Howard Mundell
Newark, DE ***** 302-***-**** *********@*****.***
Linkedin-- https://www.linkedin.com/in/howard-mundell-a2b454122
EXECUTIVE SUMMARY
Senior governance and compliance leader with 15+ years in IT governance, SOX, risk management, and service management across regulated utility environments. Led cross-functional teams, supported major SAP S4/HANA, Oracle ERP, and AWS transformation programs, and partnered with senior leadership on board-level accountability. Recognized for building and leading cross-functional teams of senior professionals and orchestrating strategic engagements with Big 4 audit partners and global systems integrators to execute complex, high-stakes compliance objectives across multi-state, regulated utility environments. Brings proven executive leadership in overseeing IT and SDLC compliance for major business transformation programs — encompassing SAP S4/HANA, Oracle ERP, and AWS cloud migration. A trusted strategic advisor to Senior and IT Leadership Teams, uniquely positioned to align enterprise IT governance, regulatory compliance, and service management with organizational growth and board-level accountability.
CORE COMPETENCIES
Governance and Compliance:
IT Governance & SOX Compliance
Robotic Process Automation (RPA)
Cybersecurity & Identity Management (IDM)
SDLC & Business Transformation
Internal & External Audit Leadership
Audit and Controls
Risk Assessment
ELT/SLT Reporting
NIST/ISO27001
Data Privacy
Audit Scoping/Planning
ITGC / ITAC Controls
SOC1/SOC2
Service Management
Change & Incident Management
Enterprise Vendor Management
Platforms/Transition
Cloud & ERP Platforms (AWS, HANA, SAP S4, Powerplan, Hyerion,Oracle)
Auditboard-SOX ITAC/SDLC/ITGC
IDM- Identity Access Management
EXPERIENCE
AMERICAN WATER
Director, IT Governance & Service Management (September 2017-April 2026)
Led IT governance and service management for the largest U.S water utility, partnering with audit teams and external firms to improve overall IT audit/compliance maturity. Led change, incident, asset, and problem management. Reported overall status/issues to Executive Leadership and ITLT on a recurring basis.
Accomplishments include: 25% reduction in ITGC and ITAC controls, over 85% audit response rate, over 65% audit reliance rate, and a comprehensive identity access management platform across all in-scope SOX systems. Under three SOX IT control deficiencies for each of the past five years. Implementation of an integrated platform (single pane of glass) for all change, work-order, incident, and asset management tickets.
Internal Audit Manager (May 2015-September 2017)
Led internal audit engagements and coordinated SDLC-related audit activities with internal stakeholders and external firms to strengthen control assurance and governance readiness.
Accomplishments include recommendations for a more formal SDLC policy (agile and waterfall), a maturity risk assessment process for third-party risk and cybersecurity, and the implementation of a comprehensive audit reporting platform
Internal Auditor (May 2013-May 2015)
Conducted operational, regulatory, environmental, and financial audits across multiple American Water entities. Documented audit findings and compiled detailed reports for executive review. Led SDLC project audits in collaboration with internal and external audit firms.
Accomplishments include establishing a formal process for audit testing and improving audit reporting.
Internal Control Analyst (December 2008-May 2013)
Supported enterprise SOX compliance initiatives by performing and documenting control testing. Assisted in identifying control gaps and recommending remediation strategies. Collaborated with internal stakeholders and external auditors on compliance engagements. Accomplishments include a 25% reduction in business process SOX controls through a major risk-rationalization initiative.
ERNST AND YOUNG (EY)
Internal Auditor (May 2002-November 2008)
Performed assurance audits and internal control assessments for EY clients across diverse industries, including financial services, utilities, operations, and pharmaceuticals. Documented audit findings and compiled detailed reports for presentation to senior management. Audit focus areas included SOX, Data Privacy, PCI, HIPAA, and access management.
PRIOR EXPERIENCE
PNC-Investment Accounting Supervisor (January 1998-April 2002)
First USA- Fraud Manager and Accounting Supervisor (April 1994-December 1997)
EDUCATION
Bachelor of Science, Accounting, University of Delaware
Bachelor of Science, Political Science, University of Delaware
CERTIFICATIONS
CIA- Certified Internal Auditor
CISA-Certified Information Systems Auditor
ITIL- Information Technology Infrastructure Library