Lead Specialist, Internal Audit, Controls, Compliance and Risk
Pearson
Pearson Virtual Schools operates audited platforms that serve schools, teachers, and students, in which audit readiness and a defensible control environment are not optional. This role is the dedicated owner of audit response and governance, risk, and compliance (GRC) for our platforms. As Staff, Governance, Risk & Compliance, you own the response across the internal audit lifecycle, SOC 2 (Types 1 and 2), the risk register, and the business continuity and disaster recovery (BC/DR) program. You set evidence and attestation standards across service owners, translate findings into tracked remediation, and partner with internal audit, cybersecurity, privacy, risk, and legal. This is a senior individual contributor role. It sits independently of the operational security team; it assures that the team operates the controls, and you independently verify and attest to them. You also have a dotted-line relationship to the Lead, Service Operations & Cyber Risk for day-to-day coordination. Key Responsibilities Internal Audit & SOC 2 Leadership Lead the response across the audit lifecycle, including planning, fieldwork coordination, and reviewing draft observations, root causes, and risks. Challenge observation and management action plan ownership, wording, and feasibility, and draft and submit audit-closure proposals with stakeholder alignment. Own SOC 2 (Type 1 and Type 2) coordination, including planning and bringing additional platforms into scope. Review evidence and send weak submissions back for rework. Work with partner teams to ensure resources are assigned and aligned, and continually work with them on gaps and help them close them. Controls, Evidence & Remediation Set standards for evidence, attestation, and documentation across services. Translate findings into structured remediation plans with owners, due dates, and evidence requirements, tracked to closure. Maintain the audit-action tracker and hold action owners accountable, challenging weak ownership and unrealistic timelines. Coordinate audit actions owned by other teams across the organization and keep them visible to closure. Govern the configuration management database (CMDB, the inventory of services and their dependencies) for audit scope, keeping ownership and classification accurate. Solution Architecture operates and maintains it. Risk & Resilience Governance Own the risk register, including quality, owners, clear write-ups, closure, and escalation of risks beyond tolerance. Turn access-review and vulnerability gaps into formal risks or audit actions where appropriate. Govern the business continuity and disaster recovery program, including impact analyses, coverage and gaps, vendor continuity, annual reviews, and tabletop exercises, and executive attestation. Cross-Functional Influence & Reporting Partner with internal audit, cybersecurity, privacy, risk, and legal to close findings and prevent repeat observations. Prepare audit and GRC status updates for monthly operations reviews, covering open actions, overdue items, blockers, and risks. Advise service owners and coach peers on governance expectations, acting as an objective assurance partner. What You Will Bring 5 or more years in internal audit, controls, compliance, or risk (IT audit or GRC strongly preferred) Hands-on coordination of SOC 2 (or SOX) programs, including evidence and attestation management Demonstrated ownership of a risk register and the risk-management lifecycle Experience governing or supporting business continuity and disaster recovery (impact analyses, plans, tabletops, attestation) A professional qualification is expected or strongly preferred (CISA, CIA, CRISC, ACA/ACCA, or CISSP) Proven ability to challenge peers and leaders and to represent the organization to external auditors Experience in EdTech, SaaS, regulated, or highly distributed environments is a plus; familiarity with NIST CSF or ISO 22301 is a plus Bachelor's degree in a relevant field; advanced degree a plus Key Behaviors & Attributes Independent & Objective: You bring professional skepticism and integrity, and you hold the line on audit-readiness. Business-Enabling: You approach assurance as a means of enabling the business, not policing it, while staying objective. Influence Without Authority: You push peers and leaders to own and close actions, challenging weak ownership and unrealistic timelines. Continuous Improvement: You bring proven GRC frameworks and improve governance without slowing delivery. Collaborative: You partner across security, engineering, privacy, legal, and internal audit to build a consistent control environment. Key Relationships Direct Reports: None. This is a senior individual contributor role. Peers: The security operations lead, incident and service operations leads, manager of data governance, internal audit leads, and cybersecurity leads Cross-functional: Internal audit, cybersecurity, privacy, risk, legal, engineering, product, and service owners External: External auditors and vendors Pearson is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. Who we are: At Pearson, our purpose is simple: to help people realize the life they imagine through learning. We believe that every learning opportunity is a chance for a personal breakthrough. We are the world's lifelong learning company. For us, learning isn't just what we do. It's who we are. To learn more: We are Pearson. Pearson is an Equal Opportunity Employer and a member of E-Verify. Employment decisions are based on qualifications, merit and business need. