Senior Manager of IT Regulatory Compliance
A.O. Smith
Company / Location Information
A.O. Smith is a global leader applying innovative technologies and energy-efficient solutions to products manufactured and marketed worldwide. The company is one of the world’s leading manufacturers of residential and commercial water heating equipment and boilers, as well as a manufacturer of water treatment products for residential and light commercial applications. A. O. Smith is headquartered in Milwaukee, Wisconsin, with approximately 12,000 employees at operations in the United States, Canada, China, India, Mexico, the Netherlands, and the United Kingdom.
Please Note : At this time, we are unable to provide visa sponsorship for this role. Candidates must be authorized to work in the United States without sponsorship now or in the future.
Primary Function
As a Senior Manager, IT Regulatory Compliance, you will be a member of the Business Technology Solutions (IT) leadership team, reporting directly to the CISO. The team is responsible for proactively planning and executing focused strategies to establish and maintain operational, financial, and regulatory controls globally.
The Senior Manager, IT Regulatory Compliance leads the company’s second-line oversight of technology risk, controls, and regulatory compliance. This role has primary accountability for SOX IT compliance (ITGCs/ITACs/SoD), global IT control standardization/governance, and enterprise alignment with industry cybersecurity frameworks (e.g., NIST, COSO). In addition, this position helps shape and drive the technology and security aspects of global privacy and data protection compliance programs (e.g., GDPR, India’s DPDP Act, China’s PIPL, CCPA/CPRA, and other applicable regional regulations), partnering closely with Legal/Privacy, Information Security, IT, Finance/Controllership, Internal Audit, and global business leaders.
Success in the role means ensuring technology and data risks are appropriately identified, controlled, and monitored across the enterprise—covering ERP platforms (SAP), supporting financial applications, infrastructure, hosted/cloud environments, third parties, and new system implementations—while enabling compliant handling of personal data. As Senior Manager, you will set the vision and roadmap for scalable controls and governance, drive audit and regulatory readiness, and act as a thought leader who influences stakeholders and delivers measurable program outcomes.
Responsibilities
SPECIFIC DUTIES / ACCOUNTABILITIES
- Thought Leadership and Executive Influence - Serve as a visible thought leader for technology risk and regulatory compliance, translating evolving requirements into practical strategy, roadmaps, and decisions. Communicate risk posture, control health, key issues, and program outcomes to the CISO and senior leadership with clear, business-focused insights.
- Program Governance, Metrics, and Continuous Improvement - Promote a culture of accountability, transparency, and continuous improvement. Define and monitor program KPIs/KRIs (e.g., control effectiveness, remediation aging, regulatory obligations tracking), identify trends and emerging risks, and drive control optimization and automation initiatives.
- Lead 2nd-Line SOX IT Compliance Oversight - Own governance and oversight of SOX, ensuring compliance with ICFR requirements and consistent execution across ERPs and supporting technologies (e.g., ITGCs, ITACs, SoD), including control design standards, evidence quality, and remediation governance.
- Establish and Maintain Global Technology and Privacy Control Standards - Design, standardize, and maintain global control frameworks and evidence standards spanning IT controls (SOX/ICFR) and technology-enabled privacy requirements (e.g., access, logging, encryption, retention/deletion, third-party controls) to drive consistency, scalability, and audit/regulatory readiness across regions and systems.
- Align Controls with Leading Frameworks and Regulatory Requirements – Partner closely with Information Security and Legal/Privacy leadership to ensure alignment with applicable frameworks and regulations (e.g., NIST, COSO, ISO 27001/27701 as applicable, GDPR, India DPDP, China PIPL, CCPA/CPRA), and translate obligations into clear, testable control requirements.
- Security-by-Design Oversight across SDLC and Implementations - Provide 2nd‑line oversight across SDLC phases and major system implementations ensuring controls are designed and executed to appropriately mitigate risk, procedures are executed in alignment with internal policies, and security and privacy requirements are appropriately embedded.
