IT Security Controls Spec I

<h2>Overview</h2> <p>Join an amazing team that is consistently recognized for our achievements and culture, including our most recent Forbes award of being one of America's Best Midsize Employers for 2026!</p> <p> </p> <p><strong>Position Summary:</strong></p> <p>This position provides an excellent opportunity to contribute to the Company’s annual Sarbanes-Oxley (SOX) and Model Audit Rule (MAR) compliance efforts, while gaining expertise in the testing of IT general control design and effectiveness and remediation of control deficiencies. This position is also supports the maintenance of SOX control narrative documentation and control waivers.</p> <p> </p> <h2>Geo-Salary Information</h2> <p><strong><em>An in-person interview may be required during the hiring process</em></strong></p> <p> </p> <p>State specific pay scales for this role are as follows:</p> <p>$56,701 to $102,219 (CA, NJ, NY, WA, HI, AK, MD, CT, RI, MA)</p> <p>$51,546 to $92,927 (NV, OR, AZ, CO, WY, TX, ND, MN, MO, IL, WI, FL, GA, MI, OH, VA, PA, DE, VT, NH, ME)</p> <p>$46,392 to $83,634 (UT, ID, MT, NM, SD, NE, KS, OK, IA, AR, LA, MS, AL, TN, KY, IN, SC, NC, WV)</p> <p>The expected base salary for this position will vary depending on a number of factors, including relevant experience, skills and location.</p> <h2>Responsibilities</h2> <p><strong>Essential Job Functions:</strong></p> <ul> <li>Participates in the scoping and planning of annual compliance efforts</li> <li>Assess the existence and operating effectiveness of all in-scope controls</li> <li>Bring any control deficiency gaps to the attention of senior IT security personnel</li> <li>Tests any controls that have been added or remediated</li> <li>Produces testing result documentation</li> <li>Manage the daily/weekly/monthly/quarterly access control processes</li> <li>Participate in the Vendor Risk Assessment process, complete the initial/annual assessments, follow up with the vendor contacts in obtaining SOC reports, obtain clarifications for pending items.</li> <li>Other functions that may be assigned</li> </ul> <h2>Qualifications</h2> <p><strong>Education:</strong></p> <p>Minimum:</p> <ul> <li>Bachelor’s Degree in Computer Science, Information Systems or other related fields OR equivalent combination of education and experience</li> </ul> <p>Preferred:</p> <ul> <li>CISA and/or CISSP certification.</li> </ul> <p><strong>Experience:</strong></p> <p>Minimum:</p> <ul> <li>1 year of Sarbanes-Oxley control experience or equivalent.</li> </ul> <p><strong>Skills:</strong></p> <ul> <li>Knowledge of auditing practices.</li> <li>Knowledge of control design.</li> <li>General knowledge of COBIT and other control frameworks.</li> <li>Refer to “IT Responsibility Matrix” for more detailed competencies for this job. </li> </ul> <p> </p> <h2>About the Company</h2> <p><strong><em>Why choose a career at Mercury?</em></strong></p> <p>At Mercury, we have been guided by our purpose to help people reduce risk and overcome unexpected events for more than 60 years. We are one team with a common goal to help others. Everyone needs insurance and we can’t imagine a world without it.</p> <p>Our team will encourage you to grow, make time to have fun, and work together to make great things happen. We embrace the strengths and values of each team member. We believe in having diverse perspectives where everyone is included, to serve customers from all walks of life.</p> <p>We care about our people, and we mean it. We reward our talented professionals with a competitive salary, bonus potential, and a variety of benefits to help our team members reach their health, retirement, and professional goals.</p> <p> </p> <p>Learn more about us here: https://www.mercuryinsurance.com/about/careers</p> <h2>Perks and Benefits</h2> <p><strong><em>We offer many great benefits, including:</em></strong></p> <ul> <li>Competitive compensation</li> <li>Flexibility to work from anywhere in the United States for most positions</li> <li>Paid time off (vacation time, sick time, 9 paid Company holidays, volunteer hours)</li> <li>Incentive bonus programs (potential for holiday bonus, referral bonus, and performance-based bonus)</li> <li>Medical, dental, vision, life, and pet insurance</li> <li>401 (k) retirement savings plan with company match</li> <li>Engaging work environment</li> <li>Promotional opportunities</li> <li>Education assistance</li> <li>Professional and personal development opportunities</li> <li>Company recognition program</li> <li>Health and wellbeing resources, including free mental wellbeing therapy/coaching sessions, child and eldercare resources, and more</li> </ul> <p>Mercury Insurance is an equal opportunity employer.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other characteristic protected by federal, state, or local law.</p> <h2>Pay Range</h2>USD $56,701.00 - USD $102,219.00 /Yr.

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...