARY DUTIES & RESPONSIBILITIES

  • Manage all the risk-related activities of Globe Life’s IT organization, including budgeting, planning, testing, reporting, and recommending appropriate remediation measures.
  • Manage oversight and monitoring of risk mitigation and coordination of policy and controls to ensure that other managers are taking effective remediation steps.
  • Benchmark the risk management practices of other companies, particularly those in related industries or with similar business models
  • Maintain an up-to-date understanding of industry best practices and monitor the legal and regulatory environment for developments that could require changes to Globe Life’s established IT policies and practices.
  • Create, disseminate and (as required) update documentation of Globe Life’s matrix of identified IT risks and controls.
  • Work directly with other internal departments and organizations to facilitate IT risk analysis and risk management processes, identify acceptable levels of residual risk, and establish roles and responsibilities related to risk classification and mitigation.
  • Facilitate alignment and communications by forming an IT risk management steering committee or advisory board.
  • Follow up on deficiencies identified in monitoring reviews, self-assessments, automated assessments, and internal and external audits to ensure that appropriate remediation measures have been taken.
  • Review, modify, and create audit related processes that drive to 100% compliance from audit responders.
  • Lead employee(s) within the risk and audit program including performance management, hiring, mentoring, and challenging the team to continuously grow and mature Globe Life processes.

 

How Will Success Be Evaluated?

  • The scope of the IT risk manager’s role will be determined by the Vice President of IT Service Management, who will also be responsible for evaluating the IT risk manager’s performance, with input from the CTO.
  • The IT risk manager’s performance will largely be evaluated based on success in identifying IT risks and IT-related business risks, and developing and implementing effective policies, with regularly tested controls, to manage those risks.

 

 

Required Skills

KNOWLEDGE, SKILLS, & ABILITIES

  • Basic knowledge of a broad range of standards and frameworks — for example, ITIL, ISO 20000, Capability Maturity Model Integration
  • Knowledge of common risk management methodologies — for example, Control Objectives for Information and Related Technology and Committee of Sponsoring Enterprise Risk Management
  • Strong collaboration skills are a must.
  • In-depth understanding of strategic business risks related to IT
  • Ability to develop a comprehensive understanding of Globe Life’s business, market and industry and relate that knowledge to identified related risks.
  • Knowledge necessary to propose relevant IT responses to changing business risks and regulatory changes
  • Proven ability to communicate with people at all levels — from developers to C level executives.
  • Excellent written and verbal communication skills — including the ability to effectively communicate IT risk-related concepts to technical and nontechnical audiences — and strong interpersonal and collaborative skills
  • Strong skills as a negotiator, to facilitate commitment and sign-off
  • High level of personal integrity, with the ability to handle confidential and otherwise sensitive matters professionally and with the appropriate level of judgment and maturity
  • High degree of initiative, dependability and ability to work with little supervision

 Applicable to all employees of Globe Life & Accident and its subsidiaries:

  • Reliable and predictable attendance of your assigned shift
  • Ability to work full time and/or part time based on the position specifications.

Required Knowledge & Experience

EDUCATION & WORK EXPERIENCE REQUIRED

  • 5 to 7 years of experience in IT risk management or a related discipline (for example, security, privacy, business continuity management or compliance).
  • Minimum Bachelor of Science preferred, with a focus on IT- or IT-risk-related disciplines (for example, security, privacy, business continuity management and compliance). A business degree is beneficial.
  • Experience in standing up and running new programs.

Location: 3700 S. Stonebridge Dr., McKinney, Texas

Apply Now

Current employees apply here.

Savings and Investment Plan (401K) - Eligible employees may begin participating in the plan on the first day of employment.

Pension Plan - Eligible employees who complete one year of service with the Company become participants in the Pension.* (Not available to Cleveland Employees)

Medical - Benefits are available to all eligible employees and qualified dependents the first of the month following 30 days of continuous service.

Dental** and Vision - Eligible employees and qualified dependents are able to enroll the first of the month following 30 days of continuous service.

Flexible Spending Accounts (FSA) - Our FSA has two components, Health Care and Dependent Care Accounts. These accounts allow employees to set aside a portion of their earnings on a pre-tax basis to cover out-of-pocket medical and dependent care expenses. Participation is elected on a calendar year basis and is available to all eligible employees the first of the month following the completion of 30 days of continuous service.

Health Savings Accounts (HSA) - A pre-tax Health Spending Account (HSA) is offered to those who enroll in the High Deductible Plan. It allows you to pay for health care expenses. Participation is elected on a calendar year basis and is available to all eligible employees the first of the month following the completion of 30 days of continuous service. Company contributes to HSA.

Short-Term Disability - Eligible employees may be entitled to salary continuance during periods of temporary disability. Benefits are based on employee status and years of service.*

Group Life and Long-Term Disability** - Eligible employees may elect life insurance and long-term disability coverage the first of the month following 30 days of continuous service.

Vacation and Paid Holidays - Employees are eligible for vacation upon the completion of six months of employment. In addition, the Company offers eight paid holidays.

Education Assistance - The Company supports employees who wish to continue their education to secure increased responsibility and growth within their professional careers. We offer a reimbursement program for expenses incurred through approved institutions of learning. In addition, Fellow, Life Management Institute (FLMI) and International Claim Association (ICA) program courses are offered after the completion of six months of services at no cost to the employee.

Fitness Reimbursement - Eligible employees are able to receive up to 100% reimbursement for monthly dues (employee only).

Supplemental Plans** - Cancer, Heart/Stroke, Accident.

*Please note, some benefits may vary by subsidiary. Please be sure to clarify with the Human Resources Department.
**Company paid benefit

Do I have to apply for every job that I am interested in? - Yes. Though our Talent Acquisition Team searches our database for qualified candidates, the only way to ensure that we know what position is of interest to you is if you apply for it directly.

Now that I've applied, what happens? - You will receive an immediate response from our system. Someone from our Talent Acquisition Team will review your qualifications and skills. If you're a good fit, we'll contact you to conduct an initial interview by phone, followed by assessment testing and an in person interview(s).

How do I get the contact information of the hiring manager for the job I am interested in? - It is our policy not to give contact information to external applicants. If, after you apply, it is determined that your skills and qualifications match our hiring needs, you will be contacted directly for an interview by someone on our Talent Acquisition Team.

I've been interviewed, what's next? - If selected, we'll extend a conditional offer. Then, pending a successful background check and drug screen, we'll confirm a start date.

The Whole Globe

Globe Not only is it in our name, it’s in our hearts. Our Company thrives off of diversity and has created a culture focused on inclusivity. These two components are the pillars of our foundation and the guiding principles that build our employees and leaders.

No Ceiling

SmileThe insurance industry may be traditional, but Globe Life has been, is, and always will be dedicated to building an inclusive, sustainable, and inspiring environment that does not have a ceiling on growth.