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, sexual orientation, gender identity, gender expression, age, national origin, protected veteran status, disability status or any other group protected by law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act. If you are an individual with a disability and are unable or limited in your ability to use or access our career site as a result of your disability, you may request reasonable accommodations by emailing View email address on click.appcast.io. #J-18808-Ljbffr Pearson
- ...Bank Limited (UOB) is a leading bank in Asia with a... ...Description Regulatory Compliance Work with key compliance... ...regulatory changes and internal policy updates. Liaise... ...regulatory matters and risk assessments. 2. Risk Management... ...impact. 3. Audit Readiness Coordinate internal...RiskWork at officeOverseas
$120k - $160k
Job Title - Lead Specialist, Legal Counsel Description - Support Pearson's enterprise sales organisation... ..., AI, data privacy and operational risk. Working closely with Sales, Finance,... ...considerations Regulatory and compliance obligations Translate complex legal concepts...RiskFull timeContract work- Honeywell Aerospace US LLC in Phoenix, AZ seeks a Manager of Internal Controls to lead the SOX program within the controllership team. You will oversee risk-based control design, documentation, and compliance, reporting to the Sr. Director of Internal Controls and partnering...Risk
$89.25k - $150.25k
...bonus + benefitsJob Function: Risk ManagementSchedule: Full... ...Operational Risk Management and Control ManagementCompany: American... ...Global Risk & Compliance Organization (GRC) is an independent... ...management (e.g., within Risk and/or Internal Audit function) Understanding of...Risk- ...Aerospace Technologies is seeking a Manager of Internal Controls in Phoenix, Arizona. This leadership... ...the SOX function and enhancing a risk-based control framework. You will work... ...with cross-functional teams, ensuring compliance and driving improvements in financial operations...Risk
- Job Title:Senior Financial Control AnalystLocation:CityScapeWhat... ...test work on financial internal controls in compliance with Sarbanes Oxley Act (SOX... ...plans, to management.Perform audit assignments and projects... ...ICOFR process by updating risk and control matrices/audit...RiskFull timeWork at office
- DescriptionThe Senior Project Controls Specialist leads project controls processes and consults with the... ...costs and support external audits.Experience in negotiation of prime agreements... ...material takeoffs.Identify and oversee the Risk Management process.Perform quality...RiskContract workFor contractorsWork at office
- HotFoot Recruiters is hiring a Safety Specialist (OSHA 30) to support TSMC semiconductor construction... ...is critical in maintaining site safety compliance and supporting large-scale construction teams in a fast-paced, high-risk environment. Responsibilities include enforcing...Risk
- Job Title:First Line Risk & Control RCSA ManagerLocation:CityScapeWhat you'll do:This role is... ...knowledge of applicable regulatory and legal compliance obligations, rules and regulations,... ...in Compliance, Operations Management, Audit, Risk Management, or related field....RiskFull time
$89.25k - $150.25k
...benefitsJob Function: Internal AuditSchedule: Full... ...Area: Operational Risk Management and Control ManagementCompany: American... ...the Internal Audit Group at American Express... ...controls, consumer compliance, technology,... ...audit engagements, leading planning and execution...RiskOngoing contractWorldwide- Farmers Insurance seeks a skilled risk and compliance professional to serve as the first line... ...framework. The role focuses on governance, control activities, and strengthening the... ...will partner with Legal, Compliance, Internal Audit and Risk, offering guidance on...Risk
- Job Title:Enterprise Risk Management (ERM) Associate... ...measure, monitor, and control risks throughout the... ..., Governance Risk and Compliance (GRC) Platform and... ...and standards and will lead or assist in development... ...experience in Risk Management, Internal Audit, SOX, Financial...RiskFull timeWork at office
- ...Lead Systems Specialist (Controls & Automation) Ascent, LLC delivers solutions for every aspect of mission critical operations and infrastructure... ...coordination efforts with vendors, clients, project managers, and internal and external teams Work according to project timelines...Contract workCasual work
$140k - $185k
...) is one of the world’s leading internet financial platform... ...a Lead Analyst, Product Compliance supporting Circle’s... ...regulatory expectations and internal compliance frameworks.... ...product lifecycle by leading risk assessments, defining and validating control requirements, and...RiskFlexible hours- Jobtailor in Arizona is seeking a first-line defense risk professional to support and execute various risk programs and business unit... ...activities. You will engage with business units to manage risks and controls across all risk types, monitor policy execution, and serve as a...Risk
