IT SOX PMO 经理
Manager, IT SOX PMO
GitLab 是 DevSecOps 的智能编排平台。GitLab 帮助组织提高开发人员生产力,提升运营效率,降低安全和合规风险,并加速数字化转型。超过 5000 万注册用户,超过 50% 的财富 100 强企业* 信任 GitLab 来更快地交付更优质、更安全的软件。
我们产品中所体现的原则也体现在团队的工作方式中:我们把 AI 作为核心的生产力倍增器,所有团队成员都被期望将 AI 融入日常工作中,以推动效率、创新和影响力。GitLab 是职业加速的地方,创新蓬勃发展,每个声音都受到重视。我们的高绩效文化由价值观和持续的知识交流驱动,使团队成员能够在与行业领袖合作解决复杂问题的过程中充分发挥潜力。与我们一同共创未来,打造改变世界软件开发方式的技术。
*Fortune 500® 是 Fortune Media IP Limited 的注册商标,经许可使用。声明基于 GitLab 数据。财富 100 强指的是 2025 年 6 月发布的 2025 年财富 500 强榜单中排名前 20% 的公司。财富和 Fortune Media IP Limited 与 GitLab 没有隶属关系,也不对 GitLab 的产品或服务进行推荐或认可。
职位概述
作为 IT SOX PMO 管理经理,您将负责 IT 相关的萨班斯法案(SOX)合规活动,并作为 IT 一般控制(ITGCs)和 IT 应用控制(ITACs)的专家。您将作为个人贡献者,向首席财务官办公室内的高级总监、SOX PMO 领导汇报,直接支持高级 IT SOX PMO 经理,加强 GitLab 的 IT SOX 计划,为新的或变化的流程和系统准备 SOX 要求,并在高速发展的技术环境中推进自动化。您将通过改进现有流程、评估新兴技术对 SOX 的影响,并应用实际且可扩展的控制实践,结合战略指导与实际执行。
您将负责的工作
- 作为 IT GCs 和 IT ACs 的 SOX 专家,提供指导并支持符合 SOX 要求的合规性。
- 与业务 SOX 项目管理办公室(PMO)合作,评估新系统或变更业务流程的 SOX 准备情况,并支持年度 IT SOX 风险
查看英文原文
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster.
The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software.
*Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab.
An overview of this role
As the Manager, IT SOX PMO, you'll own information technology (IT)-specific Sarbanes-Oxley (SOX) compliance activities and serve as a subject matter expert for IT general controls (ITGCs) and IT application controls (ITACs). You will be an individual contributor, reporting to the Senior Director, SOX PMO Leader within the Chief Accounting Officer's organization, you'll directly support the Senior Manager, IT SOX PMO in strengthening GitLab's IT SOX program, preparing new and changing processes and systems for SOX requirements, and advancing automation in a high-growth technology environment. You'll combine strategic guidance with hands-on execution by improving current processes, assessing emerging technologies for SOX impact, and applying practical, scalable control practices.
What you’ll do
- Serve as an IT SOX subject matter expert for ITGCs and ITACs, providing guidance and supporting compliance with SOX requirements.
- Partner with the business SOX Program Management Office (PMO) to assess SOX readiness for new or changing systems and business processes, and support the annual IT SOX risk assessment.
- Maintain and improve control documentation, including flowcharts, risk and control matrices, and control inventories.
- Facilitate IT control walkthroughs and coordinate the remediation of control deficiencies.
- Coordinate with internal and external auditors throughout the SOX audit cycle, clearly presenting positions and supporting appropriate conclusions.
- Review System and Organization Controls (SOC) reports and oversee the key report testing program with contractor support, performing hands-on testing when needed.
- Build cross-functional relationships, including a close partnership with Internal Audit on SOX testing execution.
- Identify opportunities for control automation, monitor emerging risks and regulatory changes, including those related to artificial intelligence (AI), and help prepare reports and presentation materials on SOX compliance status.
What you’ll bring
- A bachelor's degree in information technology, computer science, accounting, or a related field.
- IT audit and SOX compliance experience, including deep knowledge of ITGCs, ITACs, and control frameworks such as Control Objectives for Information and Related Technologies (COBIT) and the Committee of Sponsoring Organizations of the Treadway Commission (COSO) framework.
- A current Certified Information Systems Auditor (CISA), Certified Public Accountant (CPA), Certified Internal Auditor (CIA), or Certified Information Systems Security Professional (CISSP) certification.
- Experience working in the software as a service (SaaS) industry.
- Proficiency with governance, risk, and compliance tools; experience with AuditBoard is a plus.
- Professional judgment, critical thinking, and clear written and verbal communication skills, including persuasion, influence, and conflict resolution.
- A practical and creative approach to complex problems, audit findings, and recommendations, with familiarity using AI tools to improve compliance processes.
- Ability to collaborate effectively across US Pacific and Eastern time zones.
About the team
The SOX PMO team is a second-line function within GitLab's Chief Accounting Officer organization. It owns and manages the enterprise SOX compliance program across risk assessment, control design, documentation, and coordination with external auditors, while Internal Audit operates as the independent third-line function responsible for SOX testing. The team serves as both a subject matter expert group and a business partner to first-line control owners across GitLab, helping build control frameworks that are practical, scalable, and suited to a fast-growing business. As an all-remote team, we collaborate asynchronously across regions and functions, balancing strategic program leadership with hands-on execution as GitLab continues to evolve.
How GitLab will support you
- Benefits to support your health, finances, and well-being
- Flexible Paid Time Off
- Team Member Resource Groups
- Equity Compensation & Employee Stock Purchase Plan
- Growth and Development Fund
- Parental leave
- Home office support
Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application.
The base salary range for this role’s listed level is currently for residents of the United States only. This range is intended to reflect the role's base salary rate in locations throughout the US. Grade level and salary ranges are determined through interviews and a review of education, experience, knowledge, skills, abilities of the applicant, equity with other team members, alignment with market data, and geographic location. The base salary range does not include any bonuses, equity, or benefits. See more information on our benefits and equity. Sales roles are also eligible for incentive pay targeted at up to 100% of the offered base salary.
United States Salary Range
$115,000—$194,000 USD
How GitLab Supports Full-Time Employees
- Benefits to support your health, finances, and well-being
- Flexible Paid Time Off
- Team Member Resource Groups
- Equity Compensation & Employee Stock Purchase Plan
- Growth and Development Fund
- Parental Leave
Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application.
Country Hiring Guidelines: GitLab hires new team members in countries around the world. All of our roles are remote, however some roles may carry specific location-based eligibility requirements. Our Talent Acquisition team can help answer any questions about location after starting the recruiting process.
Privacy Policy: Please review our Recruitment Privacy Policy. Your privacy is important to us.
GitLab is proud to be an equal opportunity workplace and is an affirmative action employer. GitLab’s policies and practices relating to recruitment, employment, career development and advancement, promotion, and retirement are based solely on merit, regardless of race, color, religion, ancestry, sex (including pregnancy, lactation, sexual orientation, gender identity, or gender expression), national origin, age, citizenship, marital status, mental or physical disability, genetic information (including family medical history), discharge status from the military, protected veteran status (which includes disabled veterans, recently separated veterans, active duty wartime or campaign badge veterans, and Armed Forces service medal veterans), or any other basis protected by law. GitLab will not tolerate discrimination or harassment based on any of these characteristics. See also GitLab’s EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know during the recruiting process.