ting effectiveness (OE) methodologies
- Standardised testing documentation, workpapers, and reporting standards
- Assess whether financial crime controls embedded within compliance products and systems:
- Appropriately designed to address inherent financial crime risks
- Properly governed, approved, and maintained
- Operating effectively and consistently across jurisdictions and product variants
- Execute control focused testing across core FCC domains, including:
- KYC / KYB control frameworks (e.g. risk scoring logic, onboarding decision rules, trigger based reviews)
- Name and sanctions screening controls (e.g. rule configuration, list management, alert logic, tuning governance)
- Transaction monitoring controls (e.g. scenario coverage, typology alignment, thresholds, change management)
- Suspicious activity escalation and reporting controls (e.g. trigger mechanisms, decision governance, oversight controls)
- Evaluate control coverage, configuration, and dependency on data inputs, including:
- Reliance on automation, thirdparty tools, and internal systems
- Completeness, accuracy, and appropriateness of data feeding key FCC controls
- Limitations, assumptions, and compensating controls where automation is incomplete
- Own the issue lifecycle management for control testing outcomes, including:
- Definition of root causes and risk impacts
- Tracking remediation actions to completion
- Performing targeted retesting to validate control remediation
- Develop management reporting and indicators focused on:
- Control effectiveness trends across products and regions
- Recurring control design weaknesses
- Emerging financial crime risks arising from product changes or scaling
- Act as a credible challenge function to product, engineering, and compliance teams, ensuring financial crime controls are designed to scale with TikTok's evolving business models without defaulting to operational workarounds.
Qualifications
Minimum Qualifications:
- 5+ years of experience in financial crime compliance testing, control assurance, or risk-based reviews, with a strong preference for consulting or advisory background with experience in audit, compliance transformation, control framework build-outs, or assurance functions
- Proven experience designing and executing control testing methodologies, including testing of automated controls, rules engines and thresholds, governance and change management over compliance products
- Experience beyond traditional operational QA, with the ability to assess control intent, logic, and effectiveness (not just process adherence).
- Strong understanding of AML/CFT control frameworks, including control design vs operating effectiveness, risk to control alignment and preventive vs detective controls
- Strong analytical mindset with the ability to deconstruct complex compliance products into assessable control components.
Preferred Qualifications:
- Comfortable challenging product and engineering teams on control adequacy, assumptions, and residual risk.
- Excellent written communication skills, with experience producing executive level control testing reports.
- Highly organised, detail oriented, and able to operate independently in environments where frameworks are still being built.