SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior IT SOX Audit Manager| United States | Remote

Grafana Labs - Remote - Remote - posted 2026-08-03

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Grafana Labs is seeking a Senior IT SOX Audit Manager to build and operate the company's IT SOX compliance program from the ground up as it scales toward and through public markets. Reporting to the Head of Internal Audit, you'll architect and execute all phases of IT SOX activity—from scoping and risk assessment through control design, testing, documentation, and remediation—with direct exposure to Finance, IT, Engineering, Security, and senior leadership. This is a hands-on, player-coach role. You'll own the IT SOX program yourself initially, partnering with external consultants and co-source resources, and influencing through expertise rather than direct reports. Responsibilities include designing and executing IT general controls (ITGCs) and application controls testing across key financial systems (NetSuite, Salesforce, Workday) and Grafana's cloud/SaaS environment; maintaining an audit-ready documentation library (narratives, flowcharts, risk-and-control matrices); driving deficiency management and remediation validation; managing the external IT auditor relationship to ensure PCAOB alignment; and leveraging AI and automation to enhance scoping, testing, and continuous monitoring. You'll evaluate IT control impacts of new systems and policies as the organization scales, and report on IT SOX status, risks, and remediation to leadership. As the function matures, you'll have the opportunity to expand into broader technology and IT audit and to build and mentor a team. Success is measured by whether Grafana becomes more risk-intelligent, better controlled, and able to scale sustainably because of your work. You bring 10+ years of progressive IT SOX, IT audit, or IT risk advisory experience from Big 4 or similar firms and/or in-house audit, compliance, or risk functions. You have hands-on expertise in COSO, SOX 404, ITGCs, ITACs, and PCAOB standards, with proven experience standing up, scaling, or transforming IT SOX programs—ideally in pre-IPO or newly public, high-growth SaaS environments. You're comfortable auditing cloud-native and SaaS environments and modern ERPs and business applications.

Similar roles