Technical Program Manager (TPM) – SOX Compliance
Confirmed live in the last 24 hours
CoreWeave
Job Description
What You’ll Do:
The SOX IT Lead sits within CoreWeave’s Security Organization and is responsible for bridging finance, engineering, DevOps, and security to ensure that systems and processes meet the highest standards of internal controls, audit readiness, and regulatory compliance. This team drives the technology-related components of the SOX compliance program and ensures alignment across product, engineering, and finance stakeholders.
About the role:
The SOX IT Lead will own and execute the technology and product-related components of CoreWeave’s SOX 404 compliance program. You will identify risks, implement robust controls, drive process automation, and partner closely with stakeholders across engineering, security, DevOps, and finance. Day-to-day responsibilities include assessing new products and engineering changes for compliance, testing high-risk controls, performing root cause analysis for control failures, and ensuring continuous improvement of the SOX program.
Key responsibilities:
- Own and execute the end-to-end SOX program for products and technology, including onboarding, risk assessment, and control design for new products, features, and significant engineering changes
- Lead identification of SOX risks and key controls; own and maintain the RCM; oversee the design and operating effectiveness of ITGCs and ITACs
- Partner closely with Product, Engineering, DevOps, IT, Finance, and Internal Audit to align on risk, controls, and launch readiness
- Review and assess control design prior to go-live to ensure SOX risks are identified early and embedded within the SDLC
- Oversee testing of high-risk SOX controls (including access management, change management, and data integrity), ensuring testing is rigorous, repeatable, and defensible
- Lead root cause analysis (RCA) for control failures and incidents; drive timely remediation plans; validate effectiveness and sustainability of corrective actions
- Track control issues through resolution, identify systemic gaps, and implement durable improvements to prevent recurrence
- Serve as the primary point of contact for Internal and External Audit on product- and technology-related SOX matters
- Drive continuous improvement of the SOX program through metrics, automation, and monitoring as the company’s products and risk profile scale