The IT Compliance team is responsible for the compliance of the organisations IT systems, networks and infrastructure in accordance with the IT industry best practices and standards. The IT Compliance Specialist will play a key role in identifying IT risks, enhancing IT processes, and recommending actionable improvements to close control gaps or boost efficiency. An important part of our role is to provide leaders and managers of the various departments in the organisation with guidance and knowledge on IT compliance risks and internal controls. Daily tasks are based on strong collaboration with other members of the organisation to develop and implement policies and procedures that will help the company achieve the expected level of maturity of its internal controls programme.
You will participate in the development and maintenance of a continuous monitoring and internal IT controls plan, to ensure compliance with regulations (such as PCI DSS, DORA, DSA, NIS2, AI Act, GDPR), recommendations from Security teams (enhancing platform security), IT Governance teams (licensing, ITSM), Internal Audit and external auditors
Your day-to-day responsibilities will include assessing the wide range of technologies/architectures used by Allegro to understand potential risks to the business and to support the organisations business objectives
You will participate in the design, development and improvement of internal standards, good practices, processes and controls in the Technology area
You will work across Allegro Group organisational structure, involving people from many different departments (primarily in the Technology area)
You will be involved in advisory and consulting with those responsible for applications and infrastructure to enhance the maturity and reliability of IT controls and processes
You will perform reviews of Allegro Group IT systems and procedures and assess their compliance with established policies
You will participate in the handling of internal and external audits and manage the work to implement corrective actions for identified deficiencies