- Serve as Primary Audit and Regulatory Liaison (Technology Controls) – Serve as a key technology risk and compliance contact for Internal Audit, external auditors, and (as applicable) regulatory inquiries related to technology controls and technology-enabled privacy requirements. Partner with Internal Audit to ensure audits and SOX procedures are planned, performed, and executed timely. Support consistent effective control execution and provide ongoing training to foster an effective environment and enhance efficiency.
- Drive Issue Management and Remediation – Assess control deficiencies and compliance findings, govern and drive the identification, root cause analysis, risk acceptance/escalation, and remediation action plan development by partnering with control owners and operations teams.
- Global Regulatory Compliance Enablement (Privacy and Technology) – Partner with Legal/Privacy, PMOs, IT Infrastructure, Security and IT leadership to drive compliance with internal policies, technology standards, and applicable privacy regulations. Enable consistent operational execution of privacy requirements through governance mechanisms (e.g., records of processing support, data retention/deletion controls, DSAR enablement inputs, vendor/third-party privacy risk oversight, and incident/breach response coordination inputs), and develop assurance procedures to validate ongoing compliance.
Qualifications
- Bachelor’s degree in Business Administration, Management Information Systems, Computer Science, Cybersecurity, Accounting or a related field; MS or MBA is preferred.
- CISA or the ability to obtain within a year is required; additional professional certifications are preferred, such as CISM, CISSP, CIA, CPA, and privacy certifications (e.g., IAPP CIPP/E, CIPP/US, CIPM)
- 8-12+ years of progressive experience in technology risk, IT audit, IT compliance, technology controls, and/or privacy risk and regulatory compliance within complex, global organizations (public accounting and/or global manufacturing preferred)
- Deep expertise in COSO and NIST frameworks (and familiarity with privacy/security standards such as ISO 27001/27701 and common privacy control concepts), including performing audit procedures against standards or assessing and implementing controls
- Strong knowledge of IT general and automated controls, ICFR concepts, and control design/testing, plus the ability to translate privacy regulatory obligations (e.g., GDPR, DPDP, PIPL, CCPA/CPRA) into practical, testable technology and process controls
- Prior experience with SAP (ECC, BW, GRC, ECP, S/4HANA) and understanding configuration and best practices
- Demonstrated experience supporting or overseeing SDLC activities and system implementations
- Experience evaluating third-party service providers SOC reports
- Experience with control automation, continuous controls monitoring, and continuous improvement
- Proven ability to operate effectively in a global, matrixed organization
- Effective and impactful executive-level communication and presentation skills; able to influence outcomes and drive decisions across IT, Security, Legal/Privacy, Finance, and the business
- Strong judgment and risk prioritization capabilities
- Ability to influence without authority
- Pragmatic, business-oriented approach to compliance
- Continuous improvement mindset
ADDITIONAL QUALIFICIATIONS :
- Exposure to hosted environments, cloud platforms, and experience assessing cloud migration risks (including privacy, residency, and third-party data processing considerations) is a plus
- Exposure to GRC applications, IAM solutions and Audit tools is preferred
- Experience building or operating elements of a privacy compliance program (e.g., privacy risk assessments/DPIAs, records of processing, vendor/third-party risk, data retention/deletion governance, and support for DSAR processes) is a plus
- Proven management experience leading high-performing teams with global responsibilities
- Experience presenting to executive leadership and audit committees is a plus
We Offer
Competitive compensation package and comprehensive benefits plans which include medical and dental insurance, company-sponsored life insurance, retirement security savings plan, short- and long-term disability programs and tuition assistance.
#LI-AO
#LI-Hybrid
#Appcast
ADA Statement & EEO Statement
In developing this job description care was taken to include all competencies needed to successfully perform in this position. However, for Americans with Disabilities Act (ADA) purposes, the essential functions of the job may or may not have been described for purposes of ADA reasonable accommodation. All reasonable accommodation requests will be reviewed and evaluated on a case-by-case basis.
We consider all applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, gender identity and expression, marital or military status. We also provide reasonable accommodations to qualified individuals with disabilities in accordance with the Americans with Disabilities Act and applicable state and local law.
