IT Risk Management Specialist jobs in United States
cer-icon
Apply on Employer Site
company-logo

Cloudflare · 3 days ago

IT Risk Management Specialist

Cloudflare is on a mission to help build a better Internet, running one of the world’s largest networks that powers millions of websites. The IT Risk Management Specialist will lead IT compliance frameworks and data governance processes, ensuring adherence to standards like ISO, SOX, SOC, and FedRAMP while collaborating with cross-functional teams to mitigate risk and drive continuous improvement.

AnalyticsEnterprise SoftwareSecurityWeb Hosting
check
H1B Sponsor Likelynote

Responsibilities

Lead and support recurring IT system audits, ensuring compliance verification and adherence to Electronic Audit Evidence (EAE) requirements
Plan, execute, and document audit testing activities, including Tests of Design (TODs), Tests of Effectiveness (TOEs), and Quarterly Access Reviews (QARs)
Design and operationalize recurring audit procedures, Standard Operating Procedures (SOPs), and evidence collection frameworks for SOX, FedRAMP, and internal governance
Assist in external audit walkthroughs, control documentation preparation, and alignment of evidence with auditor expectations
Monitor, assess, and enforce compliance with SOX, SOC, and internal IT General Control (ITGC) requirements, driving continuous improvement and remediation of identified gaps
Design, implement, and maintain FedRAMP-related controls for IT systems, ensuring alignment with NIST 800-53 security and privacy controls
Contribute to the development and maintenance of a unified IT compliance framework, integrating requirements from ISO 27001, SOC 2, FedRAMP, and internal risk objectives to reduce audit fatigue
Lead the design, implementation, and enhancement of Data Governance processes, including facilitating stakeholder alignment and developing policy documentation
Lead data stewardship initiatives and promote the ownership of data quality and security best practices across the enterprise
Collaborate with cross-functional teams (IT Security, Infrastructure, Data Owners) to remediate compliance gaps and uphold governance standards
Assist in training efforts for QAR owners, control performers, and IT stakeholders on evidence expectations, validation procedures, and governance alignment

Qualification

IT audit experienceSOX complianceFedRAMP controlsNIST 800-53ISO 27001Risk managementProcess documentationCommunication skillsCollaborationAdaptability

Required

6+ years of progressive IT audit and compliance experience, preferably in a large enterprise or highly regulated environment
Hands-on experience with SOX, SOC, FedRAMP, and PCI frameworks, including the implementation and auditing of ITGCs and system security controls
Working knowledge of industry-recognized frameworks such as NIST 800-53 (FedRAMP), ISO/IEC 27001 (including Annex A controls), and COBIT, with proven ability to map controls for unified compliance strategies
Strong foundation in IT risk management, governance, and data protection principles, with a demonstrated ability to identify compliance gaps and design effective controls
Proficiency in process design and documentation, including the ability to develop and optimize workflows, policies, and robust Standard Operating Procedures (SOPs)
Exceptional written communication and technical writing skills, with the ability to produce clear and concise compliance reports, governance policies, and training materials for all audience levels
Demonstrated ability to adapt control design and audit planning to complex environments with system limitations and evolving business requirements

Company

Cloudflare

company-logo
Cloudflare is a web performance and security company that provides online services to protect and accelerate websites online.

H1B Sponsorship

Cloudflare has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (117)
2024 (115)
2023 (66)
2022 (98)
2021 (83)
2020 (37)

Funding

Current Stage
Public Company
Total Funding
$2.08B
Key Investors
Franklin TempletonFidelityUnion Square Ventures
2025-06-13Post Ipo Debt· $1.75B
2019-09-12IPO
2019-03-12Series E· $150M

Leadership Team

leader-logo
Matthew Prince
CEO & Co-Founder
linkedin
leader-logo
Lee Holloway
Co-Founder & Lead Engineer
linkedin
Company data provided by crunchbase