Internal Controls Associate- MSI

🏢 MSI · all MSI jobs
📍 United States
📅 Posted 2026-09-07 · via Himalayas
🏷 Internal-Controls,Audit,Risk-Management,Compliance,Governance,Internal-Controls-Analyst,Internal-Audit-Associate,Internal-Controls-Auditor,Internal-Audit-Support-Analyst,Federal-Internal-Controls-Analyst,Controls-Analyst,Finance
Apply on original site ↗

Why MSI ? We thrive on solving challenges.

As a leading MGA, MSI combines deep underwriting expertise with insurer and reinsurer risk capacity to create specialized insurance solutions that empower distribution partners to meet customers’ unique needs.

We have a passion for crafting solutions for the important risks facing individuals and businesses. We offer an expanding suite of products – from fully-digital embedded renters coverage to high-value homeowners insurance to sophisticated commercial coverages, such as cyber liability and habitational property – delivered through agents, brokers, wholesalers and other brand partners.

Our partners and customers count on us to deliver exceptional service through a dedicated team that makes rapid resolutions a priority. We simplify the insurance experience through our advanced technology platform that supports every phase of the policy lifecycle.

Bring on your challenges and let us show you how we build insurance better.

The Internal Controls Associat e is responsible for supporting and enhancing the organization's overall internal control environment across business operations, technology platforms, financial reporting, information security, regulatory compliance, and risk management activities. This role evaluates the design and effectiveness of controls, documents key processes and procedures, maintains evidence to demonstrate control performance, and collaborates with business and technology teams to identify, assess, and mitigate risks.

The Internal Controls Associate assists with internal audits, operational reviews, control testing and/or execution, remediation efforts, and compliance initiatives related to applicable laws, regulations, industry standards, and contractual obligations. Responsibilities extend beyond any single regulatory framework and may include supporting compliance with Sarbanes-Oxley (SOX), privacy regulations, cybersecurity requirements, insurance industry regulations, and other governance, risk, and compliance obligations as applicable to the organization.

This position plays a key role in promoting a strong control culture by continuously assessing organizational risks, identifying control gaps, recommending improvements, and helping ensure that the company's overall control environment remains effective, sustainable, and aligned with business objectives, regulatory requirements, and industry best practices.

Key Responsibilities
Internal Control Program Administration

- Assist in the design, implementation, maintenance, and continuous improvement of the organization's internal control framework.

- Document and maintain policies, procedures, process flows, risk and control matrices (RCMs), and control narratives in alignment with COSO principles.

- Ensure controls are appropriately designed to mitigate identified business, operational, financial, compliance, and technology risks.

Risk Assessment and Control Design

- Perform periodic risk assessments across business and technology functions.

- Identify control gaps, emerging risks, and process inefficiencies.

- Develop and recommend risk mitigation strategies and control enhancements.

- Support enterprise risk management and compliance initiatives.

Control Testing and Monitoring

- Develop and execute control testing procedures to evaluate control design and operating effectiveness.

- Analyze testing results, identify deficiencies, and track remediation activities.

- Maintain evidence supporting control execution and effectiveness.

- Monitor key controls through continuous auditing and data analytics techniques where applicable.

Regulatory and Compliance Support

- Support compliance with applicable regulations, standards, and contractual obligations, including:
- Sarbanes-Oxley (SOX)

- State insurance regulations

- Privacy regulations (CCPA, CPRA, GDPR, etc.)

- Cybersecurity and information security requirements

- SOC reporting, PCI DSS, and other industry-specific

← All remote jobs

Similar for you