- ...Sr. IT Director & Regional Chief Information Security... ...seeking a visionary Senior Director, Regional... ...-wide cyber risk management process, including continuous... .... Ensure ongoing compliance with international... ...proactively address emerging regulatory requirements....SeniorFull time
- ...regulators, and internal committees. The role may involve onsite or offsite interviews and fieldwork. Responsibilities include completing audits, testifying as needed, and delivering training and reports to ensure regulatory compliance and financial integrity. #J-18808-Ljbffr...Senior
- Lifepoint Health seeks a Senior Associate General Counsel, Litigation to lead and manage potential and pending litigation, with a focus on managed care disputes... ...will provide strategic legal guidance, ensure regulatory compliance, and contribute to a robust Legal Department,...Senior
- LKQ Corporation seeks an experienced Senior Benefits Manager to lead the benefits program strategy and administration. You will oversee health, retirement, and wellness plans, ensure regulatory compliance, and manage carrier relationships. You will drive data-driven improvements...Senior
- TerraBella Senior Living seeks a skilled nursing leader to oversee the health and well-being of residents across our communities. You will guide clinical care, ensure regulatory compliance, and collaborate with the administrator to maintain high-quality services. Ideal...SeniorWork at office
$77k - $214k
...ApplicableSpecialismIFS - Risk & Quality (R&Q)Management LevelSenior AssociateJob... ...PwC, our people in risk and compliance focus on maintaining regulatory compliance and managing risks for... ...technology risk consultations. As a Senior Associate you are expected to analyze...SeniorFull timeH1b- ...Project Manager – Pharmacy Regulatory Compliance Classification: Contract Contract Length: 9+ months Location: Hybrid – Nashville, TN (Local Candidates Only) Position Overview CereCore is seeking a Project Manager to support the Pharmacy Regulatory...SeniorContract workWork at officeLocal areaShift work
- ...data & analytics services social media compliance Business Classifications B2B... ...mentoring high-performing teams across IT, security, and business platforms. In a... ...security program, including cybersecurity risk management and compliance with relevant frameworks....
$151.84k - $287.04k
...The Senior Counsel, reporting to a Deputy General Counsel, provides... ...on sponsored research compliance, basic and translational research... ..., including contractual, regulatory, data-use, IP, publication,... ...related to conflict-of-interest management, research security,...SeniorContract workRemote workRelocation- ...Senior Director, Principal Gifts About the Company Philanthropic organization supporting Indigenous culture & individuals Industry Non-Profit Organization Management Type Non Profit Founded 2017 Employees 11-50 Categories ~ Non-Profit & Philanthropy...Senior
- ...TN (Dollar General Headquarters) Dollar General is seeking a Senior Manager, Digital Media Strategy (Digital Growth & Media Innovation) to... ...to validate data flows and resolve discrepancies. Maintain compliance with privacy regulations and internal governance requirements...SeniorWeekly payShift work
- ...increase overall client satisfaction. Responsibilities: Manages an extensive portfolio of complex clients and prospects with... ...Pipeline Management Referral Management Regulatory Compliance Risk Management Minimum Education Requirement: High...SeniorWork experience placementWork at officeLocal areaFlexible hoursShift workDay shift
$60.2k - $107.4k
...Requisition number: 2376850 Job category: Regulatory & Compliance Optum is a global organization that delivers care, aided by technology... ...with regulatory compliance Experience with data analysis as it relates to financial recovery/settlements Familiar with...SeniorMinimum wageFull timeWork experience placementLocal areaRemote work- ...Latitude is seeking an in-house Senior Contracts Paralegal in Nashville, TN, to bring... ...operation and shape our nationwide contract management system. This hands-on role requires... ...maintain templates, support licensing and compliance, and serve as a trusted resource for teams...SeniorContract work
$91k - $321.5k
...At PwC, our people in risk and compliance focus on maintaining regulatory compliance and managing risks for clients, providing advice... ...Specialist - Managed Services - Senior Manager, you will lead... ...) technology managed services - IT infrastructure, cloud, data analytics...SeniorContract workH1b$161.7k - $338.5k
