World Wrestling Entertainment

Senior Director, IT Governance, Risk and Compliance

World Wrestling Entertainment$157K — $210K *
US-Anywhere
+ 6 other locationsRemote
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor’s degree in Computer Science, Information Systems, Information Security, Accounting, Finance, or a related field
  • 10+ years of significant progressive experience in IT compliance, IT audit, risk management, or related governance function
  • Demonstrated experience supporting SOX and IT General Controls in a complex environment
  • Experience developing Risk and Control Matrices and compliance documentation
  • Strong cross-functional partnership experience with stakeholders across various departments.

Responsibilities

  • Establish an overall compliance strategy and roadmap for the IT compliance program.
  • Track and deliver key compliance initiatives with executive updates on program health.
  • Provide expertise and guidance on compliance expectations to system leads and business partners.
  • Oversee preparations for audits including SOC reporting and PCI compliance.
  • Coordinate with different functions to support IT Risk Management and establish compliance requirements.

Benefits

  • Comprehensive health care coverage.
  • Retirement plans with competitive contributions.
  • Generous vacation and paid time off policies.
  • Professional development and growth opportunities.
  • Robust set of employee benefits tailored to enhancing work-life balance.
Full Job Description

Job Summary

The Senior Director, IT Governance, Risk and Compliance, is responsible for leading and executing core elements of TKO’s IT compliance program, with a focus on SOX and IT General Controls, audit readiness, governance documentation, benchmarking against recognized security frameworks, third-party assurance, and technical data reconciliation activities. Reporting to TKO’s SVP of IT Business Systems, this role will partner closely with Legal, IT, Security, Internal Audit, Finance, and business stakeholders to strengthen TKO’s control environment, support enterprise compliance obligations, help lead risk management, and drive consistent execution across systems and processes.

This role requires both strategic oversight and hands-on execution. The successful candidate will bring deep experience in IT compliance and controls, strong technical data management capability, and the ability to operate effectively across a complex environment with disparate systems, inconsistent data structures, and evolving business needs.

Essential Duties and Responsibilities

IT Compliance Planning and Program Execution

  • Establish an overall compliance strategy and roadmap which includes selecting and implementing an enterprise Governance, Risk and Compliance platform to automate RCM authoring and drive evidence collection workflows.

  • Own prioritization, tracking, and delivery of key compliance initiatives including executive status updates regarding the program status and health

  • Provide subject matter expertise and guidance to system leads and business partners on compliance expectations, control execution, documentation standards, and system implementation lifecycle considerations

  • Advise and ensure PCI compliance is being sustained by in-scope business units.

  • Oversee internal resources, project-based support, or cross-functional contributors in connection with audit preparation, SOC reporting, PCI compliance adherence, and compliance execution.

Governance, Risk, and Documentation Management

  • Coordination across other risk management stakeholder functions (e.g. Legal, Finance, Internal Audit, Corporate IT, BU level IT organizations) to accomplish the following:

    • Support and evolve existing IT Risk Management Program to ensure controls address Technology, Cybersecurity, Data, Resiliency/Recovery, and Emerging (AI, etc.) risks.

    • Establish IT compliance requirements

    • Identify and eliminate redundant risk management processes and/or controls

    • Understand and support the risk management objectives of other risk management functions

  • Maintain current inventories of in-scope systems and applications that are required to support key regulatory requirements (e.g., ICFR), in-flight IT projects, and relevant stakeholders

  • Develop the framework and standards for core IT compliance documentation and templates, including Risk and Control Matrices, process flows, system interface documentation, and remediation plans

  • Determine the review criteria and cadence for assessing documentation prepared by system leads and control owners for quality, completeness, and alignment with compliance requirements

  • Establish policies, procedures, and governance practices that support effective and sustainable compliance execution

SOX, IT General Controls, and Audit Support

  • Act as primary point of contact for IT compliance supporting internal and external audits, including SOX and IT General Controls testing

  • Organize, collect, and maintain evidence required for audit requests and management review

  • Liaise with internal stakeholders and auditors to ensure timely and accurate delivery of required materials

  • Create repeatable processes for the identification, tracking, and remediation of control gaps, deficiencies, and related action plans

  • Create and support an IT risk assessments, control reviews, and compliance evaluations process

SOC Reporting and Third-Party Assurance

  • Manage the lifecycle of Service Organization Control reporting

  • Ensure completion of management evaluation documentation related to third-party controls and reliance

  • Support assessment of third-party compliance risk in areas such as access management, vendor management, and change management

Technical Data Reconciliation and Compliance Operations

  • Partner with IT and Finance colleagues to monitor adherence with internal policies and key metrics regarding control environment activities (e.g. reconciliation activities, data analysis, data hygiene, etc.)

