Job Description
The Governance, Quality and Compliance product line team is an essential component of our company’s Information Technology division that provides support to the Cloud and Information Technology organization. We are looking for an experience analyst to join the GQC team and work directly with the cloud and infrastructure teams to ensure their products are compliant with the company’s System Development Lifecycle (SDLC) and the IT Control framework. Responsibilities will include:
- Engaging with IT teams and provide expertise for the SDLC and the IT Control Requirements Set
- Support strategic engagements that may require setting up processes and compliance artifacts to drive operational efficiency
- Manage project governance activities, including providing progress updates of the assigned deliverables, driving timely closures of escalations, and facilitating strategic decisions with senior management
- Initiate training and workshop for knowledge transfer and adoption of Agile SDLC principles
- Prepare reports by collecting, analyzing, and summarizing information.
- Maintains quality service by establishing and enforcing organization standards.
- Maintains professional and technical knowledge by attending educational workshops, reviewing professional publications, establishing personal networks, benchmarking state-of-the-art practices, and participating in professional societies.
- Contributes to team effort by accomplishing related results as needed.
Summary, Focus and Purpose:
The IT Compliance Analyst will work and support the Cloud and Infrastructure Technology value teams focusing on compliance and audit readiness. You will serve as a point of contact for IT-related audits, including external (PCI, SOX) and internal audits. You will coordinate, review, and execute IT compliance related activities. You will support audit/inspection and participate in the timely review and response to findings. You will liaise with IT technical units to create and\or update SOPs, migration plans and supporting training materials. Strong analytical, communication and problem-solving skills are critical for success in this role.
Education Minimum Requirement:
- Bachelor's Degree is preferred, concentration in an Information Technology or related field in Risk Management, Audit, Information Security & Controls.
Required Experience and Skills:
- The ideal candidate shall have 3+ years supporting in any of the following: information security, risk and compliance, SOX, system validation or quality assurance
- Intermediate to Advanced MS Excel experience (file merging, pivot tables, formulas, macros)
- Previous experience as an auditor and supporting audit readiness
- Demonstrated ability to establish and maintain collaborative relationships with stakeholders
- Clear understanding of principles, procedures, governance of validation activities in IT controls and system development life cycle (SDLC)
Desired Experience and Skills:
- Certifications - CISA, CISSP, CRISC, PCI, CISM, CGEIT, CIA, CPA, SOX, ISO
- Experience with software licensing and use of a contract management tool highly desired
- Understanding of emerging technologies used in the IT industry, such as cloud, mobility, social, data science, and analytics platforms
- Project Management
- Familiar with Agile framework
- IT asset lifecycle management
What we offer:
Competitive salary
Position in leading global healthcare company
Global projects, international environment
Opportunity to learn and grow professionally within the company globally
Wide range of benefits
Current Employees apply HERE
Current Contingent Workers apply HERE
Search Firm Representatives Please Read Carefully
Merck & Co., Inc., Rahway, NJ, USA, also known as Merck Sharp & Dohme LLC, Rahway, NJ, USA, does not accept unsolicited assistance from search firms for employment opportunities. All CVs / resumes submitted by search firms to any employee at our company without a valid written search agreement in place for this position will be deemed the sole property of our company. No fee will be paid in the event a candidate is hired by our company as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails.
Employee Status:
RegularRelocation:
VISA Sponsorship:
Travel Requirements:
Flexible Work Arrangements:
Shift:
Valid Driving License:
Hazardous Material(s):
Requisition ID:R248516