- The Safety and Occupational Health Specialist supports a nationwide safety program by providing... ...interpretation, and oversight in occupational safety, compliance, and risk management. Key responsibilities Offering guidance on hazard control Conducting inspections and investigations...Risk
- Western Alliance Bank is seeking a First Line Risk & Control Office Associate Director to lead risk initiatives and ensure adherence to banking regulations... .... Strong leadership and a deep understanding of compliance and operations in the banking sector are essential for...RiskWork at office
- Honeywell Aerospace US LLC in Phoenix is seeking a Program Controls Manager (Finance) to lead a team responsible for budgeting, cost control, scheduling, and risk management across multiple programs. You will work with program teams, stakeholders, and senior management...Risk
- ...Arizona) is seeking an experienced risk professional to assess changes... ...a second-line risk advisor, and lead formal change risk assessments. You will document control updates, coordinate RACMs, and... ...sustainable controls aligned with audit expectations. The role...Risk
- Western Alliance Bancorporation is seeking a First Line Risk & Control Senior Analyst in CityScape, Phoenix, to support and/or execute risk programs in line with risk appetite and corporate strategy. You will work with business units to manage risk across all types, monitor...Risk
- ...Safety Environmental (HSE) Specialist at Tessenderlo Kerley,... ...the Corporate Office. Lead periodic HSE... ...that ensure regulatory compliance, and recommend corrective... ...to reduce operational risks. Support development and... ..., and recommend controls for workplace hazards....RiskTemporary workWork at officeLocal areaWorldwideFlexible hours
- Western Alliance Bank in CityScape seeks a First Line Risk & Control Senior Analyst to support and execute risk programs across all risk types, aligning with risk appetite and corporate strategy. You will engage with business units to monitor risks and controls and ensure...Risk
- Leading capacity planning and workforce optimization activities... ...Marketing, Sales, Credit Risk, Distribution Channels,... ...measured, monitored, and controlled in accordance with risk and compliance policies and procedures... ..., project management, audit, and operational analysis...Risk
$112.5k - $147.5k
...CRCL) is one of the world’s leading internet financial platform... ...Senior Analyst, IT Internal Controls & SOX Compliance to join the Internal Controls... ...including annual planning, risk assessment, control documentation... ...tandem with the internal audit group to design testing programs...RiskFlexible hours$112k - $143k
UFG Insurance is seeking a Senior Risk Control Consultant to join their Risk Control Team in Phoenix, Arizona. This role focuses on risk assessment and provides leadership in underwriting and strategic planning. The ideal candidate should possess a bachelor's degree, relevant...RiskRemote work- EMC Insurance Companies is seeking a seasoned risk control professional to perform on-site surveys and deliver tailored loss-prevention strategies for complex clients. You’ll analyze exposures, prepare reports, and communicate findings to insureds, agents, and underwriting...RiskRemote job
- Western Alliance Bancorporation is seeking a First Line Risk & Control Analyst to support and execute risk programs within the first line... ...with business units to monitor risks and controls, ensuring compliance with risk policies and procedures across all risk types. Ideal...Risk
- Western Alliance Bank in Phoenix is seeking a First Line Risk & Control Analyst to act as a first line of defense for risk programs across business units. You’ll support risk updates, map processes, and help ensure adherence to risk policies and regulatory obligations....Risk
- ...the enterprise C‑SCRM control framework and... ...alignment with corporate risk strategy, regulatory... ...emerging frameworks) Lead control implementation... ...evidence collection for internal and external audits, assessments, and... ...legal, engineering, compliance, security, and supply...Risk
- ...while communicating platform health, governance updates, and risk management to leadership. Responsibilities include preparing leadership briefs, delivering status updates, and promoting compliance with data governance and operational controls. #J-18808-Ljbffr JobtailorRisk
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Specialist, Internal Audit, Controls, Compliance and Risk. Be the first to apply!
- senior safety specialist Phoenix, AZ
- health specialist Phoenix, AZ
- outreach specialist Phoenix, AZ
- invoice specialist Phoenix, AZ
- information technology specialist Phoenix, AZ
- rehabilitation specialist Phoenix, AZ
- asset protection specialist Phoenix, AZ
- change management specialist Phoenix, AZ
- housing program specialist Phoenix, AZ
- equal employment specialist Phoenix, AZ