...Power Generation Operations Senior Director to lead and oversee... ...Additional responsibilities include managing power plant agreements for on... ...a culture of safety, compliance, and continuous improvement, ensuring adherence to all regulatory requirements and corporate standards...SeniorTemporary workWorldwideFlexible hours- ...Starbucks is seeking a Senior Product Manager in Nashville, TN, to take end-to-end responsibility for digital products. The role involves partnering with business stakeholders and engineering to define problems and deliver features that enhance customer experiences. Candidates...Senior
- ...Senior Legal CounselONWARD Medical is a Euronext-listed medical... ...growth, clinical innovation, and regulatory excellence while partnering... ...clinical affairs, healthcare compliance, reimbursement, and market access... ...standards, and compliance.Manage commercial and payor due...SeniorContract workWork from home
- ...Assistant Director of Property Management Operations, this role... ...include assisting in maintaining compliance, efficiency, and high-... ...recommending strategic adjustments to senior leadership to support... ...with strategic leadership in regulatory compliance, interpreting, with...SeniorLocal areaNight shift
- ...Senior Vice President, Head of Product & Technology About the Company A private equity-backed technology business at the intersection... ...and product roadmaps, as well as strong skills in stakeholder management and presenting to executive and board-level audiences. A...Senior
$120k - $150k
As a Senior Software Engineer, this professional will lead the design and development of entire computer systems and application... ...navigating the fast-paced world of cloud innovations, regulatory compliance changes, and looming cyber threats. ClearDATA's founders understood...SeniorWork experience placementCasual workLocal areaFlexible hours- ...A leading audit and risk management firm in Nashville is seeking a Senior Internal or IT Auditor to lead audit project teams and ensure compliance. This role offers a salary range of $75-95K, a 10% annual bonus, and excellent benefits. Candidates should have a Bachelor...Senior
- ...Senior Assistant General Counsel About the Company Innovative... ...and its operations are in compliance with the law. This role involves... ...advising on healthcare regulatory matters, supporting merger and... ...acquisition transactions, and managing corporate governance issues....Senior
- ...Senior Director, IT Compliance & Governance (Contractor) About the Company Innovative company designing & developing gene therapeutic products... ...candidate will be responsible for the operational management of GxP Compliance Audit and Supplier Quality Management Programs...SeniorFor contractors
- ...Senior Vice President, Legal Services & Compliance About the Company Esteemed healthcare organization advancing... ..., governance, privacy, and risk management functions. This role requires a... ...complex legal, compliance, and regulatory matters. Hiring Manager Title...SeniorContract work
$725 per month
...Workplaces for Diversity Brookdale Senior Living is hiring an Executive Director... ...relations, financial performance, and regulatory compliance, ensuring a compassionate, high-... ...including, but not limited to areas of people management, operations management, and clinical...SeniorHourly payFull timeTemporary workLocal areaFlexible hoursShift workNight shiftAfternoon shift- ...The role involves overseeing payroll processing and ensuring compliance with regulations while leading a dedicated payroll team. Ideal... ...position requires excellent communication skills and experience managing large teams in a multi-state environment. #J-18808-Ljbffr ∙...Senior
- ...accounting organization in Brentwood, TN. Reporting to the CFO, you will own close processes, financial reporting, internal controls, tax compliance for a rapidly growing healthcare services company. You bring 10+ years of GAAP accounting, CPA, and prior leadership of an...Senior
- A leading construction services company in Nashville, Tennessee seeks a Senior Internal Auditor who will ensure compliance with internal controls by examining records, reports, and operating practices. The successful candidate will perform all aspects of the internal audit...Senior
- Ardent Health is seeking a Senior Payroll Coordinator in Brentwood, TN. You will oversee payroll processing for exempt and nonexempt staff, handling timesheets, payroll records, and employee inquiries. The ideal candidate will have a High School Diploma and over 4 years...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Manager of IT Regulatory Compliance. Be the first to apply!
- cio Nashville, TN
- regulatory manager Nashville, TN
- manager regulatory affairs Nashville, TN
- head compliance Nashville, TN
- compliance manager Nashville, TN
- compliance director Nashville, TN
- regulatory affairs director Nashville, TN
- training and compliance manager Nashville, TN
- regulatory & compliance manager Nashville, TN
- chief compliance officer Nashville, TN



