Overview
The FinOps Controls & Compliance C&C team enables the business to move quickly while maintaining trust, accountability, and compliance. We partner across Finance, Procurement, Operations, Engineering, and Corporate Functions to design, implement, monitor, and continuously improve controls that mitigate risk and support Microsoft's strategic priorities.
We are seeking an experienced Controls & Compliance Manager to lead and enhance control and compliance programs across Finance and operational processes, with a strong emphasis on SOX compliance, Information Technology General Controls ITGCs, risk management, and governance of emerging technologies including AI-enabled business processes and automation.
This role will serve as a trusted advisor to stakeholders who are leveraging automation and AI to transform business operations, helping ensure solutions are implemented responsibly, risks are appropriately managed, and controls remain effective in an evolving technology environment.
The ideal candidate brings deep expertise in SOX and internal controls, experience with ITGCs and automated controls, and the ability to partner across business and technical teams to enable innovation while maintaining a strong compliance posture.
Responsibilities
SOX, ITGCs, and Internal Controls
- Lead the design, implementation, documentation, testing, and monitoring of SOX controls across financial and operational processes.
- Oversee compliance activities related to Information Technology General Controls ITGCs, including access management, change management, system operations, and related governance processes.
- Partner with control owners to ensure controls are appropriately designed and operating effectively.
- Evaluate control deficiencies and drive remediation plans through successful closure.
- Support internal and external audit activities, including audit readiness, testing coordination, and issue management.
- Assess the adequacy of controls over automated business processes and system-generated reporting.
AI, Automation, and Emerging Technology Governance
- Partner with business leaders, engineering teams, and process owners to evaluate risks and control considerations associated with AI-enabled solutions, automation initiatives, and digital transformation efforts.
- Advise stakeholders on control design and governance requirements as business processes evolve through automation and AI adoption.
- Assess impacts to SOX and compliance programs resulting from changes in technology, automated decision-making, and emerging tools.
- Promote compliance-by-design principles that integrate governance, controls, risk management, and accountability into AI and automation initiatives.
- Identify opportunities to leverage technology, analytics, and automation to improve compliance effectiveness and efficiency.
Risk Management and Compliance
- Conduct risk assessments to identify emerging operational,