Director, Audit Response & Compliance Operations

State of MarylandAnne Arundel, MD
Onsite

About The Position

The Department of Information Technology (DoIT) leads the State in the creation and implementation of information technology solutions that improve IT infrastructure and government services and keep Maryland current within IT industry trends. Within DoIT, the Compliance Unit safeguards the integrity of the State’s IT operations by ensuring that audit, regulatory, and policy obligations are met with rigor, transparency, and enterprise-wide consistency. As a newly established function, Compliance Unit is building the structure, standards, and tooling that will define how Maryland responds to audit and regulatory scrutiny for years to come. This is an exciting opportunity to shape an enterprise capability from the ground up. This position is the operational execution of Maryland DoIT’s enterprise audit response function, exercising day-to-day command authority over the State Audit Response Operating Model (SAROM). SAROM is DoIT’s foundational governance framework for audit response, defining the accountability model, intake standards, routing logic, escalation paths, and reporting cadence used to manage Office of Legislative Audits (OLA) requests, external audits, corrective actions, and policy attestations. Operating as the SAROM control tower, this role transforms audit response from a reactive, ad-hoc activity into a disciplined enterprise workflow, setting service levels, enforcing standards, driving accountability across agencies, and maintaining the system of record for all audit related obligations. The position carries significant influence across DoIT and partner agencies, acting as the central authority on how audit work is received, prioritized and executed. The role requires sound judgement in balancing competing demands from legislative auditors, executive leadership, and agency stakeholders, often under tight deadlines and high visibility conditions. Beyond day-to-day operations, this role shapes the maturity of the State’s compliance posture by identifying systematic gaps, recommending process improvements, and codifying repeatable practices. Success in this position strengthens public trust in how Maryland manages its technology investments and regulatory commitments.

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, Information Systems, Business Administration, Accounting/Finance, or a related field.
  • Three (3) years’ experience in creating and maintaining an audit/compliance program for an organization of over 100 or more employees in an information technology environment.
  • Risk management and/or quality assurance experience.

Nice To Haves

  • Experience creating and maintaining an audit/compliance program in a public sector information technology environment (county, state, or federal).
  • Hands-on experience working in a system of record that uses workflow configuration and reporting, such as ServiceNow to track audit/compliance information.

Responsibilities

  • Direct enterprise intake operations across email and ServiceNow, ensuring every audit request – internal, external, or legislative – is formally captured, classified, and accountable to a defined owner from the moment it enters the organization.
  • Establish and enforce service level expectations, escalation thresholds, and operational throughput standards to prevent response degradation, missed commitments, or reputational exposure.
  • Govern workflow and routing automation so requests are assigned to the correct owners on first touch and escalated when delays or risks emerge.
  • Serve as steward of the authoritative audit repository, standard templates, operating procedures, and record retention discipline, preserving evidentiary integrity and audit defensibility.
  • Lead cross agency response coordination to deliver unified submissions, consistent messaging, and full enterprise visibility into open audit obligations and corrective actions.
  • Produce executive level reporting on audit posture, throughput, aging, and risk trends to inform Senior Leadership and external stakeholders.
  • Drive continuous improvement of SAROM by analyzing performance data, capturing lessons learned from completed engagements, and evolving intake, routing, and escalation standards to keep pace with changing regulatory and operational demands.
  • Partner with DoIT leadership, agency liaisons, and external auditors to build trusted working relationships, clarify expectations, and resolve disputed or ambiguous findings before they escalate.

Benefits

  • Subsidized health benefits coverage for themselves and their dependents (contractual employees working 30+ hours/week may be eligible for 75% State subsidy).
  • Option to enroll in dental coverage, accidental death and dismemberment insurance, and life insurance (full premium paid by employee).
  • Leave granted at a rate of one hour for every 30 hours worked, not to exceed 40 hours per calendar year.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service