Jobs › Companies › Novartis › DDIT ISC Director SOX Compliance

About this DDIT ISC Director SOX Compliance role at Novartis

Novartis · Onsite · Prague

Salary Range:

Kč1,729,910.00 - Kč3,212,690.00


 

Job Description Summary

At Novartis, we are reimagining medicine through digital innovation, operational excellence, and strong governance. As part of the Information Security & Compliance (ISC) organization, the Director, DDIT ISC SOX Compliance is accountable for leading the global SOX IT Compliance Program and ensuring the effectiveness, sustainability, and continuous improvement of IT controls supporting Novartis financial reporting processes. The role serves as the central compliance authority for SOX IT governance across Data, Digital & IT and acts as a strategic partner to Finance Compliance, external auditors, IT leadership teams, Business Information Security Managers (BISMs), application owners, and delivery organizations.

This position provides leadership for SOX governance, management testing oversight, audit coordination, deficiency management, methodology development, executive reporting, and compliance transformation initiatives.

The role plays a critical part in maintaining a strong internal control environment while helping the organization modernize compliance through automation, analytics, and AI-enabled capabilities.


 

Job Description

Major Accountabilities:

  • Own and continuously improve the DDIT SOX IT Compliance Program. Ensure alignment of SOX IT controls, governance processes, methodologies, and operating procedures with Novartis Internal Management Framework (IMF) and Finance Compliance requirements.
  • Define governance frameworks, accountability models, and compliance operating processes. Oversee execution of SOX IT management testing activities across the global control portfolio.
  • Serve as the primary liaison for external auditors on Information Technology compliance matters.
  • Provide oversight of IT General Controls (ITGC), IT Application Controls (ITAC), and other SOX-relevant compliance domains.Partner with DDIT leadership to strengthen control ownership, accountability, and sustainable compliance practices.
  • Oversee global SOX testing activities and ensure consistent execution quality.
  • Drive timely remediation of control deficiencies and sustainable corrective actions.
  • Lead annual and ongoing identification of SOX-relevant systems, applications, infrastructure services, and technology processes.
  • Partner with Finance Compliance, enterprise architects, program leaders, and IT organizations to maintain an accurate and sustainable SOX scope.
  • Assess compliance impacts of cloud, enterprise resource planning, and transformation initiatives.
  • Advance compliance capabilities through automation, analytics, and continuous monitoring. Deliver executive reporting, risk insights, and governance updates to senior leadership.

Essential Requirement:


  • University degree in Information Technology, Information Systems, Computer Science, Cybersecurity, Audit, Risk Management, Finance, Accounting, or related discipline.
  • Significant experience in IT Compliance, SOX, Internal Controls, Audit, Risk Management, Cybersecurity Governance, or related fields.
  • Demonstrated experience leading enterprise-wide compliance or governance programs.
  • Strong knowledge of: SOX IT Controls , IT General Controls (ITGC) , IT Application Controls (ITAC) , Risk and control frameworks , Internal audit practices , Governance and compliance operating models.
  • Experience working with senior leadership and external auditors within a global organization.



Desirable Requirements

  • Experience within pharmaceutical, healthcare, life sciences, or other highly regulated industries.
  • Professional certifications such as: CISA , CISSP ,CISM . Similar governance, risk, compliance, or audit certifications.

Expected Annual Base Salary Range for role: 1,729,910.00 - 3,212,690.00 CZK Annual


The base salary offered is determined based on gender-neutral objectives, such as relevant skills, competencies and experience in accordance with the Novartis pay setting policy and upon joining Novartis will be reviewed periodically.

In addition to your base salary, you may be eligible for a performance-based bonus depending on certain performance parameters.


The rewards of being part of our team go far beyond base pay and incentives. We also offer a variety of competitive benefits in kind to help you thrive personally and professionally, such as insurance plans, retirement plans, wellbeing resources and global recognition programs. In addition, we provide flexible and hybrid working options, where possible, and minimum 14 weeks paid parental leave.


Pay equity is a fundamental principle of our employment policy and reflects our commitment to create a diverse, equitable and inclusive environment that treats all employees with dignity and respect, as outlined in our Code of Ethics.

Read our brochure to learn more about our global total rewards offering: https://www.novartis.com/sites/novartis_com/files/novartis-life-handbook.pdf


Note: Benefits and compensation may vary by country and are subject to local legal requirements, including provisions of collective bargaining agreements where applicable. A full overview of your compensation package, including any relevant collective bargaining agreement details applicable to your role based on your employment location and Novartis employer entity, will be communicated separately to you during the application process.


Commitment to Diversity & Inclusion:

Novartis is committed to building an outstanding, inclusive work environment and diverse teams representative of the patients and communities we serve.


Accessibility and accommodation: 

Novartis is committed to working with and providing reasonable accommodation to all  individuals. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the recruitment process, or in order to receive more detailed information about the essential functions of a position, please send an email to [email protected] and let us know the nature of your request and your contact information. Please include the job requisition number in your message




 

Skills Desired

Business Acumen, Digital Capabilities, Influencing Skills, IT Governance, People Management, Stakeholder Management
Ready to apply to Novartis?
Apply to Novartis

About Novartis

Novartis is aware of employment scams which make false use of our company name or leader’s names or recruiter’s names to defraud job seekers. Novartis does not make job offers without interview and never asks candidates for money. If you have encountered a job posting or been approached with a job offer that you suspect may be fraudulent, we strongly recommend you do not respond, send money or personal information. Novartis is not responsible for any claims, losses, damages, or expenses resulting from scams.

See all jobs at Novartis →

Similar jobs

Sign up for suggestions tailored to the jobs you open and the searches you save.

More jobs at Novartis

See all jobs at Novartis →

Apply now
🤖

Whoa — hold up

JobsRadar was built for real people having a rough time in their job search — not for automated requests. You're clicking way too fast and you're now temporarily blocked.

Come back later. If you're genuinely job hunting, we've got your back — just act like a human.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Get an edge on your job hunt.

Join our Telegram channel for the stuff that helps you land the role — salary benchmarks, the weekly market pulse, and new-feature drops. No spam, just signal.

Join the channel — it's free