  • As part of the user termination process, work closely with the infrastructure and application system owners to ensure terminations are completed timely and if any are missed (outside the acceptable window), a full look back analysis is conducted and send confirmation materials to internal audit.

  • Establish continuous monitoring processes.

Monitoring, Reporting, and Training

  • Monitor changes in relevant compliance, privacy, and security requirements and support translation of those requirements into practical business processes

  • Prepare reporting for management regarding compliance status, risks, remediation efforts, and control effectiveness

  • Collaborate with Internal Audit, financial controls and IT in the development of training materials related to IT compliance, data privacy, and security practices

  • Support awareness efforts for IT teams and business stakeholders to promote a culture of accountability and compliance

Supervisory Responsibilities

This role may oversee internal resources, project-based support, or cross-functional contributors in connection with audit preparation, SOC reporting, PCI compliance adherence, and compliance execution.

Required Qualifications

  • Bachelor’s degree in Computer Science, Information Systems, Information Security, Accounting, Finance, or a related field

  • 10+ years of significant progressive experience in IT compliance, IT audit, risk management, cybersecurity compliance, or a related governance function

  • Demonstrated experience supporting SOX and IT General Controls in a complex environment

  • Experience developing and enhancing Risk and Control Matrices, process flows, remediation plans, system inventories, and related compliance documentation

  • Strong cross-functional partnership experience with Legal, IT, Security, Internal Audit, Finance, and business stakeholders

Preferred Qualifications

  • Experience supporting compliance activities in connection with mergers and acquisitions

  • Experience managing third-party assurance processes, including SOC report review and evaluation

  • Familiarity with enterprise control frameworks such as NIST and ISO 27001

  • Experience in a public company or similarly regulated environment

  • Knowledge of SAP (S/4) a plus as this is our Enterprise Finance and Accounting ERP

Knowledge, Skills, and Abilities

  • Strong knowledge of SOX, ITGC, and general compliance frameworks

  • Advanced proficiency in Excel with a strong working knowledge of PowerQuery, SQL, or similar tools preferred

  • Understanding of access management, vendor management, change management, and audit evidence requirements

  • Strong analytical and problem-solving skills with exceptional attention to detail

  • Excellent written and verbal communication skills, including the ability to communicate technical concepts to non-technical stakeholders

  • Strong organizational, project management, and documentation skills

  • High degree of integrity, discretion, and professional judgment

  • Ability to balance strategic priorities with hands-on execution

Certifications

Preferred certifications include:

  • Certified Information Systems Auditor (CISA)

  • Certified Information Systems Security Professional (CISSP)

  • Certified in Risk and Information Systems Control (CRISC)

Per local requirements and in the interest of transparency, the hourly rate shown below reflects the prevalent current hiring range for this position. Hiring pay rates are based on a number of factors, including location and may vary depending on job-related qualifications, knowledge, skills and experience. The company strives to provide locally competitive rewards packages, which include base rate along with, as applicable, short- and long-term incentives, growth and developmental opportunities, and robust benefits, such as health care, retirement, vacation and other paid time off, and additional offerings.

Hiring Rate Minimum:

$157,500 annually(minimum will not fall below the applicable State/local minimum salary thresholds)

Hiring Rate Maximum:

$210,000 annually

About World Wrestling Entertainment

World Wrestling Entertainment (WWE) is an American integrated media and entertainment company primarily known for professional wrestling. It also produces films, music, video games, and other products related to wrestling. The company was founded in 1952 by Jess McMahon and Toots Mondt and is headquartered in Stamford, Connecticut. WWE's programming reaches 800 million homes worldwide in 28 languages. The company's flagship event, WrestleMania, is the largest professional wrestling event in the world and has been held annually since 1985. WWE has a long history of producing successful wrestlers, including Dwayne 'The Rock' Johnson, John Cena, and Stone Cold Steve Austin.
Learn more about World Wrestling Entertainment
Size
870 employees
Market Cap
$5.2 billion
Industry
Net Income
$131.7 million
5 Year Trend
+8.5%
Revenue
$974.2 million
NASDAQ

Similar Jobs

More Jobs at World Wrestling Entertainment

More Information Technology Jobs

Find similar Senior Director, IT Governance, Risk and Compliance jobs: