Responsibilities
- Identify, evaluate, and prioritize IT risks across OpenTable’s operations.
- Oversee regular risk assessments and control certification/validation activities.
- Monitor emerging IT risks and propose mitigation strategies.
- Lead the design and implementation of internal controls over technology systems and processes, particularly those supporting financial reporting (e.g., SOX compliance).
- Guide teams in the execution of user access reviews, segregation of duties monitoring, change management controls, and other standard IT controls.
- Maintain documentation of controls, processes, and evidence required for internal and external audits.
- Manage quarterly and annual control certification and user access review cycles.
- Serve as a liaison between IT, the Finance organization, and external auditors.
- Support ITGC (IT General Controls) management testing.
- Investigate any identified control deficiencies, oversee remediation efforts, and work to strengthen and automate internal controls as appropriate.
- Continuously improve risk management processes using technology, analytics, and cross-functional input.
- Partner with cross-functional leaders at OpenTable, supporting business objectives while ensuring a risk-aware culture.
- Present risk and control status updates to senior leadership as needed.
- Develop and maintain IT risk management policies, control standards, and governance frameworks.
- Ensure alignment with Booking Holdings (BKNG) group policies and broader compliance requirements.
Requirements
- Bachelor’s degree (or above) in IT, Engineering, or Accounting/Finance.
- 7+ years of progressive experience coordinating IT SOX compliance activities and maintaining IT Risk and Control Matrices/Frameworks.
- Leadership experience in IT risk management, audit, compliance, or a related field.
- Deep knowledge of internal controls over financial reporting, information security, and regulatory standards (e.g., SOX, COSO, COBIT, NIST).
- Strong analytical, communication, and stakeholder management skills.
- Experience working with auditors and managing audit processes.
- Ability to collaborate with both technical and non-technical stakeholders.
Nice to Have
- Professional certifications (such as CISA, CISSP, CRISC, CIA, or similar).
- Experience in Big 4 Accounting/Professional Services.
Benefits
- Work from (almost) anywhere for up to 20 days per year
- Company-paid therapy sessions through SpringHealth
- Company-paid subscription to Headspace
- Annual company-wide week off a year - the whole team fully recharges (and returns without a pile-up of work!)
- Paid parental leave
- Generous paid vacation + time off for your birthday
- Paid volunteer time
- Development Dollars
- Leadership development
- Access to thousands of on-demand e-learnings
- Travel Discounts
- Employee Resource Groups
- 20 days of paid time off
- Private health and dental insurance
- Life and Disability insurance
- Health benefits
- Flexible spending account
- Retirement benefits
- Life insurance
- Paid time off (including PTO, paid sick leave, medical leave, bereavement leave, floating holidays and paid holidays)
- Parental leave benefits
- This role is eligible to be considered for an annual bonus.
Work Arrangement
Hybrid — Toronto
Benefits and Perks
- Work from (almost) anywhere for up to 20 days per year
- Focus on mental health and well-being: Company-paid therapy sessions through SpringHealth, Company-paid subscription to Headspace
- Annual company-wide week off a year - the whole team fully recharges (and returns without a pile-up of work!)
- Paid parental leave
- Generous paid vacation + time off for your birthday
- Paid volunteer time
- Focus on your career growth: Development Dollars, Leadership development, Access to thousands of on-demand e-learnings
- Travel Discounts
- Employee Resource Groups
- 20 days of paid time off
- Private health and dental insurance
- Life and Disability insurance
Work Environment & Flexibility
- Hybrid workplace model with expectation of coming into the office two days a week.
- Schedule tailored to accommodate a global workforce operating across multiple time zones.
- Instances where communication outside of regular working hours may be required to collaborate with international colleagues, respond to restaurant partners, or address urgent matters.
- OpenTable will always abide by and consider local laws and regulations.
Inclusion
- Committed to creating a workplace where everyone feels they belong and can thrive.
- Building a team as dynamic as the diners and restaurants served.
- Fostering a culture where everyone feels welcome to be themselves.
- Accommodations available upon request during the application or interview process, or on the job.
Additional Information
- Employees expected to come into the office two days a week.
- Schedule tailored to accommodate a global workforce operating across multiple time zones.
- Occasional communication outside of regular business hours may be required to collaborate with international colleagues.
- OpenTable will abide by local laws and regulations.
- Accommodations available upon request during application, interview, or on the job.